STATECTL

Description

Command line utility to set state daemon parameters when firewall is in HA mode.

Command

statectl
All usage:
-v : verbose mode
-t <0-9999> : timeout
-s <infos> dump information
<infos> :
cluster = show HA cluster node info
sync = show HA node sync status
interfaces = show interfaces HA status
all = all the above
(default target host: all)
-c <command> send a command to the cluster.
	<command>:
	halt                              stop firewall
	reboot                            reboot firewall
	force_active                      force firewall to become the active one
	force_passive                     force firewall to become the passive one
	unforce                           cancel previous forcing
	relink                            reactivate faulty links
	sync[,<type>[,<source>[,nowait]]] synchronize files
		Synchronizations options (-c sync[,<type>[,<source>]]):
		type : Type of synchronization
			everything (default)
			config
			ldap
			ssh
			cert
			ha
			au_Clamav
			au_AdvancedAV
			au_Antispam
			au_CompromisedUrls
			au_RootCertificates
			au_Patterns
			au_URLFiltering
			au_Vaderetro
			au_Pvm
			pvmdb
			utm_secrets
		source : specify from which node the files must be downloaded
			<serial> = specific host
			local = from local firewall
			active = from an active firewall (default)
	dumproot                          run dumproot
	enha                              run enha
	ennetwork                         run ennetwork
	pause_balancing[<,reason>[<,duration>]] will freeze HA balancing
		<reason> : [enha|enfilter|ennetwork|enswitch|forced]
		<duration> : max time during which the HA will be frozen
		(target host: all)
	resume_balancing                  resume HA balancing if frozen
	has_logdisk                       indicates if the firewall has a log disk
-w <channel> watch HA message between cluster <channel>: 'SYNC-<serial>' or 'command', or 'all' (default target host: all)
-S <serial> specify a target cluster member
<serial>:
specific host
local = local host
all = all cluster members
-a (re)generate Corosync authentification key file
-d display Corosync statistics and diagnostics info
-W <nb fw> wait for the HA cluster to be operationnal <nb fw> number of firewalls to wait for

Results

Example