<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to connect to MDS R80.10 through alternate interface ? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4481#M101441</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;in R80.10, how to connect to MDS using another IP configured on any other interface than the MDS ip ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Its working when connecting throught the Mgmt interface.&amp;nbsp;&lt;/P&gt;&lt;P&gt;But not&amp;nbsp;when tring through any other interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Customer indicated they had the same issue when configuring their MDS in R77.30 and a specific procedure has been applied to make it possible. Any idea how to do in R80.10?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;see error message enclosed.&amp;nbsp;&lt;/P&gt;&lt;P&gt;regardss&lt;/P&gt;&lt;P&gt;François.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 26 Jul 2017 12:16:59 GMT</pubDate>
    <dc:creator>Francois_Beve</dc:creator>
    <dc:date>2017-07-26T12:16:59Z</dc:date>
    <item>
      <title>How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4481#M101441</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;in R80.10, how to connect to MDS using another IP configured on any other interface than the MDS ip ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Its working when connecting throught the Mgmt interface.&amp;nbsp;&lt;/P&gt;&lt;P&gt;But not&amp;nbsp;when tring through any other interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Customer indicated they had the same issue when configuring their MDS in R77.30 and a specific procedure has been applied to make it possible. Any idea how to do in R80.10?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;see error message enclosed.&amp;nbsp;&lt;/P&gt;&lt;P&gt;regardss&lt;/P&gt;&lt;P&gt;François.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Jul 2017 12:16:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4481#M101441</guid>
      <dc:creator>Francois_Beve</dc:creator>
      <dc:date>2017-07-26T12:16:59Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4482#M101442</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check the R80.10 MDM manual and search for:&amp;nbsp;Using More than one Interface on a Multi-Domain Server&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Changing the Leading Interface&lt;BR /&gt;You define the leading interface during the installation procedure, but you can change it later. If you add a new interface to a Multi-Domain Server after installation, define the Leading Interface manually.&lt;BR /&gt;To add a New Leading Interface:&lt;BR /&gt;1. From the Multi-Domain Server command line, run: mdsconfig&lt;BR /&gt;2. Select Leading VIP Interfaces, and then select Add external IPv4 interface.&lt;BR /&gt;3. Enter the interface name and press Enter.&lt;BR /&gt;Changing the Leading Interface:&lt;BR /&gt;1. From the Multi-Domain Server command line, run: mdsconfig&lt;BR /&gt;2. Do steps 2-3, in the above procedure, to add new interface.&lt;BR /&gt;3. Select Leading VIP Interfaces.&lt;BR /&gt;4. Select Remove External IPv4 interface.&lt;BR /&gt;5. Enter the interface name to remove and press Enter.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Jul 2017 12:32:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4482#M101442</guid>
      <dc:creator>Peter_Sandkuijl</dc:creator>
      <dc:date>2017-07-26T12:32:14Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4483#M101443</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I have the same issue. I tested to add a leading interface but it's doesn't work.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Jul 2017 08:09:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4483#M101443</guid>
      <dc:creator>Eric_eric</dc:creator>
      <dc:date>2017-07-27T08:09:21Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4484#M101444</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Eric, My customer also report adding a leading interface does not works.&amp;nbsp;&lt;/P&gt;&lt;P&gt;At this step, I will recommend to engage support as the procedure is the official one described in Admin guide.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="http://dl3.checkpoint.com/paid/27/2792d875783ad607cb7d593a6c335ec7/CP_R80.10_Multi-DomainSecurityManagement_AdminGuide.pdf?HashKey=1501155946_b6bd84cd028668cecdfc6bca93bbd55d&amp;amp;xtn=.pdf" title="http://dl3.checkpoint.com/paid/27/2792d875783ad607cb7d593a6c335ec7/CP_R80.10_Multi-DomainSecurityManagement_AdminGuide.pdf?HashKey=1501155946_b6bd84cd028668cecdfc6bca93bbd55d&amp;amp;xtn=.pdf"&gt;http://dl3.checkpoint.com/paid/27/2792d875783ad607cb7d593a6c335ec7/CP_R80.10_Multi-DomainSecurityManagement_AdminGuide.p…&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Jul 2017 09:47:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4484#M101444</guid>
      <dc:creator>Francois_Beve</dc:creator>
      <dc:date>2017-07-27T09:47:45Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4485#M101445</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did anyone find the solution for this, I also got the exact same issue, I can connect via MGMT, but i need a bond interface I have created to a leading interface, when i try to connect to Bond I also get the exact same error&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Domain 'Failed to find domainIp x.x.x.x' not found!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Apr 2018 04:01:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4485#M101445</guid>
      <dc:creator>Demith_Samaraw2</dc:creator>
      <dc:date>2018-04-23T04:01:57Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4486#M101446</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As suggested, it's best to open a TAC case on this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2018 01:03:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4486#M101446</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-04-25T01:03:31Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4487#M101447</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am not sure if this is applicable or will work in your current situation, but if you are setting up a new MDS, you can try using this procedure:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Create a /32 loopback interface with routable IP.&lt;/P&gt;&lt;P&gt;Advertise it to your network using dynamic protocol(s).&lt;/P&gt;&lt;P&gt;Declare it to be a target for licensing.&lt;/P&gt;&lt;P&gt;This way you should be able to connect to the IP address different from that of the default management interface.&lt;/P&gt;&lt;P&gt;Declare this interface to be a Leading Interface and use the bundled physical interfaces for connectivity to the rest of your infrastructure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've made this work previously on SMS, but never tried it on MDS.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please let me know if I am making incorrect assumptions or if this works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Vladimir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2018 13:57:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4487#M101447</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-04-25T13:57:18Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4488#M101448</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Dameon&lt;/P&gt;&lt;P&gt;I have raised a TAC case and seems it is a know issue on R80+ but they dont have a ETA for fix yet.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2018 23:19:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4488#M101448</guid>
      <dc:creator>Demith_Samaraw2</dc:creator>
      <dc:date>2018-04-25T23:19:22Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4489#M101449</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I did this recently in VMWare workstation where I only had eth0, but mds backup came from a system with a leading interface with Mgmt. I&amp;nbsp; performed the changes in MDSCONFIG, but it still didn't work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then did the following and it worked for me.....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Change the interface name to Mgmt by editing the following.&lt;BR /&gt;/etc/udev/rules.d/00-OS-XX.rule&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. In clish re-ip the interface and change state to on. (i noticed after changing the interface name that the state had changed to off and the ip had been removed)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Reboot and perform an mds_restore&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;4. After restore completes, reboot again. Note ! it takes a good 20 mins to things to initially start, but thats probably just my VMWare resources.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 May 2018 08:36:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4489#M101449</guid>
      <dc:creator>Leandro_Nicolet</dc:creator>
      <dc:date>2018-05-16T08:36:18Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4490#M101450</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There can be only one leading interface ,&amp;nbsp;but you can change it , see the procedure in&amp;nbsp;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;sk74020 -&amp;nbsp;&lt;/SPAN&gt;How to change the IP address of Domain Management Server&lt;/P&gt;&lt;P&gt;Let me know if it works for you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Dan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 17 May 2018 14:18:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4490#M101450</guid>
      <dc:creator>Dan_Zaidman</dc:creator>
      <dc:date>2018-05-17T14:18:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4491#M101451</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;having same issue here.&lt;BR /&gt;&lt;BR /&gt;I am testing the upgrade of R80.10 MDS to R80.20, with several CMAs included. This means that my target (R80.20) has the same IP addressing as the Source - which is still in production. This gives us IP conflicts, so i provisioned the 'real' leading VIP to be on an isolated subnet, with a secondary interface being routable on a different subnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this worked just find for the build process. and the database successfully import, and the MDS processes are up. &lt;BR /&gt;however when trying to Smartconsole onto the secondary interface (which i also have tried to setup as a leading VIP) i get the 'faile do tfind domainip'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the only solution i can think of, would be to destination NAT from a firewall: i.e, connect to 10.1.1.1 (IP owned/arped for on a firewall) and destination NAT it to this MDS's real IP 10.2.1.1. Obviously, this will need t obe an isolated DMZ otherwise i'll get the address conflict.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;in my world however, i dont have a firewall between my PC and the MDS 'lab' i am building to. &lt;BR /&gt;&lt;BR /&gt;hopefully someone will have a fix for this soon.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Mar 2019 09:05:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/4491#M101451</guid>
      <dc:creator>Aaron_Pritchar1</dc:creator>
      <dc:date>2019-03-08T09:05:35Z</dc:date>
    </item>
    <item>
      <title>Re: How to connect to MDS R80.10 through alternate interface ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/72019#M101452</link>
      <description>&lt;P&gt;Hello!&lt;BR /&gt;&lt;BR /&gt;I got this working.&lt;/P&gt;&lt;P&gt;Do not try to access the MDS via the new interface.&lt;/P&gt;&lt;P&gt;What you should do, is route the real MDS-network to your new interface IP.&lt;/P&gt;&lt;P&gt;E.g.&lt;/P&gt;&lt;P&gt;Real leading interface has 10.0.0.1 / 24&lt;/P&gt;&lt;P&gt;New external interface 192.168.0.1 / 24&lt;/P&gt;&lt;P&gt;Create a route to 10.0.0.0/24 via 192.168.0.1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And then try to access 10.0.0.1 instead of 192.168.0.1.&lt;/P&gt;&lt;P&gt;The MDS will route this internally when it arrives, and I can successfully log into the MDS.&lt;/P&gt;&lt;P&gt;My version though is R80.30&lt;/P&gt;</description>
      <pubDate>Fri, 10 Jan 2020 09:26:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-connect-to-MDS-R80-10-through-alternate-interface/m-p/72019#M101452</guid>
      <dc:creator>HenrikJ</dc:creator>
      <dc:date>2020-01-10T09:26:59Z</dc:date>
    </item>
  </channel>
</rss>

