FW monitor is a great tool for troubleshooting traffic flow issues with your checkpoint.
It works by using 4 inspection points,
- i – Pre Inbound
- I – Post Inbound
- o – Pre Outbound
- O – Post Outbound
Examples
- fw monitor -e “accept dport=6000;”
- fw monitor -m iO -e ‘accept dport=80;’
- fw monitor -e ‘accept dport;’ -o ping.cap
For a further detailed description please see,
http://www.checkpoint.com/techsupport/downloads/html/ethereal/fw_monitor_rev1_01.pdf
Latest posts by Rick Donato (see all)
- How to Configure a BIND Server on Ubuntu - March 15, 2018
- What is a BGP Confederation? - March 6, 2018
- Cisco – What is BGP ORF (Outbound Route Filtering)? - March 5, 2018
Want to become an IT Security expert?
Here is our hand-picked selection of the best courses you can find online:
Internet Security Deep Dive course
Complete Cyber Security Course – Hackers Exposed
CompTIA Security+ (SY0-601) Certification Complete course
and our recommended certification practice exams:
AlphaPrep Practice Tests - Free Trial