<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20 in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239526#M5205</link>
    <description>&lt;P&gt;Thanks Team for the help. I reinstall new pair of firewalls eventually in a new VPX and done the peering with existing one and then route with TGW&lt;/P&gt;</description>
    <pubDate>Fri, 24 Jan 2025 03:18:37 GMT</pubDate>
    <dc:creator>Blason_R</dc:creator>
    <dc:date>2025-01-24T03:18:37Z</dc:date>
    <item>
      <title>Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239141#M5200</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;
&lt;P&gt;Can someone guide about best practices or procedure for reinstalling a new pair of firewall cluster in my existing AWS Tenant? I already R81 running however I am unable to upgrade it to R81.20 or R82&amp;nbsp; due to non-compliant hardisk partition. Hence the only way I believe possible is to reinstall the machines in AWS and then perform the SIC and install the policy?&lt;/P&gt;
&lt;P&gt;What steps that I need to take?&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 12:23:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239141#M5200</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2025-01-21T12:23:50Z</dc:date>
    </item>
    <item>
      <title>Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239149#M5201</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Basically it's a side-by-side new deployment.&lt;/P&gt;
&lt;P&gt;you deploy your original deployment in the same VPC with the same subnets (or different ones) and changes routes etc. to the new deployment.&lt;/P&gt;
&lt;P&gt;this SK describes upgrades in various cloud environments:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk162365" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk162365&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 12:58:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239149#M5201</guid>
      <dc:creator>Nir_Shamir</dc:creator>
      <dc:date>2025-01-21T12:58:39Z</dc:date>
    </item>
    <item>
      <title>Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239153#M5202</link>
      <description>&lt;P&gt;This is another SK worth bookmarking:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk173705" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk173705&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;For best practice I would suggest the relevant deployment guide. Taking note of any version specific configuration that might appear in the guide/s.&lt;/P&gt;
&lt;P&gt;For example:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CloudGuard_for_AWS_Cross_AZ_Cluster/Content/Topics-AWS-CrossAZ-Cluster-DG/Deployment-Steps-CrossAZ-Cluster.htm?TocPath=Deploying%20CloudGuard%20Network%20Cross%20AZ%20Cluster%20in%20AWS%7C_____0#Deploying_CloudGuard_Network_Cross_AZ_Cluster_in_AWS" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CloudGuard_for_AWS_Cross_AZ_Cluster/Content/Topics-AWS-CrossAZ-Cluster-DG/Deployment-Steps-CrossAZ-Cluster.htm?TocPath=Deploying%20CloudGuard%20Network%20Cross%20AZ%20Cluster%20in%20AWS%7C_____0#Deploying_CloudGuard_Network_Cross_AZ_Cluster_in_AWS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CloudGuard_Network_for_AWS_Single_AZ_Cluster/Content/Topics-AWS-SingleAZ-Cluster-DG/Deploying-Check-Point-Cluster-in-AWS.htm?TocPath=Deployment%20Steps%7C_____0#Step_5__Configuring_a_Check_Point_Cluster_in_SmartConsole" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CloudGuard_Network_for_AWS_Single_AZ_Cluster/Content/Topics-AWS-SingleAZ-Cluster-DG/Deploying-Check-Point-Cluster-in-AWS.htm?TocPath=Deployment%20Steps%7C_____0#Step_5__Configuring_a_Check_Point_Cluster_in_SmartConsole&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Both links are in sk173705.&lt;/P&gt;
&lt;P&gt;Pay attention to cluster object topology configuration (cluster + sync configuration on the internal interface).&lt;/P&gt;
&lt;P&gt;This is actually from the Azure cluster deployment guide but the wording is a bit better than in the AWS guides so I am sharing it in case it helps.&lt;/P&gt;
&lt;P&gt;"Configure the interfaces&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;eth0&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;eth1&lt;/SPAN&gt;.&lt;/P&gt;
&lt;OL&gt;
&lt;LI value="1"&gt;
&lt;P&gt;Double-click the interface&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;eth0&lt;/SPAN&gt;.&lt;BR /&gt;The&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;Network eth0&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;window shows.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI value="2"&gt;
&lt;P&gt;From the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;General&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;tab, in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;Network type&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;field:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;For version R81.10 and higher, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;Cluster&lt;/SPAN&gt;.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;For version R81 and lower, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="Menu_Options"&gt;Cluster + Sync&lt;/SPAN&gt;."&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And also this (for example), from CP_CloudGuard_for_AWS_Cross_AZ_Cluster:&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="mc-variable Vars_Versions.r_jaguar variable"&gt;R82&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;and higher, after configuring the cluster object and cluster members, you must change the Hardware type of the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="mc-variable Vars_Other.tp_sgates variable"&gt;Security Gateways&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;object that report to the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="mc-variable Vars_Other.tp_sms variable"&gt;Security Management Server&lt;/SPAN&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 13:35:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239153#M5202</guid>
      <dc:creator>Don_Paterson</dc:creator>
      <dc:date>2025-01-21T13:35:02Z</dc:date>
    </item>
    <item>
      <title>Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239217#M5203</link>
      <description>&lt;P&gt;So does that mean for version higher than R81.10 in CGNS you can not define internal interface as CLuster+sync?&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 16:28:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239217#M5203</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2025-01-21T16:28:20Z</dc:date>
    </item>
    <item>
      <title>Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239262#M5204</link>
      <description>&lt;P&gt;Sorry if I introduced any confusion.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The main point is to follow the deployment guide, which in your case I believe will be an AWS CGNS deployment guide.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Each cloud service provider has their own SDN (Software Defined Network) and there are differences in their designs, so that Check Point configurations for the same solution (e.g. Cluster) may differ from on CSP to another.&lt;/P&gt;
&lt;P&gt;Then there is the possibility of changes in the recommend configuration between Check Point versions.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It all just highlights the dynamic nature of the cloud.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Some dynamicness brings nice new features and others new configuration recommendations.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Either way we have the task of keeping up to date and one of the ways of doing that is using the relevant documentation (Deployment Guide)&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2025 07:42:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239262#M5204</guid>
      <dc:creator>Don_Paterson</dc:creator>
      <dc:date>2025-01-22T07:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: Need to reinstall AWS CGNS in a need of upgrade from R81 to R81.20</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239526#M5205</link>
      <description>&lt;P&gt;Thanks Team for the help. I reinstall new pair of firewalls eventually in a new VPX and done the peering with existing one and then route with TGW&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jan 2025 03:18:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Need-to-reinstall-AWS-CGNS-in-a-need-of-upgrade-from-R81-to-R81/m-p/239526#M5205</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2025-01-24T03:18:37Z</dc:date>
    </item>
  </channel>
</rss>

