<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Changing Mgmt interface on gateway cluster in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159661#M28005</link>
    <description>&lt;P&gt;Not really, just wanted to ensure that we had all the information rather than making assumptions.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Be sure to have the correct routes in place and where possible make allowances in your policy for the new Mgmt IP addresses / network prior to preserve communication with the SMS.&lt;/P&gt;</description>
    <pubDate>Sun, 16 Oct 2022 23:13:06 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-10-16T23:13:06Z</dc:date>
    <item>
      <title>Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159638#M27997</link>
      <description>&lt;P&gt;Good evening,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I need to move our DMZ network from its current interface to a new one. Whoever configured the cluster initially put our DMZ network on the Mgmt interface, and I'd like to move it to a separate spare interface so that the Mgmt port can be used for its intended purpose.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the best way to do this to minimise interruption? My current thinking is to use the Gaia portal to delete the interface from both cluster members, then configure the new interface with the same IPs. Then use the 'Get Interfaces without topology' in SmartConsole to then configure the cluster/VIP/network etc and install policy to the cluster. I've removed the Security Zone assigned to the current Mgmt interface from all rules and replaced with a network object in preparation for the move.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is this the correct approach? Any help would be much appreciated &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Aaron.&lt;/P&gt;</description>
      <pubDate>Sat, 15 Oct 2022 22:47:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159638#M27997</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2022-10-15T22:47:17Z</dc:date>
    </item>
    <item>
      <title>Re: Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159646#M27999</link>
      <description>&lt;P&gt;Just to clarify are you talking about the physical Management port or has someone assigned the Mgmt interface role to another port?&lt;/P&gt;
&lt;P&gt;From CLISH "show management interface" will show the current allocation.&lt;/P&gt;</description>
      <pubDate>Sun, 16 Oct 2022 12:47:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159646#M27999</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-16T12:47:00Z</dc:date>
    </item>
    <item>
      <title>Re: Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159649#M28001</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/3630"&gt;@Chris_Atkinson&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's the physical Mgmt port of the appliance. I'm not sure which interface has the management role. I can check this later.&lt;/P&gt;</description>
      <pubDate>Sun, 16 Oct 2022 13:50:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159649#M28001</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2022-10-16T13:50:53Z</dc:date>
    </item>
    <item>
      <title>Re: Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159658#M28002</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/3630"&gt;@Chris_Atkinson&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Mgmt port has the management interface role assigned to it. Does this complicate matters?&lt;/P&gt;</description>
      <pubDate>Sun, 16 Oct 2022 19:24:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159658#M28002</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2022-10-16T19:24:50Z</dc:date>
    </item>
    <item>
      <title>Re: Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159661#M28005</link>
      <description>&lt;P&gt;Not really, just wanted to ensure that we had all the information rather than making assumptions.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Be sure to have the correct routes in place and where possible make allowances in your policy for the new Mgmt IP addresses / network prior to preserve communication with the SMS.&lt;/P&gt;</description>
      <pubDate>Sun, 16 Oct 2022 23:13:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159661#M28005</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-16T23:13:06Z</dc:date>
    </item>
    <item>
      <title>Re: Changing Mgmt interface on gateway cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159671#M28013</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;You can refer to&amp;nbsp;&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk40993&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk40993&amp;amp;partition=Basic&amp;amp;product=Quantum&lt;/A&gt;&amp;nbsp;on changing IP on the management&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 04:39:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Changing-Mgmt-interface-on-gateway-cluster/m-p/159671#M28013</guid>
      <dc:creator>just13pro</dc:creator>
      <dc:date>2022-10-17T04:39:37Z</dc:date>
    </item>
  </channel>
</rss>

