<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ElasticXL and VSNext CoreXL question in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261839#M51335</link>
    <description>&lt;P&gt;Yes, typically VS0 is fine with just the 1 thread.&lt;/P&gt;</description>
    <pubDate>Wed, 05 Nov 2025 04:02:20 GMT</pubDate>
    <dc:creator>emmap</dc:creator>
    <dc:date>2025-11-05T04:02:20Z</dc:date>
    <item>
      <title>ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261710#M51305</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have a pair of 2 9100 devices configured in ElasticXL and with VSNext enabled. We're just running 2 Virtual System in these appliances.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The 9100 devices have 8 CPU Cores with CoreXL being distributed 2 for SND and 6 to FW workers.&lt;/P&gt;&lt;P&gt;Since this is ElasticXL and when we run "cphaprob state" we have the ACTIVE(P)/ACTIVE result, how can I read this in terms of the CoreXL? So, do we have just 8 CPU Cores, considering just a single machine of the ElasticXL cluster, or we have 16 CPU Cores?&lt;/P&gt;&lt;P&gt;Regarding the distribution of the CoreXL instances, I was thinking in something like this:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;2 Cores =&amp;gt; SND&lt;/LI&gt;&lt;LI&gt;1 Core =&amp;gt; VS0&lt;/LI&gt;&lt;LI&gt;4 Cores =&amp;gt; VS1&lt;/LI&gt;&lt;LI&gt;1 Core =&amp;gt;VS2&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Is this distribution make sense for you? Should I consider for the 16 CPUs? Or maybe I should only consider 16 CPUs if I had a third 9100? What is your opinion on this?&lt;/P&gt;&lt;P&gt;Please be aware that this is not yet in prod environment. We're still preparing the final topology, before we start the migration.&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;Kind regards.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Nov 2025 17:46:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261710#M51305</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-03T17:46:39Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261733#M51311</link>
      <description>&lt;P&gt;Your CoreXL per VS configuration a 'per SGM' configuration, so you should be planning based on 8 CPU cores. Hence, your proposed distribution sounds fine to start with. If you find that VS2 needs an extra thread it's OK to just add one there without lowering the VS1 configuration, as they are user mode threads and can happily share cores with the presumably minimally used VS0 thread - just don't go too far with this.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2025 02:24:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261733#M51311</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2025-11-04T02:24:46Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261749#M51316</link>
      <description>&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;Thanks for your opinion. I think it does not differ to much from what I was expecting.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regarding VS0, it will only be for Management purposes of the ElasticXL cluster. So I think is more than enough for it&lt;/P&gt;&lt;P&gt;Kind regards&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2025 11:00:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261749#M51316</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-04T11:00:50Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261839#M51335</link>
      <description>&lt;P&gt;Yes, typically VS0 is fine with just the 1 thread.&lt;/P&gt;</description>
      <pubDate>Wed, 05 Nov 2025 04:02:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/261839#M51335</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2025-11-05T04:02:20Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262538#M51531</link>
      <description>&lt;P&gt;Hi again,&lt;/P&gt;&lt;P&gt;Sorry, but since my last update, I had a colleague of mine deploying another VSNext Cluster and we've had some information from our Check Point Sales Engineer that is quite confusing. I would like to have your thoughs on that. So, basically he told us the following:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;The VS0 count for the number of licenses. So we've bought a license for 2 Virtual Systems. In the old ways (VSLS on R81.20, for example), that would mean VS0 and two additional VS, for example VS1 and VS2. It's the same for VSNext? Or the VS0 is now counted as a VS on the license and should be used not only for management?&lt;/LI&gt;&lt;LI&gt;Regarding the CoreXL distribution, the recommendation on VSLS was to assign the number of Cores on Smart Console for each Virtual System, saving 1 for VS0, and use CoreXL Dynamic Balancing for the platform to manage by herself which of the Cores were assigned to the Virtual Systems. Like I've referred previously, a Check Point Sales Engineer told us that in VSNext we should not change the default value assigned to each Virtual System, when we created them, since now that is completely managed by the CoreXL Dynamic Balancing. Do you have any thoughts on this?&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;I must confess that for me bot of those notes are not resonating very well on my head, but I would like to have your opinion if it's possible.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind regards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2025 17:24:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262538#M51531</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-11T17:24:42Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262577#M51542</link>
      <description>&lt;P&gt;1. My understanding is that the licensing hasn't changed with VSNext, so VS0 is not counted as a VS when adding VS licenses to a gateway. I would generally defer to the sales team when it comes to licensing though.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2. Dynamic Balancing does not change the CoreXL per VS configuration for each virtual system, it only changes the allocation of SND vs CoreXL pool cores on the gateway. So you do have to configure the CXL/VS settings. In Legacy VSX we do that in SmartConsole, for VSNext we do it on the gateways. So, don't change the CoreXL configuration inside the 'cpconfig' menu on the gateways, but do configure the CoreXL per VS configuration on each Virtual System.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 06:15:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262577#M51542</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2025-11-12T06:15:42Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262604#M51545</link>
      <description>&lt;P&gt;Should I run cpconfig on VS0 and disable the CoreXL or not? That was what I did in VSLS deployments, sine VS0 was only for Management of the VSX Cluster.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 10:05:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262604#M51545</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-12T10:05:43Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262607#M51546</link>
      <description>&lt;P&gt;Regarding the licenses, this is the output on Smart Console.&lt;/P&gt;&lt;DIV class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Captura de ecrã 2025-11-12 100839.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32073i66372DC60F1888AC/image-size/large?v=v2&amp;amp;px=999" role="button" title="Captura de ecrã 2025-11-12 100839.png" alt="Captura de ecrã 2025-11-12 100839.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;Which don't make sense for me, since the end customer have bought 2 Virtual Systems Licenses.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 10:11:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262607#M51546</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-12T10:11:10Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262632#M51551</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Captura de ecrã 2025-11-12 113144.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32080i1A8BD39B4C94804B/image-size/large?v=v2&amp;amp;px=999" role="button" title="Captura de ecrã 2025-11-12 113144.png" alt="Captura de ecrã 2025-11-12 113144.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;The * is pretty much the confirmation that VS0 is only for management but counts for the VS number license.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 13:16:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262632#M51551</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-12T13:16:13Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262650#M51553</link>
      <description>&lt;P&gt;This is how it works for the _base_ license if you have for example a VS10 add-on license it is VS0 + 10.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 14:56:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262650#M51553</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-11-12T14:56:34Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL and VSNext CoreXL question</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262661#M51554</link>
      <description>&lt;P&gt;Hi Chris,&lt;/P&gt;&lt;P&gt;Thanks for your confirmation. I was not aware of this.&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2025 15:29:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ElasticXL-and-VSNext-CoreXL-question/m-p/262661#M51554</guid>
      <dc:creator>Oryx</dc:creator>
      <dc:date>2025-11-12T15:29:29Z</dc:date>
    </item>
  </channel>
</rss>

