In addition to the check_snmp_cpfw.pl where you can keep control of active connections, the Secure Virtual Network or the HA status I wanted to keep track of the basic hardware conditions of CP devices.
For this I’ve extended the check_snmp_environment.pl ( check_snmp_environment.pl.tar ) adding in addition to other platforms also the SNMP support for CheckPoint firewalls. The information covers now:
Temperature of CPU and System ( Motherboard )
Fan rotation speed ( Reads dynamically all available fans )
The check provides also the possibility to set thresholds for those values.
CheckPoint Hardware monitoring output
The provided perfdata:
Perfdata of CPU and System Temperature
Perfdata of the fans
In total this check supports now those Hardware:
cisco : All Cisco equipements : voltage,temp,fan,power supply (will try to check everything in the env mib)
nokia : Nokia IP platforms : fan and power supply
cpfw : CheckPoint Firewal: fans, temperature
bc : BlueCoat platforms : fans, power supply, voltage, disks
iron : IronPort platforms : fans, power supply, temp
foundry : Foundry Network platforms : power supply, temp
linux : Net-SNMP with LM-SENSORS : temp, fan, volt, misc
After my graduation in Applied Computer Science at the Free University of Bolzano I decided to start my professional career outside the province. With a bit of good timing and good luck I went into the booming IT-Dept. of Geox in the shoe district of Montebelluna, where I realized how a big IT infrastructure has to grow and adapt to quickly changing requirements. During this experience I had also the nice possibility to travel the world, while setting up the various production and retail areas of this company. Arrived at Würth Phoenix I started developing on our monitoring solution NetEye. Today, in my position as Consulting an Project Manager I am continuously heading to implement our solutions to meet the expectation of your enterprise customers.
Author
Patrick Zambelli
After my graduation in Applied Computer Science at the Free University of Bolzano I decided to start my professional career outside the province. With a bit of good timing and good luck I went into the booming IT-Dept. of Geox in the shoe district of Montebelluna, where I realized how a big IT infrastructure has to grow and adapt to quickly changing requirements. During this experience I had also the nice possibility to travel the world, while setting up the various production and retail areas of this company. Arrived at Würth Phoenix I started developing on our monitoring solution NetEye. Today, in my position as Consulting an Project Manager I am continuously heading to implement our solutions to meet the expectation of your enterprise customers.
Now, if you've followed my previous blogs about the x509 Module, you should have in place your x509 Certificates Asset with (or without) a minimum of cleanup routines. Now it's time to look at what Icinga was made for: monitoring. Read More
Some of my customers make use of short-expiration SSL Certificates signed by Let's Encrypt or similar services. Our company also makes extensive use of this kind of certificate, and in the near future most (if not all) of your SSL Read More
Hi everyone, in this article I want to tell you about the NagVis module and how we're going to customize a template so that it can allow us to modify the information displayed during mouse-over (hover). Basically, what we'll try Read More
In the last 10-or-so years, the complexity of enterprise IT applications has greatly increased: each of them can span vertically with multiple (and complex) layers, and each layer can serve applications other than the one that it's part of. And, Read More
Kentix MultiSensor is a device which includes many sensors for use in monitoring server and IT rooms. The sensor only needs to be connected to your network (PoE is required) and to have SNMP configured through its web interface. The Read More
2 Replies to “CheckPoint Firewall Hardware Monitoring”
The OIDs are making use of a MIB – base that is provided if CheckPoint Hardware ist used. The check is not intended for CheckPoint software on third party hardware i.e. SPLAT.
To test if this check would work make an SNMPwalk for the enterprise OID: 1.3.6.1.4.1.2620
Hi, not working for CheckPoint
The OIDs are making use of a MIB – base that is provided if CheckPoint Hardware ist used. The check is not intended for CheckPoint software on third party hardware i.e. SPLAT.
To test if this check would work make an SNMPwalk for the enterprise OID: 1.3.6.1.4.1.2620