I discovered this extremely useful tool some time ago. After a system re-build, I lost the tool, but alas after spending the last 2 hours trying to find it again (I couldnt remember the name of it!!), success!!
I urge all Checkpoint Firewall Admins out there to get their hands in this.
It will also compare rulesets to your objects file and list all object not being used (very handy for ruleset cleanups!!)Quote:
The perl program "FW1Rules" reads the configuration files of Checkpoint Firewall-1 and produces a well readable, cross-referenced HTML summary of the firewall configuration. Additionally dump of network and service objects, users, rules and settings into separate files (TXT and Tab-separated tables) or templates (TXT, CSV, SQL, etc.) is possible.
http://www.wyae.de/software/fw1rules/
