<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: syslog generated during policy install in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125835#M18266</link>
    <description>&lt;P&gt;As I wrote above, the blade is only using 'FireWall'.&lt;BR /&gt;As you said, I open a case to TAC and wait for an answer.&lt;/P&gt;</description>
    <pubDate>Fri, 06 Aug 2021 03:36:55 GMT</pubDate>
    <dc:creator>checkma_a</dc:creator>
    <dc:date>2021-08-06T03:36:55Z</dc:date>
    <item>
      <title>syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125568#M18220</link>
      <description>&lt;P&gt;Hi all &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When the policy is installed in GW, the following message is generated in GW /var/log/messages.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function CLIENT_ENCRYPT_SCV_W_SRVC_FUNC id0 x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function IPPOOLS_ENCRYPT_WITH_SRVC_FUNC id0 x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function ENCRYPT_WITH_SERVICE_FUNC id0x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function RECORD_CONN_WITH_SCV_FUNC id0x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function CLIENT_ENCRYPT_FUNC id0x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function ENCRYPTION_FUNC id0x0a&lt;BR /&gt;kernel: [fw4_0];[ERROR]: up_fw_load_taditional_vpn_inspect_func_ids: failed to get inspect function IPPOOLS_ENCRYPTION_FUNC id0x0a&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you look at the above message, it looks like it is related to VPN, but&lt;/P&gt;&lt;P&gt;My customer is using GW blades only as 'Firewall'.&lt;/P&gt;&lt;P&gt;Do not use 'IPSec VPN' blades.&lt;/P&gt;&lt;P&gt;Has anyone seen messages like the above or know why they are generated?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank You.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Aug 2021 09:07:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125568#M18220</guid>
      <dc:creator>checkma_a</dc:creator>
      <dc:date>2021-08-03T09:07:08Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125792#M18262</link>
      <description>&lt;P&gt;These are related to Remote Access, I believe.&lt;BR /&gt;I assume you are also not using Mobile Access blade?&lt;BR /&gt;I see you've already opened a TAC case, which is what I would have suggested next.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Aug 2021 14:53:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125792#M18262</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-08-05T14:53:51Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125835#M18266</link>
      <description>&lt;P&gt;As I wrote above, the blade is only using 'FireWall'.&lt;BR /&gt;As you said, I open a case to TAC and wait for an answer.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Aug 2021 03:36:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125835#M18266</guid>
      <dc:creator>checkma_a</dc:creator>
      <dc:date>2021-08-06T03:36:55Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125940#M18285</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/33963"&gt;@checkma_a&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;can you please share what in which version you saw it?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ilya&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Aug 2021 08:05:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125940#M18285</guid>
      <dc:creator>Ilya_Yusupov</dc:creator>
      <dc:date>2021-08-08T08:05:36Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125946#M18286</link>
      <description>&lt;P&gt;Looks to me like your policy package is set to use VPN "Traditional Mode" instead of the newer "Simplified Mode" introduced in R52 (even though the syslog messages have a typo in them).&amp;nbsp; Under Manage Policies &amp;amp; Layers do you have this checkbox set:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="traditional.png" style="width: 983px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12909i6A816C10119C5B67/image-size/large?v=v2&amp;amp;px=999" role="button" title="traditional.png" alt="traditional.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Also check this Global Properties screen:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="traditional2.png" style="width: 692px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12910i047514F4063AF305/image-size/large?v=v2&amp;amp;px=999" role="button" title="traditional2.png" alt="traditional2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Aug 2021 13:48:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125946#M18286</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-08-08T13:48:33Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125986#M18290</link>
      <description>&lt;P&gt;The OS version is R80.40, and the hotfix take is 94.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Aug 2021 05:01:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125986#M18290</guid>
      <dc:creator>checkma_a</dc:creator>
      <dc:date>2021-08-09T05:01:11Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125990#M18291</link>
      <description>&lt;P&gt;Timothy_Hall As you say&lt;/P&gt;&lt;P&gt;It is set to Traditional mode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 200px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12918i3BB0FBA906BAEC7A/image-size/small?v=v2&amp;amp;px=200" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 200px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/12919i559B8CCDE7FC1BC1/image-size/small?v=v2&amp;amp;px=200" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Aug 2021 05:03:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125990#M18291</guid>
      <dc:creator>checkma_a</dc:creator>
      <dc:date>2021-08-09T05:03:25Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125993#M18292</link>
      <description>&lt;P&gt;If you're certain this policy does not contain any VPN rules (with action Encrypt) then you can change the policy to Simplified Mode using the procedure in:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk171035&amp;amp;partition=Expert&amp;amp;product=SmartConsole" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk171035&amp;amp;partition=Expert&amp;amp;product=SmartConsole&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That said, the time to convert to Simplified Mode is long overdue.&lt;BR /&gt;Simplified mode was introduced in NG FP2 (aka R52) and was formally deprecated in R8x.&lt;BR /&gt;I assume we will remove support for this feature entirely in an upcoming version.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Aug 2021 05:19:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/125993#M18292</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-08-09T05:19:31Z</dc:date>
    </item>
    <item>
      <title>Re: syslog generated during policy install</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/126194#M18304</link>
      <description>&lt;P&gt;Thanks to everyone who posted replies.&lt;/P&gt;&lt;P&gt;After activating vpn traditonal mode, I tested in my lab whether symptoms replicated, but the symptoms were not replicated.&lt;/P&gt;&lt;P&gt;I think you should check the TAC answer as well.&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Aug 2021 08:09:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/syslog-generated-during-policy-install/m-p/126194#M18304</guid>
      <dc:creator>checkma_a</dc:creator>
      <dc:date>2021-08-10T08:09:03Z</dc:date>
    </item>
  </channel>
</rss>

