<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic vSEC (VE) R80.10 in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21447#M3902</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have recently run into a substantial issue with vSEC for ESXi (R80.10). &amp;nbsp;This issue revolves around the vSEC being supported as a Standalone Server versus a distributed environment. &amp;nbsp;In researching the product, along with conversations with appropriate check point pre-sales engineers, it would appear that for smaller environments the Standalone Server would work without issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Recently have run into an issue with disk space errors on this installation which appear to (primarily) revolve around the growth of log files within the /var/log volume of the appliance. &amp;nbsp;As the appliance is installed via an OVF template, there is no way to customize the size of particular volumes such as root, var/log, etc. &amp;nbsp;This has led to TAC suggesting the the supported configuration is a distributed environment, though this appears to necessitate the purchase of yet another license for the Management Server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Given the extensive logging that is implemented within R80.10, I am wondering if anyone has tried vSEC utilizing R77.30 in a Standalone environment? &amp;nbsp;If so, what if any issues were encountered?&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 05 Jan 2018 18:32:19 GMT</pubDate>
    <dc:creator>Duane_Hartman</dc:creator>
    <dc:date>2018-01-05T18:32:19Z</dc:date>
    <item>
      <title>vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21447#M3902</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have recently run into a substantial issue with vSEC for ESXi (R80.10). &amp;nbsp;This issue revolves around the vSEC being supported as a Standalone Server versus a distributed environment. &amp;nbsp;In researching the product, along with conversations with appropriate check point pre-sales engineers, it would appear that for smaller environments the Standalone Server would work without issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Recently have run into an issue with disk space errors on this installation which appear to (primarily) revolve around the growth of log files within the /var/log volume of the appliance. &amp;nbsp;As the appliance is installed via an OVF template, there is no way to customize the size of particular volumes such as root, var/log, etc. &amp;nbsp;This has led to TAC suggesting the the supported configuration is a distributed environment, though this appears to necessitate the purchase of yet another license for the Management Server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Given the extensive logging that is implemented within R80.10, I am wondering if anyone has tried vSEC utilizing R77.30 in a Standalone environment? &amp;nbsp;If so, what if any issues were encountered?&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Jan 2018 18:32:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21447#M3902</guid>
      <dc:creator>Duane_Hartman</dc:creator>
      <dc:date>2018-01-05T18:32:19Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21448#M3903</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;The&lt;/SPAN&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;&amp;nbsp;OVF is intended for the Gateway only installation, it actually explicitly states:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class="" style="color: #333333; border-bottom: 1px solid #cccccc; font-size: 42px; padding-top: 35px;"&gt;Download Details&lt;DIV class="" style="color: #333333; font-weight: bold; font-size: 16px;"&gt;R80.10 vSEC Virtual Edition (VE) &lt;SPAN style="color: #ff0000;"&gt;Gateway&lt;/SPAN&gt; in Network Mode - VMWare OVF template&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;For management, you should go the route of installing from ISO as Open Server on VMware.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;I cannot stress enough how bad of an idea it is to try and use all in one solution: you are risking corruption of the configuration along with the impact on the gateway.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;It may be acceptable, if installed as Open Server for quick and dirty proof of concept setup, otherwise, all in one is the realm of the appliances for SMBs.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;Vladimir&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Jan 2018 23:32:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21448#M3903</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-01-05T23:32:52Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21449#M3904</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I appreciate your comments and have installed with the ISO, which allowed me to customize the installation per recommended volume (partition) sizes.&amp;nbsp; I would note that in my discussions with TAC (and closer scrutiny of the release notes) that the OVF (VE) running as a Gateway only does not meet the recommendations for volume (partition) sizes.&amp;nbsp; Again, the ISO solved both problems and appears to run fine in a VMWare v6.5 environment.&amp;nbsp; Thank you for your valuable input.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 06 Jan 2018 15:36:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21449#M3904</guid>
      <dc:creator>Duane_Hartman</dc:creator>
      <dc:date>2018-01-06T15:36:10Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21450#M3905</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What we did on our management server when we did not have the space in the build of the machine we attached another disk, through fiberchannel and added this as a logical disc with a symbolic link for the log directory. Just think about the idea itself and add a disk in VM to the machine and use this as a symbolic link for your /var/log/CPlog location.&lt;/P&gt;&lt;P&gt;Another option is to resize the disc within Gaia, as it is all based on Red Hat there is more than enough you will be able to find about how to do that.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 07 Jan 2018 09:57:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21450#M3905</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2018-01-07T09:57:26Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21451#M3906</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You are quite welcome.&amp;nbsp;&lt;/P&gt;&lt;P&gt;As Maarten has mentioned, there is&amp;nbsp; way to add disks, resize partitions and re-point symlinks, described in&amp;nbsp;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;sk94671,&lt;/SPAN&gt;&amp;nbsp;&lt;A class="link-titled" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk94671" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk94671"&gt;How to add hardware resources, such as log storage, to a VMware Virtual Machine running Gaia OS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;and I had, in the past, made use of it precisely after finding myself in a situation similar to yours (in my lab environment).&lt;/P&gt;&lt;P&gt;That being said, if you would like to maintain the simplicity of using single virtual disk, ISO does provide better initial configuration options.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 07 Jan 2018 15:25:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21451#M3906</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-01-07T15:25:05Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21452#M3907</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This OVF option is the ONLY listed supported install media for 80.10 VSEC VE Network Mode as of&amp;nbsp;sk101441.&lt;/P&gt;&lt;P&gt;The 80.10 VE has a 50GB disk which is an improvement, however it is still not a sufficient one as you would still need to manually extend your disk according to&amp;nbsp; sk118356 and/or&amp;nbsp;sk114115.&lt;/P&gt;&lt;P&gt;The issue is even if it is only an image for Gateways it would not accommodate &lt;STRONG&gt;Snapshots&lt;/STRONG&gt; out of the box!&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Oct 2018 12:48:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21452#M3907</guid>
      <dc:creator>cezar_varlan1</dc:creator>
      <dc:date>2018-10-15T12:48:57Z</dc:date>
    </item>
    <item>
      <title>Re: vSEC (VE) R80.10</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21453#M3908</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;IMHO, the Gaia native snapshots on VSEC is not a really good idea.&lt;/P&gt;&lt;P&gt;They have limitations in terms of naming and descriptions, require way too much space, are essentially creating another partition and for export of the snapshot, are using yet more space and resources.&lt;/P&gt;&lt;P&gt;I'd prefer to use native virtualization platform snapshot capabilities with Gaia's scheduled backups.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Oct 2018 08:27:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/vSEC-VE-R80-10/m-p/21453#M3908</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-10-16T08:27:18Z</dc:date>
    </item>
  </channel>
</rss>

