<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CCP Mode: Cluster Upgrade in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122133#M17469</link>
    <description>&lt;P&gt;Thank you for responding,&lt;/P&gt;&lt;P&gt;we have 4600 appliances and have some performance issue and that is the reason TAC suggested to go with R80.30.&lt;/P&gt;&lt;P&gt;i am still curious about CCP mode during the upgrade. Normally what mode it should be? since i have started managing this cluster it is in multicast mode.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question: Should i change CCP mode to Auto or broadcast before/after firmware upgrade?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 24 Jun 2021 23:27:36 GMT</pubDate>
    <dc:creator>ashah</dc:creator>
    <dc:date>2021-06-24T23:27:36Z</dc:date>
    <item>
      <title>CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122076#M17458</link>
      <description>&lt;P&gt;Hello Experts,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am upgrading checkpoint cluster form R80.10 to R80.30 via "connectivity upgrade" method.&amp;nbsp;&lt;/P&gt;&lt;P&gt;while doing research and discovery, i found "zero down time" process suggests to change CCP mode to Broadcast before we start upgrade. but "connectivity upgrade" process does not.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Both the process suggest to turn CCP mode to Auto at the end of the upgrade process.&lt;/P&gt;&lt;P&gt;can you please suggest me how to deal CCP modes in "connectivity upgrade" method. do i need to change it to "broadcast" before starting upgrade.&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently CCP mode is unicast in this cluster.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank you in advance.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jun 2021 15:59:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122076#M17458</guid>
      <dc:creator>ashah</dc:creator>
      <dc:date>2021-06-24T15:59:48Z</dc:date>
    </item>
    <item>
      <title>Re: CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122129#M17467</link>
      <description>&lt;P&gt;Why R80.30 and not R80.40?&lt;BR /&gt;There you also have the Multi-Version Cluster method.&lt;BR /&gt;Also why Unicast?&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jun 2021 22:35:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122129#M17467</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-06-24T22:35:53Z</dc:date>
    </item>
    <item>
      <title>Re: CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122133#M17469</link>
      <description>&lt;P&gt;Thank you for responding,&lt;/P&gt;&lt;P&gt;we have 4600 appliances and have some performance issue and that is the reason TAC suggested to go with R80.30.&lt;/P&gt;&lt;P&gt;i am still curious about CCP mode during the upgrade. Normally what mode it should be? since i have started managing this cluster it is in multicast mode.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question: Should i change CCP mode to Auto or broadcast before/after firmware upgrade?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jun 2021 23:27:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122133#M17469</guid>
      <dc:creator>ashah</dc:creator>
      <dc:date>2021-06-24T23:27:36Z</dc:date>
    </item>
    <item>
      <title>Re: CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122135#M17470</link>
      <description>&lt;P&gt;Honestly, I upgraded lots of clusters and never changed CCP mode ever and all worked fine. Just follow zero downtime upgrade, its pretty straight forward. I would try to have console access to the boxes when doing this, just to be on the safe side.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jun 2021 01:40:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122135#M17470</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-06-25T01:40:51Z</dc:date>
    </item>
    <item>
      <title>Re: CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122136#M17471</link>
      <description>&lt;P&gt;since, zero down time method says connection initiated through active member drops when we fail over. i have planned to go for "connectivity upgrade" method. which is mostly similar to zero down time method. there is one extra step of connectivity method when standby member start sync with primary member.&amp;nbsp;&lt;/P&gt;&lt;P&gt;should i continue with "connectivity method" ? please guide me&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jun 2021 01:45:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122136#M17471</guid>
      <dc:creator>ashah</dc:creator>
      <dc:date>2021-06-25T01:45:12Z</dc:date>
    </item>
    <item>
      <title>Re: CCP Mode: Cluster Upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122138#M17473</link>
      <description>&lt;P&gt;Put it this way...you WANT zero downtime upgrade, because thats exactly what it is, no downtime. If you read the guide (&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_Installation_and_Upgrade_Guide/html_frameset.htm?topic=documents/R80.10/WebAdminGuides/EN/CP_R80.10_Installation_and_Upgrade_Guide/198779" target="_blank"&gt;https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_Installation_and_Upgrade_Guide/html_frameset.htm?topic=documents/R80.10/WebAdminGuides/EN/CP_R80.10_Installation_and_Upgrade_Guide/198779&lt;/A&gt;) it tells you exactly what you need to do.&lt;/P&gt;
&lt;P&gt;I know this is for R80.10, but same applies to any version really. You upgrade backup, reboot, change cluster version in dashboard, install policy as per instructions, do same on current master and install policy again after reboot. If you read the guide I pasted the link for, you will see the instructions.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jun 2021 01:51:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CCP-Mode-Cluster-Upgrade/m-p/122138#M17473</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-06-25T01:51:24Z</dc:date>
    </item>
  </channel>
</rss>

