Importing Rules from Checkpoint R80.40

cancel
Showing results for 
Search instead for 
Did you mean: 

Importing Rules from Checkpoint R80.40

L0 Member

We are trying to get started on expedition trying to import policies and objects from checkpoint r80.40. We have a central management server from which we tried the command required as per gui expedition instructions to import security rules:

mgmt_cli show access-rulebase name policy-20160115 details-level "full" use-object-dictionary true --format json  > see result below. We are confident our policy is name "policy-20160115"

 

Also we try getting the files from /opt/CPsuite-R77/fw1/conf as mentioned on : https://live.paloaltonetworks.com/t5/expedition-discussions/checkpoint-to-palo-alto-using-expedition....

 

This work somehow I get to see policies but the objects are all with same 1.1.1.1 IP.

 

 

 

 

[Expert@wynoochee:0]#
[Expert@wynoochee:0]# mgmt_cli show access-rulebase name policy-20160115 details-level "full" use-object-dictionary true --format json
Username: admin
Password:
{
"code" : "generic_err_object_not_found",
"message" : "Requested object [policy-20160115] not found"
}
[Expert@wynoochee:0]#

1 REPLY 1

L4 Transporter

Hello @Jimmy_Delgado 

 

The screenshot is showing the checkpoint r77.30 import which wouldn't be used in this case. However if you are having issues exporting your checkpoint configuration you can talk to checkpoint support or we also made a document that you can reference for help with that. ( https://panos.pan.dev/docs/expedition/expedition_export )

 

 

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!