<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Upgrading Cloudguard gateways fails for GWLB setup in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199160#M4437</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I am trying to upgrade Cloudguard Network Security gateways and we aer running "GWLB security VPC for Transit GW" setup.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am following documentation (&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CloudGuard_Network_for_AWS_Gateway_Load_Balancer_ASG/Content/Topics-AWS-GWLB-ASG-DG/Additional-Information.htm?TocPath=Additional%20Information%7CUpdating%20the%20Auto%20Scaling%20Group%7C_____0#Updating_the_Auto_Scaling_Group" target="_self"&gt;CGNS for GWLB&lt;/A&gt;&amp;nbsp;) for updating launch templates with new AMI image. So I picked up&amp;nbsp;&lt;SPAN&gt;R81.10-335.1383, finish the config and tried to spin up an EC2, however CME is stuck with message:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;ERROR Failed to initialize SIC with gateway instance GW-NAME - SIC port is closed. Refer to the Troubleshooting section in the CME Administration Guide.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I try to login to see the state of recently provisioned gateway and I get this message:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;login as: admin&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Your cloud-init configuration is corrupt or contains error:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Provided YAML file contains one or more errors:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Error in function _validate_parameters:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;The parameter 'sim_geneve_enabled' doesn't supported for simkern.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;In order to configure your system, please access the Web UI and finish the First Time Wizard.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here are the relevant lines from "user data" and I verified they are exactly the same as in old launch template so I don't know why this fails. Did something changed with these parameters starting from R81.10?&lt;/P&gt;
&lt;PRE&gt;&lt;CODE&gt;kernel_parameters:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;sim:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;- sim_geneve_enabled=1&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;- sim_geneve_br_dev=br0&lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 28 Nov 2023 14:36:33 GMT</pubDate>
    <dc:creator>abihsot__</dc:creator>
    <dc:date>2023-11-28T14:36:33Z</dc:date>
    <item>
      <title>Upgrading Cloudguard gateways fails for GWLB setup</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199160#M4437</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I am trying to upgrade Cloudguard Network Security gateways and we aer running "GWLB security VPC for Transit GW" setup.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am following documentation (&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CloudGuard_Network_for_AWS_Gateway_Load_Balancer_ASG/Content/Topics-AWS-GWLB-ASG-DG/Additional-Information.htm?TocPath=Additional%20Information%7CUpdating%20the%20Auto%20Scaling%20Group%7C_____0#Updating_the_Auto_Scaling_Group" target="_self"&gt;CGNS for GWLB&lt;/A&gt;&amp;nbsp;) for updating launch templates with new AMI image. So I picked up&amp;nbsp;&lt;SPAN&gt;R81.10-335.1383, finish the config and tried to spin up an EC2, however CME is stuck with message:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;ERROR Failed to initialize SIC with gateway instance GW-NAME - SIC port is closed. Refer to the Troubleshooting section in the CME Administration Guide.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I try to login to see the state of recently provisioned gateway and I get this message:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;login as: admin&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Your cloud-init configuration is corrupt or contains error:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Provided YAML file contains one or more errors:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Error in function _validate_parameters:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;The parameter 'sim_geneve_enabled' doesn't supported for simkern.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;In order to configure your system, please access the Web UI and finish the First Time Wizard.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here are the relevant lines from "user data" and I verified they are exactly the same as in old launch template so I don't know why this fails. Did something changed with these parameters starting from R81.10?&lt;/P&gt;
&lt;PRE&gt;&lt;CODE&gt;kernel_parameters:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;sim:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;- sim_geneve_enabled=1&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;- sim_geneve_br_dev=br0&lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2023 14:36:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199160#M4437</guid>
      <dc:creator>abihsot__</dc:creator>
      <dc:date>2023-11-28T14:36:33Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrading Cloudguard gateways fails for GWLB setup</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199162#M4438</link>
      <description>&lt;P&gt;CloudGuard Network Security for AWS Gateway Load Balancer only supports R80.40 and R81.20. Upgrading to R81.10 is not possible due to lack of GENEVE support.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk174447" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk174447&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2023 14:54:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199162#M4438</guid>
      <dc:creator>samirshah1</dc:creator>
      <dc:date>2023-11-28T14:54:09Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrading Cloudguard gateways fails for GWLB setup</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199164#M4439</link>
      <description>&lt;P&gt;Oh, that explains. Thanks for a quick reply!&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2023 14:59:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Upgrading-Cloudguard-gateways-fails-for-GWLB-setup/m-p/199164#M4439</guid>
      <dc:creator>abihsot__</dc:creator>
      <dc:date>2023-11-28T14:59:14Z</dc:date>
    </item>
  </channel>
</rss>

