Quantcast
Channel: THWACK: Popular Discussions - Kiwi CatTools
Viewing all 21331 articles
Browse latest View live

Backup Config of Checkpoint Gateway

$
0
0

Hi Thwack community,

 

this is my first discussion

We are having some troubles with "Checkpoint Security Gateway" Devices. Because there is no suitable Device-Template for those devices i used the Generic.Device combined with a Device Variation to backup the Running Configuration.

 

Device Details: Check Point Security Gateway using Gaia R77.20 as OS, Kiwi Cattools 3.6.0

 

I always try to copy the manual steps i would do via putty/SSH to cattools. Those manual steps would be:

  1. login via ssh
  2. "lock database override" //get prev. rights
  3. "show configuration" //running config gets printed to stdout with paging (-- More --) -> as fas as i know there is no ter len 0/ no paging command
  4. quit or exit

 

Somehow cattools is having some problems with those steps :/

It isn´t getting input from the "show configuration" command which should print to stdout "Did not receive echo of show configuration command".

I attached you the log-info File and the Device variations so you could get a look into the changes i made.

 

Has anyone ever had similar problems (and a solution to it)? Especially with Checkpoint Devices?

 

Best regards,

Max


Kiwi Cat Tool & backup of ASA

$
0
0

Hello Friends,

 

I am working for backup my cisco and fortinet devices with kiwi cat tools, routers and switches are ok but cisco ASA is giving issue with error "Enable mode failed"

 

anyone can help how to fix this..

 

Regards,

Switch faied to connect (10061)

$
0
0

Hi

 

I have only recently started a new position and am new to Kiwi Cat tools which this organisation uses, (Used Solar Winds before)

 

Any help or assistance would be greatfully appreciated. 

 

Just installed a new Cisco 3650 switch and Cisco 4331 Router at a new site and trying to configure Kiwi to back this up.

 

Keep getting the error 'failed to connect to x.x,x,x Reason (10061) The requested connection has been refused by the remote host on the switch, router works fine and backs up on Kiwi.

 

I have checked the config on the 3650 switch and it has the same log in details as the 4331 router at the site that is working on Kiwi

 

The Kiwi version that I am using is VER 3.11.2 Enterprise

 

The switch version is 03.06.04.E

 

I have also been asked to look at and resolve all the back up errors or Kiwi, Is there a downloadable Kiwi pdf that someone can post a link to and also a list of error codes

 

Thank you in advance.

Backup running config for OpenBSD PF Firewall

$
0
0

Hello,

 

I've been trying to get Kiwi Cattools to download the PF config file from an OpenBSD system. I have managed to get Kiwi Cattools to login to the machine via ssh but then it throws this cryptic error to the log:

 

Login results = VTY: Failed, Enable: N/A, HostID: N/A

 

Just hoping someone can guide me in the right direction. The help files say that the debug mode will help troubleshoot the problem. I'm not sure what to look for in the log. This is the output I get when I try the test login command:

 

<NEWSESSION CatTools 3.5.0 7/10/2012 7:05:58 PM>

<PROTOCOL=SSH2>

<DEVICE TYPE=OpenBSD.PF.Firewall>

<ACTIVITY TYPE=Device.ConnectivityTest.Login>

<ACTIVITY SCRIPT=C:\Program Files\CatTools3\Scripts\Client.Device.ConnectivityTest.Login.txt>

<USERS NAME FOR DEVICE=DSFW>

<C OK 7:05:58 PM><R-7:05:58 PM>Last login: Tue Jul 10 18:09:13 2012 from 10.100.101.248[13][13][10]OpenBSD 5.1 (GENERIC.MP) #207: Sun Feb 12 09:42:14 MST 2012[13][10][13][10]Welcome to OpenBSD: The proactively secure Unix-like operating system.[13][10][13][10]Please use the sendbug(1) utility to report bugs in the system.[13][10]Before reporting a bug, please try to reproduce it with the latest[13][10]version of the code.  With bug reports, please try to ensure that[13][10]enough information to reproduce the problem is enclosed, and if a[13][10]known fix for it exists, include that as well.[13][10][13][10][13][27][3g        [27]H        [27]H        [27]H        [27]H        [27]H        [27]H        [27]H        [27]H        [27]H[13][13]<W-7:05:58 PM>[13]<R-7:05:58 PM>[13][10]<R-7:05:59 PM># [13][13][10]# <D 7:05:59 PM>

<SCRIPT VALUES>

<HOSTNAME="">

<PROMPT VTY="">

<PROMPT ENABLE="">

<PROMPT CONFIG="">

 

On the line that thats out '<C OK', that includes the login banner that the system gives so I know it's getting logged in. After login, the prompt is just a "#" and I also see that on that line twice towards the end. These are the variables I have set in the script file for that device:

 

Private Const DEVICE_STANDARDPROMPT = "#"

Private Const DEVICE_PRIVILEGEDPROMPT = "#"

Private Const DEVICE_CONFIGPROMPT = "#"

 

Is it having trouble picking up on the # prompt?

 

I appreciate any help. Thanks!

Backing up F5 BIGIP UCS archive

$
0
0

Does anybody know if there is a way to backup the UCS archive on the BIGIP's, I think the current template in CatTools only backs up the config file. You really need the UCS archive to be able to restore devices properly. 

Many thanks

Mark

Backup HP V1910 (Legacy 3Com 2928) switch

$
0
0

I am trying to backup this switch using the Device.CLI.Send activity.  Here is what I am trying to send:

Login authentication 

Username:xxxx
Password:
<Raben Tire IT Switch>_cmdline-mode on
All commands can be displayed and executed. Continue? [Y/N]y

 

Please input password:******
Warning: Now you enter an all-command mode for developer's testing, some commands may affect operation by wrong use, please carefully use it with our engineer's direction.
<Raben Tire IT Switch>backup startup-configuration to 10.21.1.13
Backup next startup-configuration file to 10.21.1.13, please wait...
finished!
<Raben Tire IT Switch>quit

I get to the input of the password and get a syntax error.  Since I get a syntax error there, the rest of the script never runs, it also gets a syntax error.  How do I input a password at that point?

Thanks,
Jeff

 

 

Fortinet Fortigate Backups via TFTP

$
0
0

Hi

 

I have managed to get a full back of a Fortigate firewall working using TFTP and I thought I would share how I did it with the community.

 

We have a pair of Fortigates 3600C and we run multiple VDOMs on these, this meant the default script withing Cattools didn't work for us. We also require a keystroke before logging in as well. All this meant I had to use a combination of variations and also the TFTP backup method.

 

Variations configuration

 

  • Add your devices using the "Generic.Device" type, this will allow you to use "Variations"
  • Give them a group name - it is well worth using the same group name for all Fortinets as this will allow you to apply the same variations to all devices within that "Group"
  • Fill in the rest of the device info and passwords as you would do normally
  • Go to the "variations" tab and click "use variations"
  • Go to the "prompts" tab and fill in the information as shown in the "qoutes":-

DEVICE_USERNAMEPROMPT = "login as:"

DEVICE_PASSWORDPROMPT = "password:"

DEVICE_STANDARDPROMPT = "#"

DEVICE_PRIVILEGEDPROMPT = "#"

DEVICE_CONFIGPROMPT = "(global) #"

  • Go to the "additional commands" tab and fill in the information as shown in the "qoutes":-

COMMAND_ENTERCONFIG = "configure global"

COMMAND_EXITCONFIG = "end"

  • Go to the "pre/post login" tab and fill in the information as shown in the "qoutes":-
  • NOTE: you may not need to do this if you aren't asking for a pre login key stroke.

PRE_LOGIN_MESSAGE = "(Press 'a' to accept):"

PRE_LOGIN_KEYSTROKE = "a"

  • Then click on the "group save" button as this will then save the changes to the group you specified. This will allow you to add more devices to this group and it will pre-populate the variations for you. This saves a lot of work in the future.

 

 

TFTP activity configuration

 

  • Go to activities and click add
  • Set Type to "Device.Backup.TFTP"
  • Fill in name and description
  • Set schedule under the time tab
  • Add your devices
  • Go to "Options" tab
  • Untick the "file to write to tftp server"
  • Untick the "enter commands in enable mode"
  • In the "optional alternative list of commands" section input the following:-

%ctUM: Timeout 100

%ctUM: EchoOff

config global

%ctUM: EchoOff

execute backup config tftp %ctDeviceName-Running-Config <input your IP Address>

%ctUM: EchoOff

  • If your not using the default file locations don't forget to change them, I got caught out on this. Mine look like:-

F:\CatTools2\Configs\%GroupName%\Config.Current.Running.%BaseFile%.txt

F:\CatTools2\Configs\Archives\%GroupName%\Config.Dated.Running.%BaseFile%.%DateISO%-%TimeHHMM%.txt

  • Click ok to save

 

Now run the activity to check it all works. What you will find is there is about a 5 minute delay where it shows as a busy task. Be patient as it will finish. I would recommend running this task outside of any other backups as it does take a bit longer than others.

 

Hope this helps others getting this working.

 

EDIT

 

I have updated this to change from using the command "execute backup full-config" to use "execute backup config". This is because we had an issue recently where we were unable to restore the backup taking using the "execute backup full-config" command.

Fortinet recommend using the "execute backup config" command as this just restores the configuration that has been changed.

I have now tested this on our lab device and I was able to restore the configuration successfully.

 

Cheers

 

Jay

 

Message was edited by: Jaybed --

Problem to connect to HP Procurve 2530 switch with Cattools

$
0
0

Hi my friends,

 

I am running Cattools version 3.6.0, now I am trying to backup the running configuration a HP Procurve 2530 switch. I have tried to enter some combinations of values under the "Passwords" and "Prompts" tab, but always prompted error messages. Can someone show me what value should I set under "Passwords" and "Prompts" tabs?  Below I will show you how I telnet to this switch via command prompt. Thanks in advance!

 

4.jpg

5.png

 

From command prompt, I key in  telnet 10.x.x.x, then press enter, then I see below page

1.jpg

I key in manager, and press enter, then I am prompted to enter password.

2.jpg

 

I enter password, and then press enter, I successfully enter privilege mode

3.jpg


Error unable to write to report file

$
0
0

Error unable to write to report file

HP Procurve configuration backup using SSH problem

$
0
0

Hello,

We have an HP Procurve J4903A Switch 2824 and it is integrated with RADIUS Server for authentication.
We are using Cat Tools 3.4 demo version and tried to configure the switch for configuraton backup using Method SSH2.
And using Device.Backup.Running Config  Type and SSH Username/Password are supplied. When Run the backup it shows the errors:
"Did not receive expected prompt when entering enable mode", and "Aborting: Unable to enter enable mode".

Do anybody faced this issue with SSH? Please help me to solve this problem.

Regards,

Achu

CatTools 3.2.19 [Enterprise] "Reason (30012) Protocol version mismatch error.. Giving up after 3 connection attempts"

$
0
0

Hello All,

I'm fairly new to Kiwi Tools and have been coming up with this error in my info log's.  We manage roughly 200 Catalyst switches (3550's, 3560's, 3570's) all trunked either through fiber or Ethernet.  I've tried many different variations of a the options available for "Devices" , like using my TACACS account for Username/Password or trying the local admin account and also trying Cisco SSH, SSH1 & SSH2.  I am able to access any switch via Secure SSH with my TACACS but no such luck with Kiwi Tools.  I've been running a test with "Device.Backup.Running.Config".  I will also mention doing a "show ssh" on any of our switches shows the version being 1.99.

I thank you in advance for any comments, questions or suggestions.

Roberto

By the way, great site, tons of great information.

Reason (30012) Protocol version mismatch error.. Giving up after 3 connection attempts"

$
0
0

Dear Sir 


 


I am new to KIWIcat tool, first time I have installed this tool to integarate with cisco asa for backup purpose. We manage around 100 cisco asa firewall and used to take manual backup. So we want to convert this process automatically with the help of kiwicat tool. However I am getting error message while take backup through tool which is listed below.


 


Reason (30012) Protocol version mismatch error.. Giving up after 3 connection attempts"


 


 


 


Could you please let me know if I have wrongly configured this or having this error due to any other reason.


 


Version of tool is 3.6.0 which I believe is latest one.


 


Please let me know if you require any other information to dig out the problem.


 


Thanks in advance

Dell m6220 - Did not receive VTY entry prompt from device after CR

$
0
0

Can not get CatTools to backup the configs on my Dell m6220 switches.

 

Have read several existing posts but their resolves did not work.

 

     * have changed from Dell Switch CLI to Cisco.Switch.IOS - same results

     * have cleared prompts from the Prompts tab, also tried adding "User"

     * have cleared the boxes from the passwords tab, and currently have Initial login requires username / password field checked.

 

The switch is setup to accept telnet, and is setup for TACACs authentication.

 

I do not know how to post the detailed logs - if someone can help me find/ create those - that would be great.

 

Thanks for your help!

MAC address table Report

$
0
0

I'm trying to extend the Report.MAC address table Activity to support the Juniper EX switches.  Can anyone tell me what the variable type (string, array, etc) and element order, and delimiter I need to return to the main activity for it to be added into the table?  I, of course, can't see the main activity code since it is encrypted.  Thanks.

Did not receive expected response to command: show running-config

$
0
0

I have a question, I have 2 Cisco WiSM  (Cisco 6500 blade) that I am trying to use Cat tools to backup the config files on a regular schedule. I have run into the following error when trying to run the activity:  "Did not receive expected response to command: configshow" and then Cat tools disconnects from the switch. I used telnet to issue the show running-config command and what I noticed is right after the show running-config command is issued the switch prompts with: "Press Enter to continue or <CTRL-Z> to abort"  or "--More-- or (q)uit " and sits there until there is user intervension. How can I automate the CR to continue command so I can use Cattools to pull the configuration of these switches? Any help would be greatly appreciated.

Thanks


Error unable to write to report file

$
0
0

Error unable to write to report file

cattools did not receive username entry prompt Cisco.IOS

$
0
0

<NEWSESSION CatTools 3.5.0 5/16/2017 11:06:15 AM>

<PROTOCOL=Telnet>

<DEVICE TYPE=Cisco.Router.General>

<ACTIVITY TYPE=Device.CLI.Send commands>

<ACTIVITY SCRIPT=C:\Program Files (x86)\CatTools3\Scripts\Client.Device.CLI.Send commands.txt>

<USERS NAME FOR DEVICE=ra-sw01-s8300>

<C OK 11:06:15 AM><R-11:06:15 AM>[13][10][13][10]User Access Verification[13][10][13][10]Username:

================================================================================

WFMDRetVal=1 Waiting for: "rockwell"

WFMDRetVal=2 Waiting for: "Password required, but none set"

WFMDRetVal=3 Waiting for: "admin"

WFMDBuffer="[13][10][13][10]user access verification[13][10][13][10]username: "

================================================================================

<R-11:06:46 AM>[13][10]% Username:  timeout expired![13][10]Username:

================================================================================

WFMDRetVal=1 Waiting for: "rockwell"

WFMDRetVal=2 Waiting for: "Password required, but none set"

WFMDRetVal=3 Waiting for: "admin"

WFMDBuffer="[13][10][13][10]user access verification[13][10][13][10]username: [13][10]% username:  timeout expired![13][10]username: "

================================================================================

<R-11:07:16 AM>[13][10]% Username:  timeout expired![13][10]Username: <R-11:07:46 AM>[13][10]% Username:  timeout expired!<D 11:07:48 AM>

<SCRIPT VALUES>

<HOSTNAME="">

<PROMPT VTY="">

<PROMPT ENABLE="">

<PROMPT CONFIG="">

How can I configure Cat Tools to connect to Dell SSH?

$
0
0

I am attempting to configure Cat Tools to backup some of our Dell PowerConnect 5548s running-configs over SSH, however I am running into problems when initiating the SSH session. Since the Dell SSH on the appliance is built on top of Telnet, it prompts for a useless field "Login as:" before asking for the local username and password. This first field has no effect on whether or not you can authenticate to the device.

I cannot find a way to put in a carriage return or line-feed command to make the session continue to the "Username: " prompt.

 

I apologize for my sentence structure on this post.

 

Cheers,

Stefan

CatTools 3.2.19 [Enterprise] "Reason (30012) Protocol version mismatch error.. Giving up after 3 connection attempts"

$
0
0

Hello All,

I'm fairly new to Kiwi Tools and have been coming up with this error in my info log's.  We manage roughly 200 Catalyst switches (3550's, 3560's, 3570's) all trunked either through fiber or Ethernet.  I've tried many different variations of a the options available for "Devices" , like using my TACACS account for Username/Password or trying the local admin account and also trying Cisco SSH, SSH1 & SSH2.  I am able to access any switch via Secure SSH with my TACACS but no such luck with Kiwi Tools.  I've been running a test with "Device.Backup.Running.Config".  I will also mention doing a "show ssh" on any of our switches shows the version being 1.99.

I thank you in advance for any comments, questions or suggestions.

Roberto

By the way, great site, tons of great information.

Error while unpacking program, code LP5. Please report to author.

$
0
0

Kiwi Cattools is stopping after trying to execute it.  Error windows pops up with message: "Error while unpacking program, code LP5. Please report to author."

Tried to unistall and reinstall the product (Kiwi CatTools 3.4.0) without success.  CatTools has been running since years without any problems, until now.  Probably some other recently (automatic) installed application or service is the cause, but I am not able to identify; I have installed nothing new for the last weeks.

Any help or advise is appreciated... thanks

Viewing all 21331 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>