You can issue the command "fw ctl pstat" on the enforcement
point; at the bottom of the output it will tell you have State
Synchronization is enabled.
Example:
NAT:
85/0 forw, 85/0 bckw, 170 tcpudp,
0 icmp, 17-29 alloc
sync new ver working
sync out: on sync in: on
sync packets sent:
total: 2305029 retransmitted: 563565 retrans reqs: 529319 acks: 21
sync packets received:
total 603819 of which 627405 queued and 253328 dropped by net
also received 334695 retrans reqs and 4 acks to 0 cb requests
Chris Burton
Network Engineer
Walt Disney Internet Group: Network Services
-----Original Message-----
From: NG, Alfred [mailto:[EMAIL PROTECTED]
Sent: Monday, June 02, 2003 8:19 AM
To: [EMAIL PROTECTED]
Subject: [FW-1] NG FP3 state-sync status command
I was wondering if there was a command to check the status of the
state-sync between firewalls in a redundant cluster?
I am running a pair of Nokia IP440 firewalls on Checkpoint NG FP3
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================