<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Moving from one gateway appliance to new appliances with  intent to make clusterXL in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/169826#M30781</link>
    <description>&lt;P&gt;1) Export the GAIA config via "save configuration &amp;lt;filename&amp;gt;" on the 5200 gateway.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5200 gateway&amp;gt; save configuration gw.txt&lt;/P&gt;
&lt;P&gt;2) Create two new configurations (for example gw1.txt and gw2.txt) and add new IP addresses in the same network segment to all interfaces.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Do not use the IP addresses of the 5200 appliance. &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; If necessary, you must change the interface names on both 6200 appliance in the config file. &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Change the host name in the file for both appliances.&lt;BR /&gt;&lt;BR /&gt;3) Install GAIA R81.10 on both 6200 appliances and start the first configuration wizard.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp; &lt;BR /&gt;4) &amp;nbsp;Import the create configs on both 6200 appliances.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 6200 gateway 1&amp;gt; set clienv on-failure continue&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;6200 gateway 1&amp;gt; load configuration gw1.txt&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 6200 gateway 2&amp;gt; set clienv on-failure continue&lt;BR /&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp; 6200 gateway 2&amp;gt; load configuration gw2.txt&lt;BR /&gt;&lt;BR /&gt;5) Now creat an cluster objekt in the SmartConsle and establish the SIC to both gateways.&lt;/P&gt;
&lt;P&gt;6) Start "get topology" to get the interface configuration.&lt;/P&gt;
&lt;P&gt;7) Now create cluster interfaces and add the old IP addresses of the 5200 appliance as VIP addresses.&lt;/P&gt;
&lt;P&gt;8 ) If necessary, replace the old singel gateway in the policy with the new cluster object.&lt;/P&gt;
&lt;P&gt;9) Install the policy.&lt;/P&gt;</description>
    <pubDate>Tue, 31 Jan 2023 17:58:27 GMT</pubDate>
    <dc:creator>HeikoAnkenbrand</dc:creator>
    <dc:date>2023-01-31T17:58:27Z</dc:date>
    <item>
      <title>Moving from one gateway appliance to new appliances with  intent to make clusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/169747#M30765</link>
      <description>&lt;P&gt;Hello guys,&lt;/P&gt;&lt;P&gt;I have VM with management R81.20 and one 5200 gateway R81.10.&lt;/P&gt;&lt;P&gt;Now we have bought two new appliances 6200 that we want in cluster instead of 5200.&lt;/P&gt;&lt;P&gt;So i want to use current old Gateway ip addresses as VIP at this new cluster.&lt;/P&gt;&lt;P&gt;i have all ready prepared physical&amp;nbsp; ports and addressing&amp;nbsp; for GW1 and GW2 . But VIP will be the same as current 5200.&lt;/P&gt;&lt;P&gt;I know that this is common task ,so i am asking for some kind of procedure or advice.&lt;/P&gt;&lt;P&gt;I do not want to create new policies and rules from scratch.&amp;nbsp;&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Jan 2023 11:28:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/169747#M30765</guid>
      <dc:creator>Nenad_Odic</dc:creator>
      <dc:date>2023-01-31T11:28:32Z</dc:date>
    </item>
    <item>
      <title>Re: Moving from one gateway appliance to new appliances with  intent to make clusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/169826#M30781</link>
      <description>&lt;P&gt;1) Export the GAIA config via "save configuration &amp;lt;filename&amp;gt;" on the 5200 gateway.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5200 gateway&amp;gt; save configuration gw.txt&lt;/P&gt;
&lt;P&gt;2) Create two new configurations (for example gw1.txt and gw2.txt) and add new IP addresses in the same network segment to all interfaces.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Do not use the IP addresses of the 5200 appliance. &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; If necessary, you must change the interface names on both 6200 appliance in the config file. &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Change the host name in the file for both appliances.&lt;BR /&gt;&lt;BR /&gt;3) Install GAIA R81.10 on both 6200 appliances and start the first configuration wizard.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp; &lt;BR /&gt;4) &amp;nbsp;Import the create configs on both 6200 appliances.&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 6200 gateway 1&amp;gt; set clienv on-failure continue&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;6200 gateway 1&amp;gt; load configuration gw1.txt&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 6200 gateway 2&amp;gt; set clienv on-failure continue&lt;BR /&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp; 6200 gateway 2&amp;gt; load configuration gw2.txt&lt;BR /&gt;&lt;BR /&gt;5) Now creat an cluster objekt in the SmartConsle and establish the SIC to both gateways.&lt;/P&gt;
&lt;P&gt;6) Start "get topology" to get the interface configuration.&lt;/P&gt;
&lt;P&gt;7) Now create cluster interfaces and add the old IP addresses of the 5200 appliance as VIP addresses.&lt;/P&gt;
&lt;P&gt;8 ) If necessary, replace the old singel gateway in the policy with the new cluster object.&lt;/P&gt;
&lt;P&gt;9) Install the policy.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Jan 2023 17:58:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/169826#M30781</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2023-01-31T17:58:27Z</dc:date>
    </item>
    <item>
      <title>Re: Moving from one gateway appliance to new appliances with  intent to make clusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/172354#M31319</link>
      <description>&lt;P&gt;Dear Heiko,&lt;/P&gt;&lt;P&gt;thanks so much for this i have done this by now and configured new appliances like you suggested.&lt;/P&gt;&lt;P&gt;I have one dilemma in smart console part of creating a cluster object with the same VIP as the currently active old appliance.&lt;/P&gt;&lt;P&gt;So my question is it enough just to disconnect old GW so that it turns red in console *no connection*,leave it as an object in console ,and than creating cluster object with same VIP .In fact i am confused with possibility that i can not give those IP addresses because they are already taken by the disconnected old GW.&lt;/P&gt;&lt;P&gt;So is it smart to delete old gw object before i start creating the cluster object ?Please is there some pitfalls there?&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Wed, 22 Feb 2023 14:44:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Moving-from-one-gateway-appliance-to-new-appliances-with-intent/m-p/172354#M31319</guid>
      <dc:creator>Nenad_Odic</dc:creator>
      <dc:date>2023-02-22T14:44:50Z</dc:date>
    </item>
  </channel>
</rss>

