A few things....

Firstly, why do you need a copy of the rulesets if you are doing a penetration test? (A typical hacker (who you are minicking during your "penetration test": does not have this luxury.)

Secondly, you already have root access (or commonly refered to during a penetration test as being compromised).... surely your penetration test would now be finished, and the hosts security failed dismally??

Thirdly, if someone came and audited my Firewalls, I wouldnt be too confident if they turned around and asked me where the ruleset configs are stored???