<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Question about Sync Interface Routing in Check Point Cluster in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255728#M50054</link>
    <description>&lt;P&gt;I’m aware of the Virtual IP mechanism but If LAN2 goes down (On the right), is there any way for users to still reach the Internet via the Sync interface (the cluster sync link) as a fallback path?&lt;/P&gt;</description>
    <pubDate>Fri, 22 Aug 2025 10:04:52 GMT</pubDate>
    <dc:creator>Solitude</dc:creator>
    <dc:date>2025-08-22T10:04:52Z</dc:date>
    <item>
      <title>Question about Sync Interface Routing in Check Point Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255724#M50052</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello team, &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I'm new with Checkpoint, and I have a question about the feature in Cluster, hope you can help me answer. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I would like to ask about the possibility of routing through the Sync interface in a Check Point Cluster running in Active-Active mode.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Is there any feature in the cluster_XL that allows data traffic to be transferred via the Sync port between the two appliances? &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;For example, in the case below:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z6933694410342_5923c541687f2f5c74b1d3aba1169e98.jpg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31288iB1FB41CCA8F2B537/image-size/medium?v=v2&amp;amp;px=400" role="button" title="z6933694410342_5923c541687f2f5c74b1d3aba1169e98.jpg" alt="z6933694410342_5923c541687f2f5c74b1d3aba1169e98.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If the two uplinks (marked with red X) are down, can the host on the lower side still reach the Internet by rerouting traffic through the Sync interface between the two firewalls? &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I'm tried to search for a solution but still no luck. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Best Regards.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Aug 2025 09:23:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255724#M50052</guid>
      <dc:creator>Solitude</dc:creator>
      <dc:date>2025-08-22T09:23:28Z</dc:date>
    </item>
    <item>
      <title>Re: Question about Sync Interface Routing in Check Point Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255726#M50053</link>
      <description>&lt;P&gt;Rerouting traffic is &lt;STRONG&gt;not required&lt;/STRONG&gt; if a cluster member fails.&lt;BR /&gt;The host always talks to the Virtual Cluster IP (VIP) 192.168.1.1.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Aug 2025 09:38:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255726#M50053</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2025-08-22T09:38:00Z</dc:date>
    </item>
    <item>
      <title>Re: Question about Sync Interface Routing in Check Point Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255728#M50054</link>
      <description>&lt;P&gt;I’m aware of the Virtual IP mechanism but If LAN2 goes down (On the right), is there any way for users to still reach the Internet via the Sync interface (the cluster sync link) as a fallback path?&lt;/P&gt;</description>
      <pubDate>Fri, 22 Aug 2025 10:04:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255728#M50054</guid>
      <dc:creator>Solitude</dc:creator>
      <dc:date>2025-08-22T10:04:52Z</dc:date>
    </item>
    <item>
      <title>Re: Question about Sync Interface Routing in Check Point Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255729#M50055</link>
      <description>&lt;P&gt;The topology is not valid, all segments should have a VIP hence this shouldn't be a requirement.&lt;/P&gt;
&lt;P&gt;In your example the healthiest member will be active-attention.&lt;/P&gt;
&lt;P&gt;Utilize bonds for link protection where needed.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Aug 2025 10:19:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255729#M50055</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-08-22T10:19:23Z</dc:date>
    </item>
    <item>
      <title>Re: Question about Sync Interface Routing in Check Point Cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255846#M50100</link>
      <description>&lt;P&gt;There is no mechanism to allow data traffic to traverse the Sync link. This is by design to isolate critical sync traffic from the rest of the network and to eliminate a possible bottleneck on that link.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Aug 2025 02:41:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Question-about-Sync-Interface-Routing-in-Check-Point-Cluster/m-p/255846#M50100</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2025-08-25T02:41:04Z</dc:date>
    </item>
  </channel>
</rss>

