Search This Blog

Wednesday, November 28, 2018

How to retrive expert password on checkpoint via CLI? Forgot my checkpoint expert password.


This happened to me and I want to make sure I share it with you so that you can fix it by yourself.

I forgot my "expert" password and needed to reset it.

What you need to do is:
login to the device with admin/root credentials:
checkpoint-fw-raj> show configuration

Run command "show configuration", look at the very bottom and look for this command:

set user admin password-hash $1$6LgE8X45fg23987hgjsi34/234sak

Now set your expert password hash to the same value as admin:


set expert-password-hash $1$6LgE8X45fg23987hgjsi34/234sak

Now duplicate your putty session and login again with admin. Try to go to expert mode now, but use your "admin" user password.

You should be in. Its time to change your expert password now:
set expert-password ---- hit Enter
Current password:
New password:
New password (Again):


checkpoint-fw-raj> save config

Enjoy!
 

How to obtain config lock on checkpoint?


Hello,

I logged into my Checkpoint firewall via CLI and could see that it could not acquire the config lock because the lock is now owned by some other client.

checkpoint-fw-raj>
CLINFR0509  Could not re-acquire the config lock because the lock is now owned by some other client.
CLINFR0509  Failed to maintain the lock. Command not executed.


I need to enter this command:

checkpoint-fw-raj>lock database override