Friday, May 29, 2015

Checkpoint firewall - How to list all kernel parameters

Kernel parameters in Checkpoint firewall can be queried with the command
fw ctl get <kernel_param>
Most of the time you find the kernel parameter you need by reading some Checkpoint SK or any article on the Internet

I found an interesting article provided by Checkpoint to dump all kernel parameters on a firewall by probing the fwmod kernel module.

By logging to a Checkpoint firewall in Expert mode it is possible to use the standard Linux command modinfo to get the information from the Checkpoint Kernel module