<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Upgrade Cluster in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233976#M45321</link>
    <description>&lt;P&gt;Happy to help you when you do this, just message me, as long as its not too too late. Im in Canada EST, not an issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 27 Nov 2024 16:51:10 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-11-27T16:51:10Z</dc:date>
    <item>
      <title>Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233953#M45311</link>
      <description>&lt;P&gt;I want to upgrade my pair of 6200s. They are currently running 81.10 and I want to upgrade to 81.20.&lt;/P&gt;&lt;P&gt;I have completed upgrades before but only upgrading the HF version. Previously my steps for upgrading HF version were in summary:&lt;/P&gt;&lt;DIV&gt;&lt;SPAN&gt;• Upgrade Node2 standby node using CPUSE and reboot&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Failover traffic to Node2 standby node (now upgraded) to make it active. (Using&amp;nbsp;clusterXL_admin down down on primary node)&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Let the Node2 firewall process traffic for a while. Once happy proceed&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Upgrade Node1&amp;nbsp;using CPUSE and reboot&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Fail traffic back to Node 1&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;My understanding is that when you upgrade a major version e.g. 81.10 to 81.20, the firewall will come up with a default policy after the upgrade. Is that correct? If so, I would adjust my steps accordingly as follows:&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Upgrade Node2 standby node using CPUSE and reboot&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Push policy to both firewalls in the cluster&amp;nbsp; [New step]&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Failover traffic to Node2 standby node (now upgraded) to make it active. (Using&amp;nbsp;clusterXL_admin down down on primary node)&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Let the Node2 firewall process traffic for a while. Once happy proceed&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Upgrade Node1&amp;nbsp;using CPUSE and reboot&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Push policy to both firewalls in the cluster&amp;nbsp; [New step]&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;• Fail traffic back to Node 1&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Thanks&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 15:53:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233953#M45311</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-11-27T15:53:33Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233956#M45312</link>
      <description>&lt;P&gt;I would agree, but keep in mind, R81.20 is not a major version compared to R81.10. Hopefully below link with steps I gave helps, but you got it.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/General-Topics/Upgrading-form-R81-10-to-R81-20/m-p/177310#M29547" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/General-Topics/Upgrading-form-R81-10-to-R81-20/m-p/177310#M29547&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:07:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233956#M45312</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-11-27T16:07:20Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233958#M45313</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/110726"&gt;@velo&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IMPORTANT:&lt;/P&gt;
&lt;P&gt;DO NOT install policy to both members when you upgrade backup member (just make sure to set option I mentioned in the link) and also, BEFORE you upgrade backup, run cphaconf mvc on (its to ensure higher version member can sync with the other after the upgrade). Once all done, turn it off when both are on R81.20.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Personally, I run that command on both members before any upgrade, but below doc states to do it one at the time (I find works either way, just make sure to disable it when all done)&lt;/P&gt;
&lt;P&gt;Ping me if any issues.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Installation_and_Upgrade_Guide/Topics-IUG/MVC-Upgrade-of-ClusterXL-GW-mode.htm?tocpath=Upgrade%20of%20Security%20Gateways%20and%20Clusters%7CUpgrading%20ClusterXL%252C%20VSX%20Cluster%252C%20or%20VRRP%20Cluster%7CMulti-Version%20Cluster%20(MVC)%20Upgrade%7C_____4&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:07:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233958#M45313</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-11-27T16:07:00Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233973#M45318</link>
      <description>&lt;P&gt;Thanks Andy&lt;/P&gt;&lt;P&gt;A few queries.&amp;nbsp;&lt;/P&gt;&lt;P&gt;This step:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;-once rebooted, change cluster version in dashboard to R81.20 and uncheck that option for cluster "dont install policy..." and once policy is done, it will ONLY apply on upgraded member&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Will this step fail the install on the primary unit because it will still be 81.10 and the 81.20 member is correct version as specified in Smart Console? (Expected)&lt;/P&gt;&lt;P&gt;You've more or less answered this but do you just set "cphaconf mvc on" on both units before starting?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:46:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233973#M45318</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-11-27T16:46:31Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233974#M45319</link>
      <description>&lt;P&gt;For policy question, yes, it will fail on current master, as it would be on R81.10, thus the reason why you ONLY install it on upgraded member.&lt;/P&gt;
&lt;P&gt;For mvc, do one at the time, run on backup, upgrade, leave setting on, then run on current master, upgrade, re0check policy option i mentioned, push policy, turn off mvc on both members.&lt;/P&gt;
&lt;P&gt;Enjoy the success &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:48:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233974#M45319</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-11-27T16:48:24Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233975#M45320</link>
      <description>&lt;P&gt;Haha, thanks!&amp;nbsp;&lt;/P&gt;&lt;P&gt;Makes sense yes.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:50:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233975#M45320</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-11-27T16:50:27Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233976#M45321</link>
      <description>&lt;P&gt;Happy to help you when you do this, just message me, as long as its not too too late. Im in Canada EST, not an issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:51:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233976#M45321</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-11-27T16:51:10Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233977#M45322</link>
      <description>&lt;P&gt;Very kind of you, thanks Andy.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 16:52:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233977#M45322</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-11-27T16:52:01Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233978#M45323</link>
      <description>&lt;P&gt;You got it! Just message me directly and we can connect. Btw, I was wrong about one thing (and it will NOT be first or last time im wrong haha).&lt;/P&gt;
&lt;P&gt;Anyway, you only need to enable mvc on member thats upgraded, so in this case first one (meaning backup member), as point is to enable higher version to sync with lower version member.&lt;/P&gt;
&lt;P&gt;So here it is....&lt;/P&gt;
&lt;P&gt;-enable mvc on backup member&lt;/P&gt;
&lt;P&gt;-upgrade it&lt;/P&gt;
&lt;P&gt;-install policy ONLY to upgraded member with that option unchecked (one I mentioned from the link for the policy)&lt;/P&gt;
&lt;P&gt;-do NOT rutn off mvc yet&lt;/P&gt;
&lt;P&gt;-do NOT enable it on master&lt;/P&gt;
&lt;P&gt;-upgrade master&lt;/P&gt;
&lt;P&gt;-re-check that option for policy install and push policy to R81.20 cluster&lt;/P&gt;
&lt;P&gt;-disable mvc on the initial member where its enabled&lt;/P&gt;
&lt;P&gt;Done &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Nov 2024 17:12:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/233978#M45323</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-11-27T17:12:44Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234642#M45473</link>
      <description>&lt;P&gt;Hey Andy&lt;/P&gt;&lt;P&gt;I took all the info from your original post, and this post and I made a new combined guide. I labbed up a cluster on 81.10 and used this to go to 81.20 and it seemed to go well.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm doing live next week so hopefully all goes fine.&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":crossed_fingers:"&gt;🤞&lt;/span&gt;&lt;/P&gt;&lt;P&gt;There was one thing I found strange. When I upgraded the standby node, as expected it came up with initial policy. I changed the version and unticked the "don't insall...." box, pushed the policy. I then failed over to FW2 (now on 81.20 and MVC) I then proceeded to upgrade FW01 (now disabled on haprob stat, and on 81.10) The strange thing is when I rebooted this firewall, it didn't come up with initial policy, it had the correct one.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea why there is a difference in behaviour there?&lt;/P&gt;&lt;P&gt;Thanks a lot for your pointers.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2024 17:43:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234642#M45473</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-12-04T17:43:01Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234643#M45474</link>
      <description>&lt;P&gt;Thats totally normal brother and here is why. Technically, R81.20 is NOT major version, its considered minor in this context. R82 would definitely be major one.&lt;/P&gt;
&lt;P&gt;Trivial (basic) example:&lt;/P&gt;
&lt;P&gt;Lets take old school version. R77, for example:&lt;/P&gt;
&lt;P&gt;R77 is major version...R77.10, .20 and .30 would have been minor&lt;/P&gt;
&lt;P&gt;R80 is major, R80.10, .20, .30 and .40 are minor&lt;/P&gt;
&lt;P&gt;R81 is major, R81.10, .20 are minor&lt;/P&gt;
&lt;P&gt;Makes sense? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Anywho, if you need more explanation, we can have a call, let me know.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":soccer_ball:"&gt;⚽&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2024 17:48:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234643#M45474</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-04T17:48:42Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234644#M45475</link>
      <description>&lt;P&gt;Ah ok thanks! Any idea why the first one came up with initial policy but the second one didn't? Just a glitch in the matrix?&lt;/P&gt;&lt;P&gt;Thanks! We should be ok for the call but if I get stuck I will be sure to take you up on that.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2024 17:56:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234644#M45475</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-12-04T17:56:25Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234645#M45476</link>
      <description>&lt;P&gt;Thats totally valid question. I only had that happen once out of who knows how many times, so did not pay much attention to it. I figured it must have been a glitch, as you said. I messaged you directly with my cell number, so you viber, whatsapp me, whatever works, just let me know who it is, so I dont block you thinking its a scam, too much of that these days LOL&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2024 17:59:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234645#M45476</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-04T17:59:04Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234646#M45477</link>
      <description>&lt;P&gt;Haha thanks Andy&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; Appreciate that.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2024 18:01:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234646#M45477</guid>
      <dc:creator>velo</dc:creator>
      <dc:date>2024-12-04T18:01:36Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234763#M45499</link>
      <description>&lt;P data-unlink="true"&gt;I wish it would be so simple, because everyone expects it this way. Following &lt;A href="https://www.checkpoint.com/support-services/support-life-cycle-policy/#software-support" target="_self"&gt;Support Life Cycle Policy for Software&lt;/A&gt;&amp;nbsp;these are Major Versions:&lt;/P&gt;
&lt;UL&gt;
&lt;LI data-unlink="true"&gt;R77 (R77, R77.10, R77.20)&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R77.30&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R80 (R80, R80.10)&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R80.30&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R80.40&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R81&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R81.10&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R81.20&lt;/LI&gt;
&lt;LI data-unlink="true"&gt;R82&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;No reliable connection between numbering and major / minor releases. You have to learn by mind…&lt;/P&gt;
&lt;P data-unlink="true"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 13:58:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234763#M45499</guid>
      <dc:creator>Oliver_Fink</dc:creator>
      <dc:date>2024-12-05T13:58:30Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234765#M45501</link>
      <description>&lt;P&gt;Funny enough, I was looking at that same link yesterday and then I thought to myself afterwards...this cant be true, because based on that, EVERY version out there is major? lol&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 14:02:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234765#M45501</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-05T14:02:37Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234767#M45502</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/2525"&gt;@Oliver_Fink&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I believe my initial response was indeed correct. See below what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/41528"&gt;@CheckMatesAI&lt;/a&gt;&amp;nbsp;came back with &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28678iF53F95096C214027/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 14:06:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234767#M45502</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-05T14:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234776#M45504</link>
      <description>&lt;P&gt;When you have upgraded a cluster member, it tries to connect to the management and fetch its policy. Until you change the cluster object's version and push the policy at least once, the management only has the policy built for the old version. This causes the first upgraded member to fail to fetch its policy in most upgrades. Meanwhile, the second upgraded member is able to fetch the policy because you built it for the new version when you pushed to the first upgraded member.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 14:28:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234776#M45504</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2024-12-05T14:28:08Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234778#M45505</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/2525"&gt;@Oliver_Fink&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Though having read that screenshot twice, its even more confusing LOL. So, if you look at the bottom section about upgrading, it says when upgrading from one major version to another (eg R81.10 to R81.20)....HOW IN THE WORLD can those be major when literally in the table before that it states those are minor versions lol&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 14:51:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234778#M45505</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-05T14:51:13Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234781#M45508</link>
      <description>&lt;P&gt;I do not believe what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/41528"&gt;@CheckMatesAI&lt;/a&gt;&amp;nbsp;is telling you, &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;. This is from&amp;nbsp;&lt;SPAN&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk95746" target="_blank" rel="noopener"&gt;sk95746 –&amp;nbsp;Check Point Recommended Version and Release Terminology&lt;/A&gt;:&lt;/SPAN&gt;&lt;/P&gt;
&lt;H4 class="lia-indent-padding-left-30px"&gt;Major release&lt;/H4&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;&lt;SPAN&gt;Introduces new functionalities and cutting edge innovative technologies to the market while maintaining high product quality. Major release is supported by Check Point for four years according to&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://www.checkpoint.com/support-services/support-life-cycle-policy/" target="_blank" rel="noopener"&gt;Support Lifecycle Policy&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;In the past few years Check Point has released Major releases every 1-2 years. &lt;FONT face="arial black,avant garde"&gt;&lt;STRONG&gt;Some examples of major releases would be:&amp;nbsp;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;FONT face="arial black,avant garde"&gt;&lt;STRONG&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk170416" target="_blank" rel="noopener"&gt;R81.10&lt;/A&gt;&amp;nbsp;,&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk173903" target="_blank" rel="noopener"&gt;R81.20&lt;/A&gt;.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;(Fat font by me…)&lt;/P&gt;
&lt;P&gt;Another inconsistency is that Check Point is talking about Major Releases, but also of Recommended Versions. I cannot find explained in this SK what the difference between Release and Version is. Maybe, someone else knows…&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2024 15:12:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Upgrade-Cluster/m-p/234781#M45508</guid>
      <dc:creator>Oliver_Fink</dc:creator>
      <dc:date>2024-12-05T15:12:20Z</dc:date>
    </item>
  </channel>
</rss>

