<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Enable MVC During Cluster Upgrade in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118506#M16783</link>
    <description>&lt;P&gt;Hi. We're going to be upgrading our 2 gateway cluster from R80.30 to R80.40 and I see that enabling MVC is recommended during this process. I'm not completely sure where it fits into the process - please can someone verify if the process below is correct or not? Thanks very much.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Upgrade backup gateway to R80.40&lt;/P&gt;&lt;P&gt;2) Install access control policy (unchecking the cluster install fail check box)&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) Enable MVC on the upgraded gateway?&lt;/P&gt;&lt;P&gt;4) Check cluster status to confirm 'Active(!)' status on upgraded gateway and 'Standby' status on other gateway&lt;/P&gt;&lt;P&gt;5) Failover to the upgraded gateway&lt;/P&gt;&lt;P&gt;6) Upgrade the older R80.30 gateway&lt;/P&gt;&lt;P&gt;7) Install the access control and threat prevention policies (tick the cluster install fail check box)&lt;/P&gt;&lt;P&gt;8)&lt;/img&gt; Disable MVC on the gateway that was upgraded first?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 17 May 2021 10:07:12 GMT</pubDate>
    <dc:creator>Wyman</dc:creator>
    <dc:date>2021-05-17T10:07:12Z</dc:date>
    <item>
      <title>Enable MVC During Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118506#M16783</link>
      <description>&lt;P&gt;Hi. We're going to be upgrading our 2 gateway cluster from R80.30 to R80.40 and I see that enabling MVC is recommended during this process. I'm not completely sure where it fits into the process - please can someone verify if the process below is correct or not? Thanks very much.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Upgrade backup gateway to R80.40&lt;/P&gt;&lt;P&gt;2) Install access control policy (unchecking the cluster install fail check box)&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) Enable MVC on the upgraded gateway?&lt;/P&gt;&lt;P&gt;4) Check cluster status to confirm 'Active(!)' status on upgraded gateway and 'Standby' status on other gateway&lt;/P&gt;&lt;P&gt;5) Failover to the upgraded gateway&lt;/P&gt;&lt;P&gt;6) Upgrade the older R80.30 gateway&lt;/P&gt;&lt;P&gt;7) Install the access control and threat prevention policies (tick the cluster install fail check box)&lt;/P&gt;&lt;P&gt;8)&lt;/img&gt; Disable MVC on the gateway that was upgraded first?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 May 2021 10:07:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118506#M16783</guid>
      <dc:creator>Wyman</dc:creator>
      <dc:date>2021-05-17T10:07:12Z</dc:date>
    </item>
    <item>
      <title>Re: Enable MVC During Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118524#M16786</link>
      <description>&lt;P&gt;This is nicely covered in the R80.40 Installation and Upgrade guide, section "Multi-Version Cluster Upgrade Procedure - Gateway Mode"; see the attached screenshot which is the non-VSX procedure for a 3-node cluster.&amp;nbsp; Note that there is a slightly different procedure for VSX clusters (which is also provided in that same document).&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mvc.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/11702iFD3C9AC00385BAF4/image-size/large?v=v2&amp;amp;px=999" role="button" title="mvc.png" alt="mvc.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 May 2021 11:47:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118524#M16786</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-05-17T11:47:09Z</dc:date>
    </item>
    <item>
      <title>Re: Enable MVC During Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118733#M16816</link>
      <description>&lt;P&gt;Hello Wyman,&lt;/P&gt;
&lt;P&gt;I believe you've gotten back up your current configuration.&lt;/P&gt;
&lt;P class="procedureheading"&gt;Workflow:&lt;/P&gt;
&lt;OL class="listnumber"&gt;
&lt;LI class="listnumber"&gt;On each Cluster Member - Change the CCP mode to Broadcast&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On the Cluster Member M2 - Upgrade to R80.30 with CPUSE&lt;/LI&gt;
&lt;LI class="listnumber"&gt;In SmartConsole - Change the version of the cluster object&lt;/LI&gt;
&lt;LI class="listnumber"&gt;In SmartConsole - Install the Access Control Policy&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On each Cluster Member - Examine the cluster state&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On the old Cluster Member M1 - Stop all Check Point services&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On the upgraded Cluster Member M2&amp;nbsp; - Examine the cluster state&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On the old Cluster Member M1 - Upgrade to R80.30 with CPUSE&lt;/LI&gt;
&lt;LI class="listnumber"&gt;In SmartConsole - Establish SIC with the former old Cluster Member M1&lt;/LI&gt;
&lt;LI class="listnumber"&gt;In SmartConsole - Install the Access Control Policy&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On each Cluster Member - Examine the cluster state&lt;/LI&gt;
&lt;LI class="listnumber"&gt;On each Cluster Member - Change the CCP mode to Auto&lt;/LI&gt;
&lt;LI class="listnumber"&gt;In SmartConsole - Install the Threat Prevention Policy&lt;/LI&gt;
&lt;LI class="listnumber"&gt;Test the functionality&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There is a great guide for upgrading cluster zero downtime:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_Installation_and_Upgrade_Guide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_Installation_and_Upgrade_Guide/198950" target="_blank"&gt;https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_Installation_and_Upgrade_Guide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_Installation_and_Upgrade_Guide/198950&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 May 2021 03:25:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enable-MVC-During-Cluster-Upgrade/m-p/118733#M16816</guid>
      <dc:creator>Baasanjargal_Ts</dc:creator>
      <dc:date>2021-05-19T03:25:13Z</dc:date>
    </item>
  </channel>
</rss>

