<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Migration of 1 member of ClusterXL HA. in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197125#M36780</link>
    <description>&lt;P&gt;We've done it for years!&amp;nbsp; However, need to ensure that you account for distance and delay, as an example we have a 4 node VSX cluster spread across two DCs roughly 15-20 miles apart, now the underlining infrastructure design is key to any multi-site deployment.&lt;/P&gt;</description>
    <pubDate>Sun, 05 Nov 2023 12:09:08 GMT</pubDate>
    <dc:creator>genisis__</dc:creator>
    <dc:date>2023-11-05T12:09:08Z</dc:date>
    <item>
      <title>Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197117#M36776</link>
      <description>&lt;P&gt;&lt;BR /&gt;Hello, Mates&lt;/P&gt;
&lt;P&gt;Currently we have 1SMS+1ClusterXLHA, in the same DC (Main Office).&lt;/P&gt;
&lt;P&gt;By management's disposition, 1 of the Cluster members, has to move to another DataCenter (DC) (In another location).&lt;/P&gt;
&lt;P&gt;Are there any considerations to be taken into account in these scenarios?&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Is it possible for the Cluster to work with the 2 members in different locations?&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;By moving one of the Cluster members to another physical location, can the Cluster be "reassembled" keeping its Management IPs? Or will all this have to be "restructured"?&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;Thank you for your kind opinions.&lt;/P&gt;
&lt;P&gt;Regards.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 06:58:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197117#M36776</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-11-05T06:58:48Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197119#M36777</link>
      <description>&lt;P&gt;Yes - Entirely depends on the composition of the new data centre network and ability to extend Layer-2 / VLANs to preserve the current topology.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 10:48:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197119#M36777</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-11-05T10:48:13Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197123#M36779</link>
      <description>&lt;P&gt;Totally possible, lots of people have that scenario. What Chris said is accurate.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 11:39:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197123#M36779</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-05T11:39:06Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197125#M36780</link>
      <description>&lt;P&gt;We've done it for years!&amp;nbsp; However, need to ensure that you account for distance and delay, as an example we have a 4 node VSX cluster spread across two DCs roughly 15-20 miles apart, now the underlining infrastructure design is key to any multi-site deployment.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 12:09:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197125#M36780</guid>
      <dc:creator>genisis__</dc:creator>
      <dc:date>2023-11-05T12:09:08Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197130#M36782</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;So this kind of scenario is possible, but I understand that it depends a lot on working &lt;STRONG&gt;"hand in hand"&lt;/STRONG&gt; with the Networking team, correct?&lt;/P&gt;
&lt;P&gt;Because I would understand that this Firewall equipment that is moved to a new DC, should be connected to a &lt;EM&gt;&lt;STRONG&gt;SwitchCore/Router&lt;/STRONG&gt;&lt;/EM&gt;, which allows the &lt;STRONG&gt;"connectivity"&lt;/STRONG&gt; to the site where the device is not being moved.&lt;/P&gt;
&lt;P&gt;Is my interpretation correct?&lt;/P&gt;
&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 20:11:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197130#M36782</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-11-05T20:11:52Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197132#M36784</link>
      <description>&lt;P&gt;Indeed the cluster members should have connectivity between their interfaces, the same as they do today (@ Layer-2).&lt;/P&gt;
&lt;P&gt;Requirements for latency &amp;amp; packet loss are detailed in the ClusterXL admin guide.&lt;/P&gt;
&lt;P&gt;There are other cluster types available but this is the most common.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 22:11:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197132#M36784</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-11-05T22:11:00Z</dc:date>
    </item>
    <item>
      <title>Re: Migration of 1 member of ClusterXL HA.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197134#M36786</link>
      <description>&lt;P&gt;Yes bro. Just follow what Chris suggested.&lt;/P&gt;
&lt;P&gt;Best regards.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 05 Nov 2023 22:58:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Migration-of-1-member-of-ClusterXL-HA/m-p/197134#M36786</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-05T22:58:42Z</dc:date>
    </item>
  </channel>
</rss>

