<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/203384#M4556</link>
    <description>&lt;P&gt;I had some sessions with TAC. It was the TTL set in vsec.conf that was too high, so the datacenter objects were not updated correctly.&lt;/P&gt;</description>
    <pubDate>Wed, 17 Jan 2024 16:43:54 GMT</pubDate>
    <dc:creator>Chris_Van_Kriek</dc:creator>
    <dc:date>2024-01-17T16:43:54Z</dc:date>
    <item>
      <title>Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199970#M4454</link>
      <description>&lt;P&gt;We successfully connected CME to GCP, all is done per the process. Identity Awareness API enabled and configured. Datacenter object are visible on the Management server. Now, the rules with GCP Datacenter objects (tags) are not being hit. If we enter the subnet manually, the rule is hit. How to troubleshoot this issue, specifically on the gateways in GCP ?&lt;/P&gt;&lt;P&gt;version: R81.20&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 13:48:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199970#M4454</guid>
      <dc:creator>Chris_Van_Kriek</dc:creator>
      <dc:date>2023-12-07T13:48:38Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199986#M4455</link>
      <description>&lt;P&gt;Hi, did you see any errors in SmartConsole logs (blade:"CloudGuard IaaS") or in&amp;nbsp;&lt;SPAN&gt;$FWDIR/log/cloud_proxy.elg?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 16:12:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199986#M4455</guid>
      <dc:creator>tomlev</dc:creator>
      <dc:date>2023-12-07T16:12:08Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199988#M4456</link>
      <description>&lt;P&gt;Filter&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/86339"&gt;@tomlev&lt;/a&gt;&amp;nbsp;mentioned is very useful, I got similar issue solved before with it.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 16:18:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199988#M4456</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-07T16:18:38Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199993#M4457</link>
      <description>&lt;P&gt;Thanks for the useful info.&lt;/P&gt;&lt;P&gt;I had already checked the blade='Cloudguard IAAS" filter and it shows that "Mapping of DataCenter GCP finished.. Mapping took 52 seconds etc..."&lt;/P&gt;&lt;P&gt;Also the $FWDIR/log/cloud_proxy.elg reflects the same.&lt;/P&gt;&lt;P&gt;Is there any log on the gateway instances I can check ?&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 17:01:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199993#M4457</guid>
      <dc:creator>Chris_Van_Kriek</dc:creator>
      <dc:date>2023-12-07T17:01:29Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199994#M4458</link>
      <description>&lt;P&gt;Not certain, but maybe see if there are any other files with names that include words proxy or cloud in $FWDIR/log or /var/log dir&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 17:04:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/199994#M4458</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-07T17:04:37Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200128#M4459</link>
      <description>&lt;P&gt;There seems to be a file on the gateways: cloud_config.log, but apart from this:&lt;/P&gt;&lt;P&gt;2023-10-12 05:29:22,864::INFO::run_cmd Executing: dbget installer:self_update_in_progress with:&lt;BR /&gt;data=None&lt;BR /&gt;env=None&lt;BR /&gt;expected_return_codes=(0,)&lt;BR /&gt;2023-10-12 05:29:22,872::INFO::Handling error:&lt;BR /&gt;Output:&lt;BR /&gt;Retry number 1 out of 3&lt;/P&gt;&lt;P&gt;happening twice (it seems the third time it was successfull )&lt;/P&gt;&lt;P&gt;There is also a file, which is a symbolic link cloud-user-data -&amp;gt; /opt/CPcge/log/user_data, but that file doesn't exist.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 07:38:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200128#M4459</guid>
      <dc:creator>Chris_Van_Kriek</dc:creator>
      <dc:date>2023-12-10T07:38:47Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200131#M4460</link>
      <description>&lt;P&gt;Under the same filter, are there any errors related to the GW update?&lt;BR /&gt;Try adding to the filter&amp;nbsp;"&lt;SPAN&gt;AND severity:Critical"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 08:05:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200131#M4460</guid>
      <dc:creator>tomlev</dc:creator>
      <dc:date>2023-12-10T08:05:29Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200132#M4461</link>
      <description>&lt;P&gt;I see errors with that filter from a couple of weeks ago:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Failed to update Data Center objects on gateway gcp-controller--vm-checkpoint-gateway-szrc&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;And this for all three instances of the GCP MiG.&lt;/P&gt;&lt;P&gt;But when I look at the logs of today, I see that the instances have updated the Data Center objects successfully:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Data Center objects were successfully updated on gateway gcp-controller--vm-checkpoint-gateway-szrc. 1 IPs updated, 0 IPs removed.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Still, the rules with the data center object is not hit. I have put a rule under it, with explicit IP (manually created) of the object, and that one is hit.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 08:42:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200132#M4461</guid>
      <dc:creator>Chris_Van_Kriek</dc:creator>
      <dc:date>2023-12-10T08:42:26Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200135#M4462</link>
      <description>&lt;P&gt;I would try do remote with TAC to see if there is something we might be missing here...&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 14:07:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/200135#M4462</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-10T14:07:00Z</dc:date>
    </item>
    <item>
      <title>Re: Rules with GCP Datacenter objects (tags) dropped on the instances of Cloudguard MiG</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/203384#M4556</link>
      <description>&lt;P&gt;I had some sessions with TAC. It was the TTL set in vsec.conf that was too high, so the datacenter objects were not updated correctly.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jan 2024 16:43:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Rules-with-GCP-Datacenter-objects-tags-dropped-on-the-instances/m-p/203384#M4556</guid>
      <dc:creator>Chris_Van_Kriek</dc:creator>
      <dc:date>2024-01-17T16:43:54Z</dc:date>
    </item>
  </channel>
</rss>

