<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ClusterXL failover question in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190328#M35123</link>
    <description>&lt;P&gt;Ok, thats fair, though when my colleague and I did PBR changes the 2nd time, failover did NOT happen.&lt;/P&gt;
&lt;P&gt;So, here is my question then...what changes would NOT cause a failover? : - )&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 23 Aug 2023 15:26:58 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-08-23T15:26:58Z</dc:date>
    <item>
      <title>ClusterXL failover question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190008#M35051</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;Im hoping someone can confirm this for me 100%. Customer is using clusterXL active-standby method and last few times, we had instance where if we add new vlan either on active or standby member, it would always cause a failover.&lt;/P&gt;
&lt;P&gt;Now, that sort of makes sense possibly in their case, as kernel parameter fwha_monitor_all_vlan is set to 1 and they already have 3 vlans configured. At least thats my logic and TAC seems to agree with it, so we will disable it next window and test.&lt;/P&gt;
&lt;P&gt;But, here is something I find odd. My colleague set up PBR on current active and that caused a failover as well. Is that normal?? I cant see how that could happen, unless its obviously tied to BGP, which is configured, since it was complaining that routed pnote was the issue.&lt;/P&gt;
&lt;P&gt;I see below sk, but its more what to check when failover happens:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk62570" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk62570&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;My question is this...is there an official sk or document STATING what changes would indeed cause failover?&lt;/P&gt;
&lt;P&gt;Thanks as always.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2023 16:34:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190008#M35051</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-21T16:34:56Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL failover question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190027#M35053</link>
      <description>&lt;P&gt;Was that newly added VLAN the lowest or highest VLAN-ID on specific interface? By default, CP is monitoring only lowest and highest VLANs. If VLAN is not correctly tagged/created/stretched on the switches, it might cause failover. The monitoring of highest/lowest VLANs is done over CCP (udp/8116).&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2023 18:48:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190027#M35053</guid>
      <dc:creator>JozkoMrkvicka</dc:creator>
      <dc:date>2023-08-21T18:48:53Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL failover question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190028#M35054</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1702"&gt;@JozkoMrkvicka&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the response. I believe it was neither, somewhere in the middle...lowest was 20, highest 500 I think and this one was 208. But, regardless, I think thats due to kernel parameter I mentioned, but now, question is, if anyone can confirm 100% or if there is an official sk or statement what activities would actually cause failover? Because to me, makes no sense that during one window, when we added new vlan on STANDBY member, even that causes failover??!! I mean, how?&lt;/P&gt;
&lt;P&gt;And then, when we showed that to TAC person, I think guy was even more confused than we were LOL&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2023 18:52:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190028#M35054</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-21T18:52:20Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL failover question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190326#M35121</link>
      <description>&lt;P&gt;All routing configuration changes are handled by routed. I could definitely see changes to PBR config causing failovers. I suspect a better question would be what interface and/or routing changes &lt;EM&gt;would not&lt;/EM&gt; cause failovers.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 15:16:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190326#M35121</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2023-08-23T15:16:25Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL failover question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190328#M35123</link>
      <description>&lt;P&gt;Ok, thats fair, though when my colleague and I did PBR changes the 2nd time, failover did NOT happen.&lt;/P&gt;
&lt;P&gt;So, here is my question then...what changes would NOT cause a failover? : - )&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 15:26:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL-failover-question/m-p/190328#M35123</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-23T15:26:58Z</dc:date>
    </item>
  </channel>
</rss>

