<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Loopback interface is going out of routing table in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170878#M30949</link>
    <description>&lt;P&gt;Hey Chris, also for cluster, solution provided by&amp;nbsp; &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk117794" target="_blank" rel="noopener"&gt;sk117794&lt;/A&gt;&amp;nbsp; (linked from sk95968 @ point 4) ) seems to be very &lt;STRONG&gt;dangerous&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;Like i said inside SR&amp;nbsp;6-0003534450, any new get interface with/without topology will invalidate/delete the manually created loopback interface. The behaivoir is confirmed and no solution provided (it works by design).&lt;/P&gt;
&lt;P&gt;so, if you add new interface/vlan and you forgot to add loopback interface again, i suppose OSPF/BGP process will be disrupted because of new Router-ID needs to be selected&lt;/P&gt;
&lt;P&gt;I've opened a RFE number&amp;nbsp;&lt;STRONG&gt;hT5Nxy49E&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 09 Feb 2023 17:46:10 GMT</pubDate>
    <dc:creator>CheckPointerXL</dc:creator>
    <dc:date>2023-02-09T17:46:10Z</dc:date>
    <item>
      <title>Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170813#M30930</link>
      <description>&lt;P&gt;I have Quantum 6700 appliances running as VSX cluster and I have configured loopback interface with an IPv4 address.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;This works perfectly for like 1-2 days. Then suddenly this IPv4 address drops out of the FW's routing table and no longer works.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;When I run "show interfaces all" it shows the loop00 interface correctly with the IP address. But there is nothing regarding this IP in the routing table after 1-2 days.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Why is it dissappearing from routing table after some hours?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 07:00:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170813#M30930</guid>
      <dc:creator>Gombodorj</dc:creator>
      <dc:date>2023-02-09T07:00:58Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170815#M30931</link>
      <description>&lt;P&gt;Which version and JHF is used for this VSX gateway - R81.10 JHF Take ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer also:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk117794" target="_self"&gt;[sk117794] OSPF configured on a loopback interface is not added to OSPF database in Cluster on Gaia OS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108848" target="_self"&gt;[&lt;SPAN&gt;sk108848]&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Output of "cphaprob -a if" command shows a Loopback interface as "Down" on all cluster members&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Feb 2023 01:17:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170815#M30931</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-02-13T01:17:19Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170816#M30932</link>
      <description>&lt;P&gt;I'm using R81.10 JHF Take 79 on the VSX gateway. The way I do it is as follows:&lt;BR /&gt;&lt;BR /&gt;1. set vsx off&lt;BR /&gt;2. add interface lo loopback X.X.X.X/32&lt;BR /&gt;3. set vsx on&amp;nbsp;&lt;BR /&gt;4. save config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As I said before after this IP address drops out of routing table. I have to do the above configuration again to make it come up.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:12:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170816#M30932</guid>
      <dc:creator>Gombodorj</dc:creator>
      <dc:date>2023-02-09T08:12:27Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170817#M30933</link>
      <description>&lt;P&gt;This method of adding interfaces in VSX isn't supported per responses to your previous &lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Loopback-interface-on-VSX-virtual-system/m-p/167137#M30936" target="_self"&gt;post&lt;/A&gt;&amp;nbsp;on a similar topic.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To be clear the loopback is present/defined in the Virtual System topology in SmartConsole?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:33:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170817#M30933</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-02-09T08:33:23Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170818#M30934</link>
      <description>&lt;P&gt;I thought that you can't use loopback interface (aside from lo 127.0.0.1) on smartconsole. On the topology pane of the gateway object, if I try to like define loop00 interface with IP address, it shows error.&lt;BR /&gt;&lt;BR /&gt;Can you explain about how can I check it?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:19:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170818#M30934</guid>
      <dc:creator>Gombodorj</dc:creator>
      <dc:date>2023-02-09T08:19:36Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170819#M30935</link>
      <description>&lt;P&gt;R81.10 introduced:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Use a loopback interface with Dynamic Routing in ClusterXL environments.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;This mandates that the Loopbacks are defined in the Gateway topology, I assume the same is true also for VSX Virtual Systems but will check and revert that this is also supported or not.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:33:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170819#M30935</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-02-09T08:33:46Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170821#M30939</link>
      <description>&lt;P&gt;I'm using this method on the VSX gateway itself, I also just tried making a interface named loop00 on the topology pane. It shows illegal error.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Is there a mechanism like looks up the topology and uses this information for the routing table? If so I suspect that whatever that mechanism is invalidating my loopback interface C route because it doesn't exist in the topology. How can I define loopback interface in smartconsole?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:33:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170821#M30939</guid>
      <dc:creator>Gombodorj</dc:creator>
      <dc:date>2023-02-09T08:33:08Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170822#M30940</link>
      <description>&lt;P&gt;As above I will confirm pending confirmation that it is supported the same as it is on a regular cluster.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 08:40:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170822#M30940</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-02-09T08:40:04Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170878#M30949</link>
      <description>&lt;P&gt;Hey Chris, also for cluster, solution provided by&amp;nbsp; &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk117794" target="_blank" rel="noopener"&gt;sk117794&lt;/A&gt;&amp;nbsp; (linked from sk95968 @ point 4) ) seems to be very &lt;STRONG&gt;dangerous&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;Like i said inside SR&amp;nbsp;6-0003534450, any new get interface with/without topology will invalidate/delete the manually created loopback interface. The behaivoir is confirmed and no solution provided (it works by design).&lt;/P&gt;
&lt;P&gt;so, if you add new interface/vlan and you forgot to add loopback interface again, i suppose OSPF/BGP process will be disrupted because of new Router-ID needs to be selected&lt;/P&gt;
&lt;P&gt;I've opened a RFE number&amp;nbsp;&lt;STRONG&gt;hT5Nxy49E&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 17:46:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/170878#M30949</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2023-02-09T17:46:10Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/171153#M31007</link>
      <description>&lt;P&gt;Confirmed: Loopback interfaces are &lt;STRONG&gt;&lt;U&gt;not&lt;/U&gt;&lt;/STRONG&gt;&amp;nbsp;currently supported with VSX up to and including R81.20,&amp;nbsp;&lt;SPAN&gt;sk79700 has been updated accordingly.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Depending on the specific requirement there are possibly other work arounds available (Dummy DMZ interface or VLAN etc).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;This is otherwise an RFE that you should discuss with your local SE if critical.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Feb 2023 12:42:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/171153#M31007</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-02-14T12:42:30Z</dc:date>
    </item>
    <item>
      <title>Re: Loopback interface is going out of routing table</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/252667#M49464</link>
      <description>&lt;P&gt;In the current day there are now additional options available depending on the use case:&lt;/P&gt;
&lt;UL class="lia-list-style-type-circle"&gt;
&lt;LI&gt;VSNext (R82 and higher)&lt;/LI&gt;
&lt;LI&gt;NAT Pools&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Mon, 07 Jul 2025 10:51:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Loopback-interface-is-going-out-of-routing-table/m-p/252667#M49464</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-07-07T10:51:35Z</dc:date>
    </item>
  </channel>
</rss>

