Family: forcepoint ngfw (v7.9.0) ================================================== Vendor: forcepoint Family: ngfw New: No CLI Commands: -------------------------------------------------- Routing table: ip address Zone firewall: GET elements/single_fw//internal_gateway//internal_endpoint/ Zone firewall: GET elements/rbvpn_tunnel/ Zone firewall: GET elements Zone firewall: ip address Zone firewall: sg-status -l Vlan: ip link Vlan: ip address SN: sg-status -l Routing table: ip -6 route Routing table: ip route Zone firewall: GET elements/[single_fw|virtual_fw|fw_cluster]|single_layer2|virtual_layer2|layer2_cluster/ Policy-based Routing: GET elements/[virtual_fw|fw_cluster|single_fw]/ Policy-based Routing: GET elements Neighbors: lldpcli show neighbors IPv6 Neighbor Discovery: ip -6 neigh NAT44: GET /elements/mgt_server/ NAT44: GET elements/application_situation/ NAT44: GET elements/icmp_service/ NAT44: GET elements/ip_service/ NAT44: GET elements/udp_service/ Zone firewall: GET elements/interface_zone/ Zone firewall: GET /elements/mgt_server/ Zone firewall: GET elements/host/ Zone firewall: GET elements/icmp_service/ Zone firewall: GET elements/single_fw//alias_resolving Zone firewall: GET elements/address_range/ Zone firewall: GET elements/match_expression/ Zone firewall: GET elements/match_expression Zone firewall: GET elements/ip_list/ Zone firewall: GET elements/ip_country_group/ NAT44: GET elements/tcp_service/ Zone firewall: GET elements/fw_policy//fw_ipv4_access_rule/ Zone firewall: GET elements/fw_policy//fw_ipv4_access_rule Zone firewall: GET elements/ip_service/ Zone firewall: GET elements/application_situation/ Zone firewall: GET elements/udp_service/ Zone firewall: GET elements/tcp_service/ Zone firewall: GET elements/network/ Zone firewall: GET elements/single_fw//snapshot/ Zone firewall: GET elements/single_fw//snapshot IPsec: GET /elements/gateway_profile/ L2 Interfaces: GET elements L2 Interfaces: sg-status -l L2 Interfaces: ip -s -s -d link IPsec: GET /elements/mgt_server/ IPsec: GET /elements/external_gateway//external_endpoint/ IPsec: GET /elements/external_gateway/ IPsec: POST /monitoring_status IPsec: GET /elements/rbvpn_tunnel/ IPsec: GET /elements/[single_fw|virtual_fw|fw_cluster]//internal_gateway//internal_endpoint/ L3 Interfaces: sg-status -l IPsec: GET /elements/[single_fw|virtual_fw|fw_cluster]//internal_gateway/ IPsec: GET /elements/[single_fw|virtual_fw|fw_cluster]/ IPsec: GET /elements IPsec: ip -s -s -d link IPsec: sg-status -l Device info: date Device info: cat /proc/meminfo Device info: sg-status -l ARP: ip neighbor NAT44: GET elements/network/ NAT44: GET elements/match_expression/ NAT44: GET elements/match_expression NAT44: GET elements/single_fw//alias_resolving NAT44: GET elements/interface_zone/ NAT44: GET elements/host/ NAT44: GET elements/single_fw//snapshot/ NAT44: GET elements/single_fw//snapshot NAT44: GET elements/fw_policy//fw_ipv4_nat_rule/ NAT44: GET elements/fw_policy//fw_ipv4_nat_rule Initial device discovery: sg-version NAT44: GET elements/[single_fw|virtual_fw|fw_cluster]|single_layer2|virtual_layer2|layer2_cluster/ NAT44: GET elements NAT44: sg-status -l L3 Interfaces: GET /elements/mgt_server/ L3 Interfaces: GET elements/[single_fw|virtual_fw|fw_cluster]|single_layer2|virtual_layer2|layer2_cluster/ L3 Interfaces: GET elements/single_fw//internal_gateway//internal_endpoint/ L3 Interfaces: GET elements/rbvpn_tunnel/ L3 Interfaces: GET elements L3 Interfaces: ip address Task Support: -------------------------------------------------- Basic discovery: ✓ ARP ✓ Device info ○ Disable pagination ○ FHRP (IPv6: ○) ✓ Initial device discovery ✓ IPv6 Neighbor Discovery (IPv6: ✓) ✓ L2 Interfaces ✓ L3 Interfaces (IPv6: ✓) ✗ Link aggregations ○ MAC ✓ Neighbors (IPv6: ✗) ✓ Routing table (IPv6: ✓) ○ Serial ports ✓ SN ○ STP ○ Virtual Contexts ✓ Vlan Configuration: ○ Configuration saved ○ Current config ○ Startup config Hardware: ○ Cluster ✗ End of Life data ○ Extenders ○ PoE ○ Power supplies & fans ○ Stacking ○ Transceivers ○ VSS Hybrid discovery: ○ snCheck Management: ○ DHCPv4 Relays (IPv6: ○) ○ DHCPv4 Servers (IPv6: ○) ✗ DNS resolver (IPv6: ✗) ○ IP Flow (IPv6: ○) ✗ License ✗ NTP (IPv6: ✗) ○ Port mirroring ✗ PTP (IPv6: ✗) ✗ SNMP (IPv6: ✗) ○ Syslog (IPv6: ○) ○ Unidirectional Link Detection MPLS: ○ Circuit cross-connect ○ MPLS forwarding ○ MPLS LDP ○ RSVP ○ VPLS ○ VPWS Multicast: ○ IGMP ○ IGMP Snooping ○ MAC multicast address table ○ MROUTE ○ PIM Other: ○ Cloud network interfaces (IPv6: ○) ○ PPPoE (IPv6: ○) Policy: ✓ NAT44 QoS: ✗ QoS Routing: ✗ BGP Advertised Routes (IPv6: ✗) ○ Fabric Path ✓ Policy-based Routing (IPv6: ✓) ○ Route summary (IPv6: ○) ✗ Routing policies ○ VRF Routing protocols: ✗ BGP neighbors (IPv6: ✗) ○ EIGRP (IPv6: ○) ○ IS-IS (IPv6: ○) ○ Lisp (IPv6: ○) ○ OSPF ○ OSPFv3 (IPv6: ○) ○ RIP SDN: ○ APIC (IPv6: ○) ○ Cisco ACI (IPv6: ○) ○ Virtual machines ○ VXLAN SDWAN: ✗ SD-WAN sites Security: ✗ AAA (IPv6: ✗) ✗ ACL (IPv6: ✗) ○ DHCPv4 Snooping (IPv6: ○) ○ DMVPN (IPv6: ○) ○ Error disabled interfaces ✓ IPsec (IPv6: ✗) ○ LSVPN (IPv6: ○) ✗ Prefix lists (IPv6: ✗) ○ Secured access ports ○ Storm control ○ STP port security ○ Virtual servers (IPv6: ○) ✓ Zone firewall (IPv6: ✗) Wireless: ○ Wireless AP ○ Wireless clients ○ Wireless Controller with APs All Families from forcepoint: -------------------------------------------------- forcepoint@ngfw <-- current Legend: ✓=Full, ✗=Not Yet, ○=N/A