<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cluster triage script in Scripts</title>
    <link>https://community.checkpoint.com/t5/Scripts/Cluster-triage-script/m-p/271598#M1509</link>
    <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;Here is simple cluster triage script. It would tell you exactly what to troubleshoot if cluster is in broken state. In my example, wont show much since cluster works, but it would if it shows anything other than active/standby.&lt;/P&gt;
&lt;P&gt;I know most of us know where to check logs and run below commands, but it still would give useful info:&lt;/P&gt;
&lt;P&gt;cphaprob state&lt;/P&gt;
&lt;P&gt;cphaprob -a if&lt;/P&gt;
&lt;P&gt;cphaprob -i list&lt;/P&gt;
&lt;P&gt;cphaprob -l list&lt;/P&gt;
&lt;P&gt;cphaprob syncstat&lt;/P&gt;
&lt;P&gt;Lab example:&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;[Expert@CP-FW-01:0]# cd /var/log/scripts/&lt;BR /&gt;[Expert@CP-FW-01:0]# chmod 777 *&lt;BR /&gt;[Expert@CP-FW-01:0]# dos2unix *&lt;BR /&gt;dos2unix: converting file cp_cluster_triage.sh to Unix format ...&lt;BR /&gt;[Expert@CP-FW-01:0]# ./cp_cluster_triage.sh&lt;BR /&gt;============================================================&lt;BR /&gt;Check Point ClusterXL triage (read-only)&lt;BR /&gt;Host: CP-FW-01&lt;BR /&gt;Time: 20260222_095956&lt;BR /&gt;Log : /var/tmp/cluster_triage_CP-FW-01_20260222_095956.log&lt;BR /&gt;VS : (none)&lt;BR /&gt;============================================================&lt;BR /&gt;NOTE: cphaprob is typically used in Expert mode.&lt;BR /&gt;Log file: /var/tmp/cluster_triage_CP-FW-01_20260222_095956.log&lt;/P&gt;
&lt;P&gt;===== cphaprob state =====&lt;/P&gt;
&lt;P&gt;Cluster Mode: High Availability (Active Up) with IGMP Membership&lt;/P&gt;
&lt;P&gt;ID Unique Address Assigned Load State Name&lt;/P&gt;
&lt;P&gt;1 (local) 169.254.0.248 100% ACTIVE CP-FW-01&lt;BR /&gt;2 169.254.0.247 0% STANDBY CP-FW-02&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Active PNOTEs: None&lt;/P&gt;
&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-114904&lt;BR /&gt;State change: ACTIVE(!) -&amp;gt; ACTIVE&lt;BR /&gt;Reason for state change: Reason for ACTIVE! alert has been resolved&lt;BR /&gt;Event time: Tue Feb 17 08:28:56 2026&lt;/P&gt;
&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 0&lt;BR /&gt;Time of counter reset: Tue Feb 17 08:27:16 2026 (reboot)&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;grep: Unmatched ( or \(&lt;/P&gt;
&lt;P&gt;Detected local normalized state: ACTIVE&lt;/P&gt;
&lt;P&gt;OK: Local member is ACTIVE (clean). No extra triage needed.&lt;BR /&gt;[Expert@CP-FW-01:0]#&lt;/P&gt;</description>
    <pubDate>Sat, 14 Mar 2026 05:48:46 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2026-03-14T05:48:46Z</dc:date>
    <item>
      <title>Cluster triage script</title>
      <link>https://community.checkpoint.com/t5/Scripts/Cluster-triage-script/m-p/271598#M1509</link>
      <description>1</description>
      <pubDate>Sat, 14 Mar 2026 05:48:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Scripts/Cluster-triage-script/m-p/271598#M1509</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2026-03-14T05:48:46Z</dc:date>
    </item>
  </channel>
</rss>

