<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Adding vlan on bond  in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17508#M1326</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First of all please check how&amp;nbsp;many interfaces are being monitored with command&amp;nbsp;"cphaprob -a if"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If&amp;nbsp;both the interfaces (445 and 2234&amp;nbsp;) are being monitored&amp;nbsp;then there is a chance of cluster breaking. Generally if only one interface from respective bond interface&amp;nbsp;is under monitoring then smallest vlan if is preferred.&lt;/P&gt;&lt;P&gt;If Network guys have already configured the L2 vlan across the network then there should not be any issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Manoj&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 19 Dec 2018 07:57:56 GMT</pubDate>
    <dc:creator>Manoj_Kumar2</dc:creator>
    <dc:date>2018-12-19T07:57:56Z</dc:date>
    <item>
      <title>Adding vlan on bond</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17505#M1323</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a cluster XL running on r77.30&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have to add a new vlan 3000 on bond1 which is currently having two vlans 445 and 2234&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so 3000 will be highest vlan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We cant afford failover and we cant disable cluster xl on standby node while creating subinterface&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can we still do this change directly by first creating subinterface on standby node&amp;nbsp; and then on active node&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then do changes in policy and install the policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The goal here is to avoid failover and we cant run below commands to standby&lt;/P&gt;&lt;P&gt;clusterXL_admin down&lt;BR /&gt;clusterXL_admin up&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 17:59:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17505#M1323</guid>
      <dc:creator>ANUPAM_GAUR</dc:creator>
      <dc:date>2018-12-18T17:59:13Z</dc:date>
    </item>
    <item>
      <title>Re: Adding vlan on bond</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17506#M1324</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Why exactly can't you disable ClusterXL on the standby node?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Dec 2018 00:01:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17506#M1324</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-12-19T00:01:20Z</dc:date>
    </item>
    <item>
      <title>Re: Adding vlan on bond</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17507#M1325</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, We dont want to lose redundancy at any cost because of SLA&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Dec 2018 07:14:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17507#M1325</guid>
      <dc:creator>ANUPAM_GAUR</dc:creator>
      <dc:date>2018-12-19T07:14:00Z</dc:date>
    </item>
    <item>
      <title>Re: Adding vlan on bond</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17508#M1326</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First of all please check how&amp;nbsp;many interfaces are being monitored with command&amp;nbsp;"cphaprob -a if"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If&amp;nbsp;both the interfaces (445 and 2234&amp;nbsp;) are being monitored&amp;nbsp;then there is a chance of cluster breaking. Generally if only one interface from respective bond interface&amp;nbsp;is under monitoring then smallest vlan if is preferred.&lt;/P&gt;&lt;P&gt;If Network guys have already configured the L2 vlan across the network then there should not be any issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Manoj&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Dec 2018 07:57:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Adding-vlan-on-bond/m-p/17508#M1326</guid>
      <dc:creator>Manoj_Kumar2</dc:creator>
      <dc:date>2018-12-19T07:57:56Z</dc:date>
    </item>
  </channel>
</rss>

