Hi Werner,
  I know how to use the fw tab commands.  I used this all the time to delete 
vpn tunnels
  in CP version 4.1 but I found this to be cumbersome because one has to convert
  the value from hex to decimal to understand it.  
   
  Is there a better way to do this?  Thanks.
   
  cisco4ng

"Brockhoven, Werner" <[EMAIL PROTECTED]> wrote:
  Cisco4ng,

To delete an active connection from the statetable you can issue the
command:

fw tab -t connections -x -e 

Where entry is in the form of
"00000000,10b70382,00004710,1038ee3d,00000a33,00000006" , which is the
first part of a connection in the connection table, derived from the "fw
tab -t connections -u" output.

You'll want to have a copy of the advanced technical reference guide
with you to understand the meaning of all fields which allows you to
identify the connection based on ips, ports, rulenumber and so on.

Regards,

Werner

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of
cisco4ng
Sent: Monday, June 26, 2006 01:13
To: [email protected]
Subject: [FW-1] clear or delete an "active" connection in Checkpoint NGx
or NG with AI R55w

Hi All,

How can I "clear" or "delete" an active connection to a host behind
the
Checkpoint Firewall? I know how to that with Cisco Pix via the
"clear xlate [particular connection]"; however, I do not know how to
do it
with Checkpoint. 

For example, I have an active ssh connection to a Linux server behind
the checkpoint firewall, how do I clear that connection? Thanks.

cisco4ng


---------------------------------
Do you Yahoo!?
Everyone is raving about the all-new Yahoo! Mail Beta.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================


                
---------------------------------
Talk is cheap. Use Yahoo! Messenger to make PC-to-Phone calls.  Great rates 
starting at 1ยข/min.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to