<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213400#M40656</link>
    <description>&lt;P&gt;They do have a point brother. I would definitely upgrade the other one as soon as you can.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Mon, 06 May 2024 20:07:07 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-05-06T20:07:07Z</dc:date>
    <item>
      <title>Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213333#M40620</link>
      <description>&lt;P&gt;Hey mates!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a two-node active/standby cluster running on a pair of 5100 appliances.&amp;nbsp; One security gateway node is on R81.20 Take 53 and the other node is on R80.40 Take 173.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;MVC is enabled on the R81.20 node.&amp;nbsp; We enabled MVC to allow us to test the new R81.20 OS in our environment before upgrading the other node.&amp;nbsp; We had only planned to be in MVC mode for a short while - upgrading the remaining node the next week.&amp;nbsp;&lt;/P&gt;&lt;P&gt;This upgrade initially occurred at the beginning of April.&amp;nbsp; Due to an emergency medical issue, I needed to take a month off and am just now getting back to work.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Shortly after the upgrade, we noticed the R81.20 node was rebooting on its own and afterward the cluster would roll over to the R80.40 node.&amp;nbsp; After this happened a few times we decided to just leave the R80.40 node as the active node and I would take a look at the issue when I came back to the office.&lt;/P&gt;&lt;P&gt;After opening a ticket with TAC and having them examine my kernel crash files in /var/log/crash for the R81.20 node, they made this determination:&lt;/P&gt;&lt;P&gt;******************************************************************************&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Primarily , the issue is happening because of the members being on different versions. The stack trace generated matched a previous task internally; TM-63720, which identifies the crash as a result of a change in table format.&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;The kernel table in question is :&amp;nbsp;SEP_my_IKE_packet_gtid,&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;The table values were changed from {local&amp;nbsp;ip, peer ip} to {local&amp;nbsp;id, peer ip} between versions R80.40 and R81.20.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Issue occurs when trying to sync the table between R80.40 and R81.20,&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;we get owner member as&amp;nbsp;IP&amp;nbsp;and not as&amp;nbsp;ID.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Recommendation;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Please make sure that both members are running with R81.20 &amp;nbsp;and that will resolve the issue&lt;/FONT&gt;.&lt;/P&gt;&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="2" color="#3366FF"&gt;&lt;STRONG&gt;&lt;EM&gt;********************************************************************&lt;/EM&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;So I get this and agree.&lt;/P&gt;&lt;P&gt;However, the whole point of MVC mode in this case was to be able to test the new OS, which I really can't do.&amp;nbsp; The reboots are too frequent (sometimes daily).&amp;nbsp; The R81.20 node reboots even while in standby mode.&lt;/P&gt;&lt;P&gt;What are our options if we want to test before upgrading the other node?&lt;/P&gt;&lt;P&gt;Can we disable MVC?&amp;nbsp; Will this break the cluster and cause weirder things to happen?&lt;/P&gt;&lt;P&gt;Can we manually edit the above-referenced table causing the issue on the R80.40 node, thereby getting rid of the sync issue?&lt;/P&gt;&lt;P&gt;I suppose we can break the cluster and simply run on the new node, but this makes me nervous.&amp;nbsp; I really would rather not do this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks, everyone!&amp;nbsp; Interested in hearing your thoughts.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Joe&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:19:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213333#M40620</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-06T17:19:51Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213334#M40621</link>
      <description>&lt;P&gt;Hey brother,&lt;/P&gt;
&lt;P&gt;First off, hope you are OKAY! Health always comes first. Now, here is what I can tell you having dealt with this exact situation with a customer 2 years ago.&lt;/P&gt;
&lt;P&gt;So, here is what we did...we upgraded one member to R81.10 and left MVC on and left it as off on R80.40 member. After 3 days or so, we turned off MVC on upgraded member, enabled on R80.40 and upgraded that one and all was fine.&lt;/P&gt;
&lt;P&gt;So, thats what I would do in your case. Disable mvc on R81.20 cluster member, no need to push policy, enable mvc on non-upgraded member, upgrade, reboot, test.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:06:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213334#M40621</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T17:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213340#M40624</link>
      <description>&lt;P&gt;Thanks Andy!&amp;nbsp; I'm doing fine - just had to take it easy for a bit to recuperate.&lt;/P&gt;&lt;P&gt;So talk to me more about this solution you're proposing:&lt;/P&gt;&lt;P&gt;I was under the impression that MVC mode needed to be enabled on the upgraded node?&lt;/P&gt;&lt;P&gt;So you're saying that we can turn off MVC on the R81.20 node, then enable on the R80.40 node and we'll be able to test?&amp;nbsp; We can run on the R81.20 active node and keep the other node on R80.40 with MVC enabled while we test?&lt;/P&gt;&lt;P&gt;Hopefully, we can upgrade the other node in the next couple of weeks.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks Andy!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:24:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213340#M40624</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-06T17:24:18Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213341#M40625</link>
      <description>&lt;P&gt;Sorry, I said it wrong...you are 100% right...KEEP it enabled on upgraded member, once you are ready to upgrade the other one, enable it there as well, upgrade, reboot. then you can turn it off on both.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:23:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213341#M40625</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T17:23:57Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213342#M40626</link>
      <description>&lt;P&gt;OK - Thanks Andy!&lt;/P&gt;&lt;P&gt;But my issue is that currently I cannot test the R81.20 node because the node is rebooting on its own, sometimes as often as everyday.&amp;nbsp; We still need to run on this new node and make sure it is running properly.&lt;/P&gt;&lt;P&gt;How do I test my upgraded node and not have it reboot everyday?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:28:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213342#M40626</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-06T17:28:28Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213346#M40627</link>
      <description>&lt;P&gt;Ok, few questions...&lt;/P&gt;
&lt;P&gt;1) Was this happening BEFORE the upgrade?&lt;/P&gt;
&lt;P&gt;2) Any crash files in /var/log/crash dir?&lt;/P&gt;
&lt;P&gt;3) What is cpu usage? memory?&lt;/P&gt;
&lt;P&gt;4) Can you send output of below?&lt;/P&gt;
&lt;P&gt;[Expert@CP-FW-01:0]# fw tab -t connections | grep limit&lt;BR /&gt;dynamic, id 8158, num ents 10, load factor 0.0, attributes: keep, sync, aggressive aging, kbufs 21 22 23 24 25 26 27 28 29 30 31 32 33 34, expires 25, refresh, , hashsize 2097152, unlimited&lt;BR /&gt;[Expert@CP-FW-01:0]#&lt;/P&gt;
&lt;P&gt;[Expert@CP-FW-01:0]# fw tab -t connections -s&lt;BR /&gt;HOST NAME ID #VALS #PEAK #SLINKS&lt;BR /&gt;localhost connections 8158 21 1574 39&lt;BR /&gt;[Expert@CP-FW-01:0]#&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:34:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213346#M40627</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T17:34:32Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213350#M40629</link>
      <description>&lt;P&gt;Thanks Andy!&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let me get all this information rounded up for you.&amp;nbsp; I have a Zoom in 20 minutes but I'll try and have for you by tomorrow.&amp;nbsp; Thanks again Andy!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-Joe&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:40:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213350#M40629</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-06T17:40:53Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213355#M40631</link>
      <description>&lt;P&gt;10-4 mate&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 17:47:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213355#M40631</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T17:47:10Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213365#M40638</link>
      <description>&lt;P&gt;Another suggestion...maybe it would not be a bad idea to open TAC case as well, since fw rebooting this frequently is definitely a major issue, I would say.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 18:07:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213365#M40638</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T18:07:34Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213399#M40655</link>
      <description>&lt;P&gt;I agree.&amp;nbsp; I've opened up a new SR last week.&amp;nbsp; Here is what they say:&lt;/P&gt;&lt;P&gt;*********************&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Primarily , the issue is happening because of the members being on different versions. The stack trace generated matched a previous task internally; TM-63720, which identifies the crash as a result of a change in table format.&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;The kernel table in question is :&amp;nbsp;SEP_my_IKE_packet_gtid,&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;The table values were changed from {local&amp;nbsp;ip, peer ip} to {local&amp;nbsp;id, peer ip} between versions R80.40 and R81.20.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Issue occurs when trying to sync the table between R80.40 and R81.20,&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;we get owner member as&amp;nbsp;IP&amp;nbsp;and not as&amp;nbsp;ID.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Recommendation;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2"&gt;Please make sure that both members are running with R81.20 &amp;nbsp;and that will resolve the issue&lt;/FONT&gt;.&lt;/P&gt;&lt;P&gt;********************&lt;/P&gt;&lt;P&gt;So this response from TAC is what led me to check with you guys.&lt;/P&gt;&lt;P&gt;How can we test in MVC mode if the newly upgraded node, that we want to run on, is rebooting?&lt;/P&gt;&lt;P&gt;TAC is saying the node is rebooting because of a table discrepancy between the two versions.&amp;nbsp; (See above).&lt;/P&gt;&lt;P&gt;So in this scenario is MVC mode not an option?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 20:06:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213399#M40655</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-06T20:06:39Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213400#M40656</link>
      <description>&lt;P&gt;They do have a point brother. I would definitely upgrade the other one as soon as you can.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 20:07:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213400#M40656</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-06T20:07:07Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213423#M40664</link>
      <description>&lt;P&gt;Just a note, you never need to enable MVC on the lower version cluster member. Its function is to enable a higher version to cluster with a lower version, not the other way around.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 01:56:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213423#M40664</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-05-07T01:56:33Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213424#M40665</link>
      <description>&lt;P&gt;The function that MVC is designed for is to allow a gateways to cluster nicely temporarily while on two different versions, inside of a change window. It's not designed to run like that for long periods, hence that's not something we do QA testing with and can't guarantee that it'll work longer term. The general recommended procedure is to upgrade one member, enable MVC to get them clustered and sync'd, fail over to the upgraded member, test your critical apps to ensure that the important stuff works and then upgrade the other member. If you end up with issues longer term that didn't come up in the window, either fix forward with TAC assistance or roll back to the snapshot that was automatically taken when you did the upgrade, one member at a time (enable MVC on the member you didn't roll back yet to gracefully downgrade).&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 02:00:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213424#M40665</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-05-07T02:00:51Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213437#M40666</link>
      <description>&lt;P&gt;And in breaking news, this specific issue has been located and patched, the fix should be in a future JHF take. Look for PRJ-54611. If you need it before, contact TAC and they can ask for a port of it.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 06:36:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213437#M40666</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-05-07T06:36:16Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213463#M40670</link>
      <description>&lt;P&gt;Thats not quite true according to an official CP documentation. I was told exact same thing by TAC as well. Unless, the example given in the document is slightly different, as it gives case of 3 members, not 2...&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 10:25:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213463#M40670</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-07T10:25:30Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213466#M40672</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/71054"&gt;@emmap&lt;/a&gt;&amp;nbsp;I see what you are saying now...I read the doc again and makes sense. There are 3 members given in that example and M3 and M2 are given to enable MVC, but NOT M1, so your statement is totally logical.&lt;/P&gt;
&lt;P&gt;Thanks for pointing that out, I honestly had no idea that was the case, but will remember from now on it only needs to be enabled for the time being on the upgraded member.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 10:54:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213466#M40672</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-07T10:54:31Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213469#M40673</link>
      <description>&lt;P&gt;It can get confusing, especially when the R81.20 JHF enables it for you.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 11:10:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213469#M40673</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-05-07T11:10:26Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213470#M40674</link>
      <description>&lt;P&gt;But thank you very much for clarifying, I honestly had no idea that was the case. I always thought it had to be enabled on all members, but its good to know its only done on whatever member will be upgraded first (usually backup)&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 11:28:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213470#M40674</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-07T11:28:39Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213477#M40677</link>
      <description>&lt;P&gt;Thank you so much emmap!&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So currently it appears that the upgraded node is rebooting on average about every day.&amp;nbsp; Over the past month, the max time the upgraded node stayed up before rebooting was about 8 days.&amp;nbsp; It is rebooting while in active and standby state.&amp;nbsp; After the upgrade on Friday April 5th, we were able to test while on R81.20 and all of our systems worked that night.&amp;nbsp; We wanted to give it a week and upgrade the other node the following Friday.&amp;nbsp; (We do major upgrades like this after close of business on Fridays.)&amp;nbsp; Then I ran into a medical emergency and was forced to take off until recently.&lt;/P&gt;&lt;P&gt;So basically we need to upgrade the other node to get the cluster stable.&amp;nbsp; Correct?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you again!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 11:50:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213477#M40677</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-07T11:50:33Z</dc:date>
    </item>
    <item>
      <title>Re: Issues with MVC mode during R80.40 Take 173 to R81.20 Take 53 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213478#M40678</link>
      <description>&lt;P&gt;Cool.&amp;nbsp; Thank you.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 11:51:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Issues-with-MVC-mode-during-R80-40-Take-173-to-R81-20-Take-53/m-p/213478#M40678</guid>
      <dc:creator>Joe_Kanaszka</dc:creator>
      <dc:date>2024-05-07T11:51:04Z</dc:date>
    </item>
  </channel>
</rss>

