sk182307 - Automatic refresh of SmartConsole views after Global Policy Assignment

Automatic refresh of SmartConsole views after Global Policy Assignment

Product: Multi-Domain Security Management
Version: R81.20, R82, R82.10
OS: Gaia
Last Modified: 2025-03-24

Solution

Overview

By design, when a SmartConsole is connected to one of the Domains on a Multi-Domain Security Management Server, and a super-administrator assigns the Global Policy, a popup appears in SmartConsole connected to the affected Domains "Domain's data was just updated with global changes", and you can click "Refresh" (to refresh the view immediately) or "Ignore" (to refresh the view the next time you log in to SmartConsole).

Check Point added a new behavior - when a super-administrator assigns the Global Policy, SmartConsole connected to the affected Domains is refreshed automatically and transparently.

Availability

The new behavior is available in:

Version Default Behavior Requirement
R82 and higher Automatic refresh None
R81.20 Manual refresh 1. Install the R81.20 Jumbo Hotfix Accumulator, Take 79 or higher
2. Set the value of the environment variable "NGM_AGP_POPUP_REFRESH" to "false"

Controlling the SmartConsole Behavior

You can control the SmartConsole behavior in affected Domains during a Global Policy Assignment with the environment variable "NGM_AGP_POPUP_REFRESH":

Environment Variable Value SmartConsole Behavior in Affected Domains
NGM_AGP_POPUP_REFRESH = false Automatic refresh - when a super-administrator assigns the Global Policy, SmartConsole connected to the affected Domains is refreshed automatically and transparently.
This is the default in R82 and higher.
NGM_AGP_POPUP_REFRESH = true Manual refresh - when a super-administrator assigns the Global Policy, SmartConsole connected to the affected Domains shows a popup with the "Refresh" and "Ignore" buttons.
This is the default in R81.20 and lower.

To set the environment variable value:

  1. Connect to the command line on the Multi-Domain Security Management Server.

  2. Log in to the Expert mode.

  3. Set the required environment variable value:

Change SmartConsole Behavior Syntax
Temporary
(does not survive reboot)
Automatic refresh $MDS_TEMPLATE/scripts/reload_env_vars.sh -e "NGM_AGP_POPUP_REFRESH=false"
Manual refresh $MDS_TEMPLATE/scripts/reload_env_vars.sh -e "NGM_AGP_POPUP_REFRESH=true"
Permanent
(survives reboot)
*Restarts the CPM daemon
Automatic refresh $MDS_TEMPLATE/scripts/override_server_setting.sh -e "NGM_AGP_POPUP_REFRESH" false
Manual refresh $MDS_TEMPLATE/scripts/override_server_setting.sh -e "NGM_AGP_POPUP_REFRESH" true
  1. Make the required changes in the Global Policy.

  2. Assign the Global Policy.

NOTE

This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.

Article Properties

Access Level: General
Status: Approved by TAC
Date Created: 2024-05-26
Last Modified: 2025-03-24