STATECTL

Description

Command line utility to set state daemon parameters when firewall is in HA mode.

Command

statectl
All usage:
-v : verbose mode
-t <0-9999> : timeout
-s <infos> dump information
<infos> :
cluster = show HA cluster node info
sync = show HA node sync status
interfaces = show interfaces HA status
all = all the above
(default target host: all)
-c <command> send a command to the cluster.
<command>:
halt stop firewall
reboot reboot firewall
force_active force firewall to
become the active one
force_passive force firewall to become the passive one
unforce cancel previous forcing
relink reactivate faulty links
sync[,<type>[,<source>[,nowait]]] synchronize files
Synchronizations options (-c sync[,<type>[,<source>]]):
type : Type of synchronization
everything (default)
config
ldap
ssh
cert
ha
au_Clamav
au_Kaspersky
au_Antispam
au_RootCertificates
au_Patterns
au_URLFiltering
au_Vaderetro
au_Pvm
pvmdb
utm_secrets
source : specify from which node the files must be downloaded
<serial> = specific host
local = from local firewall
active = from an active firewall (default)
dumproot run dumproot
enha run enha
ennetwork run ennetwork
pause_balancing[<,reason>[<,duration>]] will freeze HA balancing
<reason> : [enha|enfilter|ennetwork|enswitch|forced]
<duration> : max time during which the HA will be frozen
(target host: all)
resume_balancing resume HA balancing if frozen
has_logdisk indicates if the firewall has a log disk
-w <channel> watch HA message between cluster <channel>: 'SYNC-<serial>' or 'command', or 'all' (default target host: all)
-S <serial> specify a target cluster member
<serial>:
specific host
local = local host
all = all cluster members
-a (re)generate Corosync authentification key file
-d display Corosync statistics and diagnostics info
-W <nb fw> wait for the HA cluster to be operationnal <nb fw> number of firewalls to wait for

Results

Example