If so, please respond. I'd like to partner with you on creating a device template for use within NCM.
Thanks in advance for your help!
I have a pair of UTM 1070 appliances running in an HA cluster if that's at all helpful.
Great! I would assume the CLI interface is similar to the UTM 570. Would you mind filling out the attached device template questionnaire? It asks you to document the commands/prompts required to download the running and startup configs from the device.
Thanks!
Great! I would assume the CLI interface is similar to the UTM 570.
Yes the CLI is identical to the 570, and all the UTM appliances for that matter including the Connectra appliance. The only exception are the UTM-Edge devices. These edge devices are the little SOHO appliances that are basically Linksys routers on crack.
Now you need to appreciate that the UTM appliances that you want to create a template for do not have a running/starting configuration like a Cisco router. They have three different types of configuration backups. Each of which has their pluses and minuses. I'm personally a fan of the upgrade_export because it doesn't require you to stop the Check Point services like a snapshot does, and it's hardware and OS agnostic unlike a backup. It's really a personal choice.
[upgrade_export]
[backup]
[snapshot]
So I guess my question is, which one would you like me to do?
Based on your explanation, I think I'm most interested in upgrade_export and backup. Is there a way to show the upgrade_export and backup files on the command line? This would allow us to do a line by line transfer. Otherwise, we'll need a way to transfer the upgrade_export and backup files (e.g. TFTP or SCP).
It's worth noting that users are no longer allowed to execute snapshots from the command-line under SecurePlatform (R70 and up). OS snapshots are still allowed however via the WebUI.