<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firewall HA status (health check) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131761#M19441</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We ran this in the lab and when one of the members is down it does give &lt;STRONG&gt;Status: Attention&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cpstat ha.png" style="width: 559px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/13983i59961830F0D587C7/image-size/large?v=v2&amp;amp;px=999" role="button" title="cpstat ha.png" alt="cpstat ha.png" /&gt;&lt;/span&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 14 Oct 2021 11:12:20 GMT</pubDate>
    <dc:creator>Tal_Paz-Fridman</dc:creator>
    <dc:date>2021-10-14T11:12:20Z</dc:date>
    <item>
      <title>Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129039#M18866</link>
      <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a script that can be run on the MDS to show the HA state of the clusters in that CMA.&lt;BR /&gt;I thought about using&amp;nbsp; a generated candidate list from CDT tool however,&amp;nbsp; I was not sure it this would be accurate enough ( i thought it would be :-). Is there another option or will this be fine.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 13:49:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129039#M18866</guid>
      <dc:creator>Etheldra_Freder</dc:creator>
      <dc:date>2021-09-09T13:49:36Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129040#M18867</link>
      <description>&lt;P&gt;There is the command you have to run on GW:&lt;/P&gt;
&lt;DIV class="page" title="Page 1063"&gt;
&lt;DIV class="section"&gt;
&lt;DIV class="layoutArea"&gt;
&lt;DIV class="column"&gt;
&lt;PRE&gt;&lt;SPAN&gt;cphaprob state
&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Thu, 09 Sep 2021 13:57:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129040#M18867</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-09-09T13:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129050#M18868</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;You can use the AMON based cpstat command.&lt;/P&gt;
&lt;P&gt;It has a variety of flags based on the machine type (Management, Gateway etc.).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In your case from the Domain (CMA) run&amp;nbsp;&lt;STRONG&gt;cpstat &amp;lt;flag&amp;gt; -h &amp;lt;IP address of Security Gateway or Cluster or Cluster member&amp;gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, for clustering status:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;cpstat ha -h &amp;lt;IP address&amp;gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Just run cpstat once on the gateway to see the various flags, for example:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cpstat.jpg" style="width: 351px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/13652iA533F13CF2BBC69D/image-size/large?v=v2&amp;amp;px=999" role="button" title="cpstat.jpg" alt="cpstat.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV id="tinyMceEditor_83e9fa20ceda3dTal_PazFridman_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 14:32:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129050#M18868</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2021-09-09T14:32:10Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129153#M18882</link>
      <description>&lt;P&gt;Hi G_W_A.&lt;BR /&gt;We have over 2k of firewall and going to each running that command is not feasible and time consuming..&lt;BR /&gt;What I am trying to accomplish is to pull all the firewall status, in one location, whether by MDS, or any way that is suggested.&amp;nbsp; We have multiple MDSs and I am thinking that whatever solution I get would have to be ran on all of the MDS we have for the relative CMA&amp;nbsp; and respective firewall.&lt;BR /&gt;&lt;BR /&gt;Generating a candidate list will give a listing of the firewalls within a CMA (mdsenv) and you can tell the HA status there, but is there a script that will pull all the firewalls (per CMA) (without having to "mdsevn" into the CMA).&lt;/P&gt;</description>
      <pubDate>Fri, 10 Sep 2021 20:55:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129153#M18882</guid>
      <dc:creator>Etheldra_Freder</dc:creator>
      <dc:date>2021-09-10T20:55:34Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129156#M18883</link>
      <description>&lt;P&gt;Hi, this actually worked pretty well.&lt;BR /&gt;It still puts me in&amp;nbsp; a position to run it for each firewall.&lt;BR /&gt;So far the candidate list seems to the best solution to see all the firewalls, per CMA, all at once.&lt;/P&gt;</description>
      <pubDate>Fri, 10 Sep 2021 21:38:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129156#M18883</guid>
      <dc:creator>Etheldra_Freder</dc:creator>
      <dc:date>2021-09-10T21:38:26Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129158#M18884</link>
      <description>&lt;P&gt;You can also use below:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;[Expert]# cphaprob&lt;/P&gt;
&lt;P&gt;Usage:&lt;/P&gt;
&lt;P&gt;cphaprob [-vs &amp;lt;vsid&amp;gt;] state ................................. Shows cluster states of all members&lt;BR /&gt;cphaprob [-reset [-h|-c]] [-l &amp;lt;count&amp;gt;] show_failover ........ Shows cluster failover information&lt;BR /&gt;cphaprob names .............................................. Shows the member print mode in local logs&lt;BR /&gt;cphaprob [-reset] [-a] syncstat ............................. Shows the Delta Sync overall statistics&lt;BR /&gt;cphaprob [-reset] ldstat .................................... Shows the transport layer statistics&lt;BR /&gt;cphaprob [-i[a]] [-e] [-l] list ............................. Shows Critical Devices in problem state (use the -l flag to view the full list)&lt;BR /&gt;cphaprob [-vs all] [-a][-m] if .............................. Shows status of all cluster interfaces (use the -m flag to view VLAN monitoring mode)&lt;BR /&gt;cphaprob show_bond [&amp;lt;bond_name&amp;gt;] ............................ Shows all monitored bond interfaces&lt;BR /&gt;cphaprob show_bond_groups ................................... Shows all groups of bond interfaces&lt;BR /&gt;cphaprob igmp ............................................... Shows the IGMP membership status&lt;BR /&gt;cphaprob fcustat ............................................ Shows the Full Connectivity Upgrade statistics (when upgrading between minor versions)&lt;BR /&gt;cphaprob tablestat .......................................... Shows the information about the cluster interfaces on all members in a table format&lt;BR /&gt;cphaprob routedifcs ......................................... Shows the interfaces that are monitored by RouteD daemon when OSPF is configured&lt;BR /&gt;cphaprob roles .............................................. Shows the roles of the RouteD daemon&lt;BR /&gt;cphaprob release ............................................ Shows SW version match for all cluster members&lt;BR /&gt;cphaprob ccp_encrypt ........................................ Shows the CCP Encryption mode&lt;BR /&gt;cphaprob [-d|-f|-s] corr .................................... Shows the Correction Layer stats (All|Dispatcher|Firewall|SXL)&lt;BR /&gt;cphaprob mvc ................................................ Shows the Multi-version cluster state&lt;/P&gt;
&lt;P&gt;NOTE: Some commands are NOT applicable for 3rd party clusters.&lt;/P&gt;
&lt;P&gt;[Expert]# cphaconf&lt;/P&gt;
&lt;P&gt;Usage:&lt;/P&gt;
&lt;P&gt;cphaconf [-i &amp;lt;machine id&amp;gt;] [-p &amp;lt;policy id&amp;gt;]&lt;BR /&gt;[-n &amp;lt;cluster num&amp;gt;] [-c &amp;lt;cluster size&amp;gt;]&lt;BR /&gt;[-l &amp;lt;failover track mode &amp;gt;] [-m &amp;lt;service|primary-up|active-up&amp;gt;]&lt;BR /&gt;[-R 'a'|&amp;lt;required IF num&amp;gt;] [-f &amp;lt;Decision function type&amp;gt;]&lt;BR /&gt;[-t &amp;lt;sync IF 1&amp;gt;...] [-d &amp;lt;non-monitored IF 1&amp;gt;...]&lt;BR /&gt;[-M multicast|pivot] [-N &amp;lt;MAC magic num&amp;gt;]&lt;BR /&gt;[-u &amp;lt;member_name1,member_name2,...&amp;gt;]&lt;BR /&gt;start .................................................... Configures internal cluster settings&lt;/P&gt;
&lt;P&gt;cphaconf stop ..................................................... Stops clustering on this member&lt;BR /&gt;cphaconf [-t &amp;lt;sync IF 1&amp;gt;...] [-d &amp;lt;non-monitored IF 1&amp;gt;...] add ..... Adds Sync and Private interfaces explicitly to the kernel&lt;BR /&gt;cphaconf clear-secured ............................................ Clears Sync interfaces from the kernel&lt;BR /&gt;cphaconf clear-non-monitored ...................................... Clears non-monitored interfaces&lt;BR /&gt;cphaconf debug_data ............................................... Prints ClusterXL internal data to dmesg (see sk93306)&lt;BR /&gt;cphaconf delete_link_local [-vs &amp;lt;vs_id&amp;gt;] &amp;lt;IF name&amp;gt; ................ Removes a link local VIP from the interface&lt;BR /&gt;cphaconf set_link_local [-vs &amp;lt;vs_id&amp;gt;] &amp;lt;IF name&amp;gt; &amp;lt;cluster IP&amp;gt; ...... Adds a link local VIP to the interface&lt;BR /&gt;cphaconf mem_id_mode &amp;lt;id|name&amp;gt; .................................... Configures how local logs show this member - by ID or NAME&lt;BR /&gt;cphaconf failover_bond &amp;lt;bond-name&amp;gt; ................................ Performs failover between slave interfaces in the bond&lt;BR /&gt;cphaconf [-s] &amp;lt;set|unset|get&amp;gt; var &amp;lt;name&amp;gt; [value] .................. Configures and shows values of global kernel parameters&lt;BR /&gt;cphaconf bond_ls &amp;lt;set &amp;lt;name&amp;gt; &amp;lt;value&amp;gt; | remove &amp;lt;name&amp;gt;&amp;gt; ............. Configures the minimal number of required slaves for bond LS&lt;BR /&gt;cphaconf set_pnote -d &amp;lt;device&amp;gt; -t &amp;lt;timeout(sec)&amp;gt;&lt;BR /&gt;-s &amp;lt;ok|init|problem&amp;gt; [-p] [-g]&lt;BR /&gt;register........................................ Registers the user-defined Critical Device&lt;BR /&gt;cphaconf set_pnote -f &amp;lt;file&amp;gt; [-g] register ........................ Registers the user-defined Critical Devices from the file&lt;BR /&gt;cphaconf set_pnote -d &amp;lt;device&amp;gt; [-p] [-g] unregister ............... Unregisters the user-defined Critical Device&lt;BR /&gt;cphaconf set_pnote -a [-g] unregister ............................. Unregisters all Critical Devices&lt;BR /&gt;cphaconf set_pnote -d &amp;lt;device&amp;gt; -s &amp;lt;ok|init|problem&amp;gt; [-g] report ... Reports the specified state for the Critical Device&lt;BR /&gt;cphaconf ccp_encrypt &amp;lt;on/off&amp;gt; ..................................... Configures CCP Encryption mode&lt;BR /&gt;cphaconf ccp_encrypt_key &amp;lt;key&amp;gt; .................................... Configures CCP Encryption key&lt;BR /&gt;cphaconf mvc &amp;lt;on/off&amp;gt; ............................................. Configures Multi-version cluster state&lt;/P&gt;
&lt;P&gt;NOTE: Some commands are NOT applicable for 3rd party clusters.&lt;/P&gt;
&lt;P&gt;[Expert]&lt;/P&gt;</description>
      <pubDate>Fri, 10 Sep 2021 22:31:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129158#M18884</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-09-10T22:31:06Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129173#M18886</link>
      <description>&lt;P&gt;Have you also tried Management API commands to retrieve lists:&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;mgmt_cli show simple-clusters&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://sc1.checkpoint.com/documents/latest/APIs/#introduction~v1.8%20" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/latest/APIs/#introduction~v1.8%20&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Sep 2021 10:33:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129173#M18886</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2021-09-11T10:33:46Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129251#M18907</link>
      <description>&lt;P&gt;Thank you The Rock, I will look into these commands.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 08:29:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129251#M18907</guid>
      <dc:creator>Etheldra_Freder</dc:creator>
      <dc:date>2021-09-13T08:29:33Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129259#M18908</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I ran the command given on CLI and got the response below.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 08:38:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129259#M18908</guid>
      <dc:creator>Etheldra_Freder</dc:creator>
      <dc:date>2021-09-13T08:38:15Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129270#M18909</link>
      <description>&lt;P&gt;You can run a command FROM SMS on every GW:&amp;nbsp;&lt;A id="link_51" class="page-link lia-link-navigation lia-custom-event" href="https://community.checkpoint.com/t5/Scripts/GAIA-Easy-execute-CLI-commands-on-all-gateways-simultaneously/m-p/50883?search-action-id=31044706621&amp;amp;search-result-uid=50883" target="_blank"&gt;GAIA - Easy execute CLI &lt;SPAN class="lia-search-match-lithium"&gt;commands&lt;/SPAN&gt; on all gateways s... &lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 09:57:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/129270#M18909</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-09-13T09:57:05Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131630#M19410</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;are there any pre-requisites?&lt;/P&gt;
&lt;P&gt;mdsenv Domain1&lt;/P&gt;
&lt;P&gt;#cpstat ha -h &amp;lt;IP of cluster&amp;gt;&lt;/P&gt;
&lt;P&gt;#cpstat ha -h &amp;lt;IP Gateway1&amp;gt;&lt;/P&gt;
&lt;P&gt;#cpstat ha -h &amp;lt;IP Gateway2&amp;gt;&lt;/P&gt;
&lt;P&gt;gaves always the exact same result:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Product name: High Availability&lt;BR /&gt;Version: N/A&lt;BR /&gt;Status: OK&lt;BR /&gt;HA installed: 1&lt;BR /&gt;Working mode: High Availability (Active Up)&lt;BR /&gt;HA started: yes&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I thought to get a standby message from gateway2&lt;/P&gt;
&lt;P&gt;[R80.40]&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Oct 2021 06:58:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131630#M19410</guid>
      <dc:creator>S_E_</dc:creator>
      <dc:date>2021-10-13T06:58:28Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131641#M19414</link>
      <description>&lt;P&gt;Thanks - I'll ask someone to look at this.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Oct 2021 07:50:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131641#M19414</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2021-10-13T07:50:25Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131761#M19441</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We ran this in the lab and when one of the members is down it does give &lt;STRONG&gt;Status: Attention&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cpstat ha.png" style="width: 559px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/13983i59961830F0D587C7/image-size/large?v=v2&amp;amp;px=999" role="button" title="cpstat ha.png" alt="cpstat ha.png" /&gt;&lt;/span&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 11:12:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131761#M19441</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2021-10-14T11:12:20Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall HA status (health check)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131764#M19444</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;my understanding was that it is possible to fetch the HA status from the MDS.&lt;/P&gt;
&lt;P&gt;In our case, (R80.40) it does not work. But never mind.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# mdsenv DOM1&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;## ClusterXL&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of Cluster&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: High Availability (Active Up)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of GW1&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: High Availability (Active Up)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of GW2&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: High Availability (Active Up)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;## VRRP Cluster&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of Cluster&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: High Availability (Active Up)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of GW1&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: Sync only (OPSEC)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;[Expert@MDS-01:0]# cpstat ha -h IP-address of GW2&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Product name: High Availability&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Version: N/A&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Status: OK&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA installed: 1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;Working mode: Sync only (OPSEC)&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="1 2 3 4 5 6 7"&gt;HA started: yes&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Oct 2021 11:52:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-HA-status-health-check/m-p/131764#M19444</guid>
      <dc:creator>S_E_</dc:creator>
      <dc:date>2021-10-14T11:52:38Z</dc:date>
    </item>
  </channel>
</rss>

