<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R82 elasticXL lab in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/237085#M46004</link>
    <description>&lt;P&gt;R82 offers to let you build an ElasticXL cluster out of a 3000-series unit, but it fails in rather spectacular fashion. Gets stuck in a boot loop which needs hands on to fix. You never get the boot menu, so you can't revert to factory defaults without someone cycling power. I get that ElasticXL isn't supported on the 3000-series boxes, but the UI offers it up. It's even the default cluster method for them unless you go out of your way to specify ClusterXL. I expect this will bite a&amp;nbsp;&lt;EM&gt;&lt;STRONG&gt;LOT&lt;/STRONG&gt;&lt;/EM&gt; of people when boxes start shipping with R82 by default. Edit: just got word R&amp;amp;D has&amp;nbsp;&lt;SPAN&gt;PMTR-114648 for this boot loop. I bet the fix will be to disable the option in the setup wizard to make the 3000-series into an ElasticXL cluster, but we'll see.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;While it's not supported, it's possible to set up an ElasticXL cluster for lab use on a pair of 3000-series boxes. I've only tested it on 3600s, since that's what I physically have, but they're all identical in almost all of the ways which matter for this. To build the first member and set up the cluster:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Install R82 (or some later version, I assume)&lt;/LI&gt;
&lt;LI&gt;Boot the system&lt;/LI&gt;
&lt;LI&gt;Connect via console&lt;/LI&gt;
&lt;LI&gt;Edit /etc/udev/rules.d/00-QB-10-00.rules (3600 and 3800 are QB-10; the file for a 3100 or 3200 is 00-PB-10-00.rules)
&lt;OL class="lia-list-style-type-lower-alpha"&gt;
&lt;LI&gt;Replace "eth1" with "Sync"&lt;/LI&gt;
&lt;/OL&gt;
&lt;/LI&gt;
&lt;LI&gt;Reboot&lt;/LI&gt;
&lt;LI&gt;Run the commands to make exl_detectiond check the system again
&lt;OL class="lia-list-style-type-lower-alpha"&gt;
&lt;LI&gt;dbset process:exl_detectiond t&lt;/LI&gt;
&lt;LI&gt;dbset :save&lt;/LI&gt;
&lt;LI&gt;tellpm process:exl_detectiond t&lt;/LI&gt;
&lt;/OL&gt;
&lt;/LI&gt;
&lt;LI&gt;Edit&amp;nbsp;/etc/udev/rules.d/00-QB-10-00.rules
&lt;OL class="lia-list-style-type-lower-alpha"&gt;
&lt;LI&gt;Replace "Sync" with "eth1-Sync"&lt;/LI&gt;
&lt;LI&gt;Do not reboot!&lt;/LI&gt;
&lt;/OL&gt;
&lt;/LI&gt;
&lt;LI&gt;Run the first-time wizard or apply config_system. Be sure to select the ElasticXL clustering method.&lt;/LI&gt;
&lt;LI&gt;Once the system is configured, you will need to run 'add bonding group 1 interface Mgmt' in gclish.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;To add another member, you follow steps 1-6, then have one of the working members accept the new member's join request.&lt;/P&gt;
&lt;P&gt;Incidentally, a 3600 (or cluster of them, or probably a cluster of 3100 units, 3200 units, or 3800 units) can also run VSNext this way. I haven't yet tried, but I bet it would even work on a &lt;A href="https://community.checkpoint.com/t5/General-Topics/R82-on-a-2200/m-p/243111#M40649" target="_self"&gt;2200, which uses the file 00-T-110-00.rules&lt;/A&gt;.&lt;/P&gt;</description>
    <pubDate>Mon, 07 Apr 2025 17:59:40 GMT</pubDate>
    <dc:creator>Bob_Zimmerman</dc:creator>
    <dc:date>2025-04-07T17:59:40Z</dc:date>
    <item>
      <title>R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219343#M41917</link>
      <description>&lt;P&gt;Hey boys and girls, ladies and gents,&lt;/P&gt;
&lt;P&gt;I built R82 elasticXL lab and though I followed below link by&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;&amp;nbsp;, not sure if I cant make it work cause Im using eveNG or for what reason, but I created 2 separate elasticxl instances, but clustering part fails for some reason, so if anyone has an idea, happy to hear it &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I could care less if this lab breaks, its super easy to rebuid anyway.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is the link I was referring to. I also attached some screenshots and outputs.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/R82-Install-ElasticXL-Cluster/td-p/206235" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/R82-Install-ElasticXL-Cluster/td-p/206235&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26563i01C4BA1917D723BE/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26564iD3A27A85E7584456/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_3.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26565i870268E7B03E2A9D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_3.png" alt="Screenshot_3.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]# cphaprob state&lt;/P&gt;
&lt;P&gt;Cluster Mode: HA Over LS&lt;/P&gt;
&lt;P&gt;ID Unique Address Assigned Load State Name&lt;/P&gt;
&lt;P&gt;1 (local) 192.0.2.1 100% ACTIVE(P) CP-EXL-1-s01-01&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Active PNOTEs: None&lt;/P&gt;
&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-114904&lt;BR /&gt;State change: ACTIVE(!) -&amp;gt; ACTIVE&lt;BR /&gt;Reason for state change: Reason for ACTIVE! alert has been resolved&lt;BR /&gt;Event time: Mon Jul 1 19:40:49 2024&lt;BR /&gt;[Expert@CP-EXL-1-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-02-s01-01:0]# asg monitor&lt;BR /&gt;Mon Jul 01 20:44:20 EDT 2024&lt;/P&gt;
&lt;P&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| System Status - ElasticXL |&lt;BR /&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| Up time | 39:27 minutes |&lt;BR /&gt;| Members | 1 / 1 |&lt;BR /&gt;| Version | R82 (Build Number 633) |&lt;BR /&gt;Mon Jul 01 20:44:21 EDT 2024 &lt;BR /&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| System Status - ElasticXL |&lt;BR /&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| Up time | 39:29 minutes |&lt;BR /&gt;| Members | 1 / 1 |&lt;BR /&gt;| Version | R82 (Build Number 633) |&lt;BR /&gt;| FW Policy Date | 01Jul24 20:38 |&lt;BR /&gt;| AMW Policy Date | N/A |&lt;BR /&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| Member ID Site1 |&lt;BR /&gt;| ACTIVE |&lt;BR /&gt;--------------------------------------------------------------------------------&lt;BR /&gt;| 1 ACTIVE |&lt;BR /&gt;--------------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;^C&lt;BR /&gt;[Expert@CP-EXL-02-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-02-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]#&lt;BR /&gt;[Expert@CP-EXL-1-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.238&lt;BR /&gt;eth3 169.254.0.238&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.238&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.237&lt;BR /&gt;eth3 169.254.0.237&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.237&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-02-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And since elasticxl cluster object does NOT have an option to add cluster members, there is something obvious Im missing, but cant figure out what, so will check it later.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26566i4934F3B933DFD87F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 00:57:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219343#M41917</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T00:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219344#M41918</link>
      <description>&lt;P&gt;They need to be able to see each other over their Sync links (and it needs to have LLDP working as far as I know) and the second one should not be SIC'd to the management server as its own separate cluster if you want them to both be part of the same EXL gateway.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 02:32:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219344#M41918</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-07-02T02:32:50Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219345#M41919</link>
      <description>&lt;P&gt;Thank you. I may wipe out exl-02 tomorrow, re-crerate it again and see if I can sync them properly.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 02:36:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219345#M41919</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T02:36:21Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219347#M41920</link>
      <description>&lt;P&gt;I see that sync IPs are not pingable from either member, so thats 100% the issue. I will talk to one of my colleagues this week to see best way to make this work in eve-ng, as for regular cluster, its pretty simple, but same method does not work for eslasticxl sadly.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 03:30:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219347#M41920</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T03:30:11Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219378#M41931</link>
      <description>&lt;P&gt;FWIW, here is what I see on the FIRST one I installed:&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.238&lt;BR /&gt;eth3 10.254.10.238&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.238&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then, 2nd one, which is not tied to the mgmt server, though for some odd reason. eth2 and 3 dont show up, though they definitely are enabled and on.&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.237&lt;BR /&gt;eth3 10.254.10.237&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.237&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]#&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 10:43:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219378#M41931</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T10:43:20Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219387#M41935</link>
      <description>&lt;P&gt;The only way to show same interfaces on 2nd member is to connect it to the mgmt server and install the policy, but that still does not change the fact cluster member cant be added to the 1st gateway.&lt;/P&gt;
&lt;P&gt;I will check with our SE if this is expected or if there is any way to make this work with eve-ng.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.237&lt;BR /&gt;eth3 10.254.10.237&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.237&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]#&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 11:45:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219387#M41935</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T11:45:42Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219413#M41940</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once you have single member configure + configured as single gateway on smart console + SIC + Install Policy - then you can add other member to this ElasticXL cluster by WebUI or gclish &amp;gt; add cluster member.... (other members on same sync should be visible there)&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 13:32:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219413#M41940</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2024-07-02T13:32:15Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219416#M41941</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/5510"&gt;@Yair_Shahar&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks a lot for helping with this, I greatly appreciate it.&lt;/P&gt;
&lt;P&gt;Just for the context, I followed EXACT process that Heiko had in the post I referenced, but I have a feeling something the way eve-ng works might be the issue here. So, below are things I tested:&lt;/P&gt;
&lt;P&gt;1) followed Heiko's link, but got below message when trying to add:&lt;/P&gt;
&lt;P&gt;[Global] CP-EXL-1-s01-01&amp;gt; add cluster member method request-id identifier 6e3077466f10d3d99db1f62254297612 site-id 1 format json&lt;BR /&gt;{&lt;BR /&gt;"response": 401,&lt;BR /&gt;"body": {&lt;BR /&gt;"message": "No info for request-id with value 6e3077466f10d3d99db1f62254297612",&lt;BR /&gt;"errors": "",&lt;BR /&gt;"code": "generic_error"&lt;BR /&gt;}&lt;BR /&gt;}&lt;BR /&gt;[Global] CP-EXL-1-s01-01&amp;gt;&lt;/P&gt;
&lt;P&gt;2) I then reinstalled 2nd member, exact same issue&lt;/P&gt;
&lt;P&gt;3) Once I connect 2 member to smart console and push policy, I see shows same sync, but I have NO CLUE where it comes from. Sorry, Im totally ignorant if you will when it comes to maestro, I know very basics of it, so apologies if these comments Im making sound stupid, but I see same thing on both members and as I mentioned to emmap, ONLY once both are connected to mgmt server, can I see same via cphaprob state, see below.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;member 1:&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.238&lt;BR /&gt;eth3 10.254.10.238&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.238&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-1-s01-01:0]#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;member 2:&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Automatic&lt;/P&gt;
&lt;P&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth2 UP&lt;BR /&gt;eth3 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;magg1 (LS) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 5&lt;/P&gt;
&lt;P&gt;lo 127.0.0.1&lt;BR /&gt;eth2 192.168.10.237&lt;BR /&gt;eth3 10.254.10.237&lt;BR /&gt;Sync 192.0.2.1&lt;BR /&gt;magg1 172.16.10.237&lt;/P&gt;
&lt;P&gt;[Expert@CP-EXL-2-s01-01:0]#&lt;/P&gt;
&lt;P&gt;web UI shows same for both:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26579iF58757C200AD201E/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 13:38:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219416#M41941</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T13:38:33Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219421#M41943</link>
      <description>&lt;P&gt;it seems like you did FTW on the second member as well.&lt;/P&gt;
&lt;P&gt;in ElasticXL - FTW should run only on first member (AKA SMO), rest of the members should be just installed without any additional direct step on them.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 13:52:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219421#M41943</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2024-07-02T13:52:12Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219425#M41944</link>
      <description>&lt;P&gt;Hey Yair,&lt;/P&gt;
&lt;P&gt;Not sure what FTW means in this context, but keep in mind, when I did this yesterday, I litereally powered on R82 image, did NOT go through first time wizard, then tried adding that member on 1st cluster member, failed with error I gave. Are you saying I should install it again, go through wizard and NOT select part of elastic XL or do it totally different way?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 13:58:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219425#M41944</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T13:58:20Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219427#M41945</link>
      <description>&lt;P&gt;LLDP is not necessary. They are communicating using UDP broadcast packet over the Sync network&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:01:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219427#M41945</guid>
      <dc:creator>ShaiF</dc:creator>
      <dc:date>2024-07-02T14:01:12Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219429#M41946</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/33955"&gt;@ShaiF&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/5510"&gt;@Yair_Shahar&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Just to make sure I got this right. So, should I delete 02 member from smart console, wipe it out, and then reinstall, go through wizard and NOT select part of elasticxl or select it and then try sync it?&lt;/P&gt;
&lt;P&gt;Because again, I followed exact process Heiko gave in his initial link when adding a cluster member, it failed with error I provided and this was WITHOUT doing any initial config through web UI.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Global] CP-EXL-1-s01-01&amp;gt; add cluster member method request-id identifier 6e3077466f10d3d99db1f62254297612 site-id 1 format json&lt;BR /&gt;{&lt;BR /&gt;"response": 401,&lt;BR /&gt;"body": {&lt;BR /&gt;"message": "No info for request-id with value 6e3077466f10d3d99db1f62254297612",&lt;BR /&gt;"errors": "",&lt;BR /&gt;"code": "generic_error"&lt;BR /&gt;}&lt;BR /&gt;}&lt;BR /&gt;[Global] CP-EXL-1-s01-01&amp;gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:05:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219429#M41946</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:05:43Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219434#M41948</link>
      <description>&lt;P&gt;not exactly&lt;/P&gt;
&lt;P&gt;wipe out the second member, and reinstall it - that's it - do not run any FTW on it&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:12:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219434#M41948</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2024-07-02T14:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219435#M41949</link>
      <description>&lt;P&gt;I think I get it now, sorry, not great with some abbreviations lol. I think FTW in this context means first time wizard, which I did NOT run yesterday when I did this, but again, error was exactly the same when trying to add a cluster member.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:13:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219435#M41949</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:13:10Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219436#M41950</link>
      <description>&lt;P&gt;Right, which I did twice already and no matter what I do, always get below message : - (&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;[Global] CP-EXL-1-s01-01&amp;gt; add cluster member method request-id identifier 6e3077466f10d3d99db1f62254297612 site-id 1 format json&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"response": 401,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"body": {&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"message": "No info for request-id with value 6e3077466f10d3d99db1f62254297612",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"errors": "",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"code": "generic_error"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;[Global] CP-EXL-1-s01-01&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:14:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219436#M41950</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219438#M41951</link>
      <description>&lt;P&gt;before you add member. run from gclish&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;gt;&amp;nbsp;show cluster info provision&lt;/P&gt;
&lt;P&gt;and see you see in output the other member in REQUEST_TO_JOIN state. i you do not see it you have issues on your Sync network (is it VM)?&lt;/P&gt;
&lt;P&gt;only once you see it you can add it to the cluster&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:17:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219438#M41951</guid>
      <dc:creator>ShaiF</dc:creator>
      <dc:date>2024-07-02T14:17:05Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219443#M41955</link>
      <description>&lt;P&gt;Correct, its eve-ng platform. I just find it odd, as I never had sync issues with regular cluster in it, but this is obviously different. Give me 15-20 mins and I will update the thread.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:23:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219443#M41955</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:23:41Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219447#M41957</link>
      <description>&lt;P&gt;Sadly, still the same, BUT, since Im very persistent dude, I want to leave it in broken state, so can be fixed.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26581i6F26858065A07722/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26582i79DD1117A2833194/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:34:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219447#M41957</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:34:42Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219448#M41958</link>
      <description>&lt;P&gt;ok. now your second member is in clean install (we can see by the prompt)&lt;/P&gt;
&lt;P&gt;since it kind of vm (but not vmware) so i guess we will need to do some WA.&lt;/P&gt;
&lt;P&gt;Please share output of (from new member)&lt;/P&gt;
&lt;P&gt;1. ifconfig -a&lt;/P&gt;
&lt;P&gt;2. ps auxww | grep exl_detectiond&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:38:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219448#M41958</guid>
      <dc:creator>ShaiF</dc:creator>
      <dc:date>2024-07-02T14:38:01Z</dc:date>
    </item>
    <item>
      <title>Re: R82 elasticXL lab</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219452#M41960</link>
      <description>&lt;P&gt;Kind of vm, right, its eve-ng, so its considered vm, but not like say regular esxi. Btw, ONLY interface configured is eth0 with 192.168.1.1 IP, no static route, nothing yet.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26583iE34D29FDBCB7AC43/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2024 14:43:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-elasticXL-lab/m-p/219452#M41960</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-07-02T14:43:49Z</dc:date>
    </item>
  </channel>
</rss>

