<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Gateway update IPS failed in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163848#M29253</link>
    <description>&lt;P&gt;I will tell you 3 times I encountered this scenario and how it was fixed, twice in lab and once with customer. Personally, I dont see much logic in it, but it did work, so take it for what its worth ; - )&lt;/P&gt;
&lt;P&gt;scenario 1 -&amp;gt; In my lab back in R81 base (cant recall jumbo), had mgmt + single gateway, same problem as you, kept refreshing monitor option few times in dashboard for the object, no luck, pushed policy 3-4 times and finally turned green. Since upgraded to R81.10, no issues&lt;/P&gt;
&lt;P&gt;scenario 2 -&amp;gt; R81.10 lab (same distrib config as scenario 1), had to reboot the gateway when this happened and worked fine after&lt;/P&gt;
&lt;P&gt;scenario 3 -&amp;gt; Customer had an issue with backup gateway as you, so we issues clusterXL_admin down and clusterXL_admin up on current active, which caused failover to member 2 (one with the issue), we pushed policy and then all worked. Once cluster got upgraded later to newer version, all still worked fine&lt;/P&gt;
&lt;P&gt;So, to conclude, its still puzzling to me why this would happen in the first place, since I confirmed in all 3 cases that licenses/contracts were 100% fine.&lt;/P&gt;</description>
    <pubDate>Thu, 01 Dec 2022 12:51:16 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2022-12-01T12:51:16Z</dc:date>
    <item>
      <title>Gateway update IPS failed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163810#M29243</link>
      <description>&lt;P&gt;Hi community&amp;nbsp;&lt;/P&gt;&lt;P&gt;Checkpoint 6900 Gaia R81.10 JHF Take 44&amp;nbsp;&lt;/P&gt;&lt;P&gt;firewall running as HA active/standby&lt;/P&gt;&lt;P&gt;test connection from both firewall to&amp;nbsp;&lt;A href="https://updates.checkpoint.com" target="_blank" rel="noopener"&gt;https://updates.checkpoint.com&lt;/A&gt;&amp;nbsp; look connection is okay&lt;/P&gt;&lt;P&gt;firewall standby IPS can retrieve the update&lt;/P&gt;&lt;P&gt;for firewall active IPS update failed reference check the attached screenshot. Does anyone knows the solution how to fix it update fails?&lt;/P&gt;&lt;P&gt;[Expert@dcfw01:0]# curl_cli -v -k &lt;A href="https://updates.checkpoint.com" target="_blank" rel="noopener"&gt;https://updates.checkpoint.com&lt;/A&gt;&lt;BR /&gt;* Rebuilt URL to: &lt;A href="https://updates.checkpoint.com/" target="_blank" rel="noopener"&gt;https://updates.checkpoint.com/&lt;/A&gt;&lt;BR /&gt;* Trying 23.193.221.184...&lt;BR /&gt;* TCP_NODELAY set&lt;BR /&gt;* Connected to updates.checkpoint.com (23.193.221.184) port 443 (#0)&lt;BR /&gt;* ALPN, offering http/1.1&lt;BR /&gt;* *** Current date is: Wed Nov 30 14:36:11 2022&lt;BR /&gt;* TLSv1.3 (OUT), TLS handshake, Client hello (1):&lt;BR /&gt;* err is -1, detail is 2&lt;BR /&gt;* *** Current date is: Wed Nov 30 14:36:11 2022&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Server hello (2):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Certificate (11):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, CERT verify (15):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Finished (20):&lt;BR /&gt;* TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1):&lt;BR /&gt;* TLSv1.3 (OUT), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (OUT), TLS handshake, Finished (20):&lt;BR /&gt;* SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384&lt;BR /&gt;* ALPN, server accepted to use http/1.1&lt;BR /&gt;* servercert: Activated&lt;BR /&gt;* servercert: CRL validation was disabled&lt;BR /&gt;* Server certificate:&lt;BR /&gt;* subject: CN=*.checkpoint.com&lt;BR /&gt;* start date: Dec 7 13:19:55 2021 GMT&lt;BR /&gt;* expire date: Jan 8 13:19:55 2023 GMT&lt;BR /&gt;* issuer: C=BE; O=GlobalSign nv-sa; CN=GlobalSign GCC R3 DV TLS CA 2020&lt;BR /&gt;* SSL certificate verify result: unable to get local issuer certificate (20), continuing anyway.&lt;BR /&gt;* servercert: Finished&lt;BR /&gt;* TLSv1.3 (OUT), TLS app data, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, [no content] (0):&lt;BR /&gt;* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):&lt;BR /&gt;* TLSv1.3 (IN), TLS app data, [no content] (0):&lt;BR /&gt;&amp;lt; HTTP/1.1 404 Not Found&lt;BR /&gt;&amp;lt; Content-Type: text/plain; charset=utf-8&lt;BR /&gt;&amp;lt; Content-Length: 15&lt;BR /&gt;&amp;lt; Server: awselb/2.0&lt;BR /&gt;&amp;lt; Date: Wed, 30 Nov 2022 07:36:11 GMT&lt;BR /&gt;&amp;lt; Connection: keep-alive&lt;BR /&gt;&amp;lt;&lt;BR /&gt;* Connection #0 to host updates.checkpoint.com left intact&lt;BR /&gt;[Expert@dcfw01:0]#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18610i0B73813D8A7FCA3E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18611i3B898EAF95B7261D/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 06:37:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163810#M29243</guid>
      <dc:creator>leangm</dc:creator>
      <dc:date>2022-12-01T06:37:57Z</dc:date>
    </item>
    <item>
      <title>Re: Gateway update IPS failed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163848#M29253</link>
      <description>&lt;P&gt;I will tell you 3 times I encountered this scenario and how it was fixed, twice in lab and once with customer. Personally, I dont see much logic in it, but it did work, so take it for what its worth ; - )&lt;/P&gt;
&lt;P&gt;scenario 1 -&amp;gt; In my lab back in R81 base (cant recall jumbo), had mgmt + single gateway, same problem as you, kept refreshing monitor option few times in dashboard for the object, no luck, pushed policy 3-4 times and finally turned green. Since upgraded to R81.10, no issues&lt;/P&gt;
&lt;P&gt;scenario 2 -&amp;gt; R81.10 lab (same distrib config as scenario 1), had to reboot the gateway when this happened and worked fine after&lt;/P&gt;
&lt;P&gt;scenario 3 -&amp;gt; Customer had an issue with backup gateway as you, so we issues clusterXL_admin down and clusterXL_admin up on current active, which caused failover to member 2 (one with the issue), we pushed policy and then all worked. Once cluster got upgraded later to newer version, all still worked fine&lt;/P&gt;
&lt;P&gt;So, to conclude, its still puzzling to me why this would happen in the first place, since I confirmed in all 3 cases that licenses/contracts were 100% fine.&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 12:51:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163848#M29253</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-12-01T12:51:16Z</dc:date>
    </item>
    <item>
      <title>Re: Gateway update IPS failed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163851#M29254</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Run 'ips stat' on both gateways and compare output. Sometimes Smartview monitor can give wrong ouput.&lt;/P&gt;&lt;P&gt;BR&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 12:55:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163851#M29254</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2022-12-01T12:55:24Z</dc:date>
    </item>
    <item>
      <title>Re: Gateway update IPS failed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163854#M29255</link>
      <description>&lt;P&gt;Good point&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/73547"&gt;@Lesley&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 12:59:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Gateway-update-IPS-failed/m-p/163854#M29255</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-12-01T12:59:16Z</dc:date>
    </item>
  </channel>
</rss>

