<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Rules Migration from Smart-1 Cloud Management to Onpremise Management in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276336#M105162</link>
    <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;I have the following scenario:&lt;/P&gt;&lt;P&gt;- Cloudguard R81.20 Cluster (Active/Standby). Created by Marketplace.&lt;/P&gt;&lt;P&gt;- Smart-1 Cloud on portal.checkpoint.com&lt;/P&gt;&lt;P&gt;I'm working on migrating a Manager from Smart-1 Cloud to an on-premise Manager. I created all the rules, NATs, and VPNs in the new management system and got everything ready for the day of the Manager change. During the change, I successfully performed the SIC with the Cloudguard Firewall and applied the policy.&lt;/P&gt;&lt;P&gt;However, when I made the change, I noticed that some services were not working correctly. One of the VPNs did not start, and other services that use the Azure environment also stopped. I restarted the gateway and the VM, and I noticed an improvement in connectivity, but still without establishing an important Site-to-Site VPN (between checkpoints); only phase-1 was established.&lt;/P&gt;&lt;P&gt;I would like to know if anyone has experienced a situation like this and what measures I can take to avoid this problem in the next change. I'm thinking of setting up a parallel environment so I can work on the change more safely, but I wanted to know if you had any details to share.&lt;/P&gt;</description>
    <pubDate>Thu, 30 Apr 2026 19:15:19 GMT</pubDate>
    <dc:creator>jslimma_soloiro</dc:creator>
    <dc:date>2026-04-30T19:15:19Z</dc:date>
    <item>
      <title>Rules Migration from Smart-1 Cloud Management to Onpremise Management</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276336#M105162</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;I have the following scenario:&lt;/P&gt;&lt;P&gt;- Cloudguard R81.20 Cluster (Active/Standby). Created by Marketplace.&lt;/P&gt;&lt;P&gt;- Smart-1 Cloud on portal.checkpoint.com&lt;/P&gt;&lt;P&gt;I'm working on migrating a Manager from Smart-1 Cloud to an on-premise Manager. I created all the rules, NATs, and VPNs in the new management system and got everything ready for the day of the Manager change. During the change, I successfully performed the SIC with the Cloudguard Firewall and applied the policy.&lt;/P&gt;&lt;P&gt;However, when I made the change, I noticed that some services were not working correctly. One of the VPNs did not start, and other services that use the Azure environment also stopped. I restarted the gateway and the VM, and I noticed an improvement in connectivity, but still without establishing an important Site-to-Site VPN (between checkpoints); only phase-1 was established.&lt;/P&gt;&lt;P&gt;I would like to know if anyone has experienced a situation like this and what measures I can take to avoid this problem in the next change. I'm thinking of setting up a parallel environment so I can work on the change more safely, but I wanted to know if you had any details to share.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Apr 2026 19:15:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276336#M105162</guid>
      <dc:creator>jslimma_soloiro</dc:creator>
      <dc:date>2026-04-30T19:15:19Z</dc:date>
    </item>
    <item>
      <title>Re: Rules Migration from Smart-1 Cloud Management to Onpremise Management</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276337#M105163</link>
      <description>&lt;P&gt;Have not had that issue myself, but just wondering, is it multiple tunnels with same phase 2 issue or just one?&lt;/P&gt;</description>
      <pubDate>Thu, 30 Apr 2026 19:21:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276337#M105163</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2026-04-30T19:21:24Z</dc:date>
    </item>
    <item>
      <title>Re: Rules Migration from Smart-1 Cloud Management to Onpremise Management</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276338#M105164</link>
      <description>&lt;P&gt;The gateway has 3 VPN Tunnel. Two tunnel are with Routed-Based (Working fine) e just one vpn tunnel with Domain Based where phase-1 OK but phase-2 not working (no ipsec sa). Unfortunately during the maintenance window it was necessary a rollback and now all tunnels are up.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Apr 2026 19:44:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Rules-Migration-from-Smart-1-Cloud-Management-to-Onpremise/m-p/276338#M105164</guid>
      <dc:creator>jslimma_soloiro</dc:creator>
      <dc:date>2026-04-30T19:44:01Z</dc:date>
    </item>
  </channel>
</rss>

