<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ClusterXL in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262755#M51575</link>
    <description>&lt;P&gt;Im sure if you change below option, it would show way you want it.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32097i81358B8166CA12DB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Thu, 13 Nov 2025 13:33:24 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-11-13T13:33:24Z</dc:date>
    <item>
      <title>ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262749#M51572</link>
      <description>&lt;P data-start="140" data-end="145"&gt;Hi,&lt;/P&gt;
&lt;P data-start="147" data-end="370"&gt;I have two gateways configured in a ClusterXL High Availability (HA) setup.&lt;BR data-start="222" data-end="225" /&gt;However, when I run the &lt;CODE data-start="249" data-end="265"&gt;cphaprob -a if&lt;/CODE&gt; command, I notice that two interfaces (&lt;STRONG&gt;bond0.8&lt;/STRONG&gt; &amp;amp; &lt;STRONG&gt;bond0.2053&lt;/STRONG&gt;) are showing as &lt;STRONG data-start="319" data-end="340"&gt;LS (Load Sharing)&lt;/STRONG&gt; mode, and I’m not sure why.&lt;/P&gt;
&lt;P data-start="372" data-end="483"&gt;I’ve checked the SmartConsole GUI but couldn’t find any option to change these interfaces from LS to HA mode.&lt;/P&gt;
&lt;P data-start="372" data-end="483"&gt;there is no reason to have them in LS because they run very little traffic!&lt;/P&gt;
&lt;P data-start="485" data-end="531"&gt;Could you please advise how to correct this?&lt;/P&gt;
&lt;LI-CODE lang="python"&gt; cphaprob -a if

CCP mode: Manual (Unicast)
Required interfaces: 4
Required secured interfaces: 1


Interface Name:      Status:

Sync (S)             UP
Mgmt                 Non-Monitored
eth1-01              UP
bond0.8 (LS)         UP
bond0.2053 (LS)      UP

S - sync, HA/LS - bond type, LM - link monitor, P - probing

Virtual cluster interfaces: 21

eth1-01          
bond0.5         
bond0.50         
bond0.8          
bond0.25        
bond0.49        
bond0.10        
bond0.47        
bond0.50        
bond0.27        
bond0.55        
bond0.90        
bond0.2053      
bond0.41       
bond0.70       
bond0.56      
bond0.27       
bond0.53      
bond0.940        
vpnt10          
vpnt11           &lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So I’m wondering when and why these interfaces were configured to operate in &lt;STRONG data-start="226" data-end="247"&gt;Load Sharing (LS)&lt;/STRONG&gt; mode, and how I can reconfigure them back to &lt;STRONG data-start="293" data-end="319"&gt;High Availability (HA)&lt;/STRONG&gt; mode.&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt; show cluster state

Cluster Mode:   High Availability (Active Up) with IGMP Membership&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:10:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262749#M51572</guid>
      <dc:creator>Moudar</dc:creator>
      <dc:date>2025-11-13T13:10:10Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262751#M51573</link>
      <description>&lt;P&gt;LS would be default (normal) for LACP / 802.3AD bonds I expect.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ClusterXL_AdminGuide/Topics-CXLG/Bond-Load-Sharing-Mode-in-Cluster.htm?tocpath=Advanced%20Features%20and%20Procedures%7CWorking%20with%20Bond%20Interfaces%20in%20Cluster%7CBond%20Load%20Sharing%20Mode%20in%20Cluster%7C_____0" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ClusterXL_AdminGuide/Topics-CXLG/Bond-Load-Sharing-Mode-in-Cluster.htm?tocpath=Advanced%20Features%20and%20Procedures%7CWorking%20with%20Bond%20Interfaces%20in%20Cluster%7CBond%20Load%20Sharing%20Mode%20in%20Cluster%7C_____0&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:29:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262751#M51573</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-11-13T13:29:10Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262753#M51574</link>
      <description>&lt;P&gt;Hey brother,&lt;/P&gt;
&lt;P&gt;I see what Chris mentioned, makes total sense, it would indicate type of bond, as per output as well. here is output from my lab&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;[Expert@CP-FW-01:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Manual (Unicast)&lt;BR /&gt;Required interfaces: 4&lt;BR /&gt;Required secured interfaces: 1&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth0 (LM) UP&lt;BR /&gt;eth1 (LM) UP&lt;BR /&gt;eth2 (LM) UP&lt;BR /&gt;eth3 (S-LM) UP&lt;/P&gt;
&lt;P&gt;S - sync, HA/LS - bond type, LM - link monitor, P - probing&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 3&lt;/P&gt;
&lt;P&gt;eth0 172.16.10.246&lt;BR /&gt;eth1 192.168.10.246&lt;BR /&gt;eth2 172.31.10.246&lt;/P&gt;
&lt;P&gt;[Expert@CP-FW-01:0]#&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:31:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262753#M51574</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:31:10Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262755#M51575</link>
      <description>&lt;P&gt;Im sure if you change below option, it would show way you want it.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32097i81358B8166CA12DB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:33:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262755#M51575</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:33:24Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262756#M51576</link>
      <description>&lt;P&gt;Don't change this without considering the switch side configs unless you want to break it.&lt;/P&gt;
&lt;P&gt;802.3AD is the defacto standard for bonds.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:37:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262756#M51576</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-11-13T13:37:37Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262757#M51577</link>
      <description>&lt;P&gt;but all other vlan interfaces are in the same bond interface which is bond0, so why only interface bond0.8 and bond0.2053 are LS?&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:40:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262757#M51577</guid>
      <dc:creator>Moudar</dc:creator>
      <dc:date>2025-11-13T13:40:51Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262758#M51578</link>
      <description>&lt;P&gt;Yep, forgot to mention that, super important!&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:41:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262758#M51578</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:41:03Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262761#M51579</link>
      <description>&lt;P&gt;Can you send a screenshot?&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:45:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262761#M51579</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:45:38Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262762#M51580</link>
      <description>&lt;P&gt;Because only the highest &amp;amp; lowest VLANs are relevant to that part of the output as monitored by ClusterXL.&lt;/P&gt;
&lt;P&gt;If anything is odd it's why bond0.5 doesn't show there.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:49:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262762#M51580</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-11-13T13:49:21Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262763#M51581</link>
      <description>&lt;P&gt;you can see all interfaces&amp;nbsp;belongs to same bond?!&lt;/P&gt;
&lt;PRE class="lia-code-sample  language-python"&gt;&lt;CODE&gt;bond0.5         
bond0.50         
bond0.8          
bond0.25        
bond0.49        
bond0.10        
bond0.47        
bond0.50        
bond0.27        
bond0.55        
bond0.90        
bond0.2053      
bond0.41       
bond0.70       
bond0.56      
bond0.27       
bond0.53      
bond0.940     &lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;i had other gateway here my bad&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:55:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262763#M51581</guid>
      <dc:creator>Moudar</dc:creator>
      <dc:date>2025-11-13T13:55:42Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262764#M51582</link>
      <description>&lt;P&gt;I totally remember now the case I had with TAC while back about this. Below sk is what they gave me.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk92826" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk92826&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:50:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262764#M51582</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:50:53Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262765#M51583</link>
      <description>&lt;P&gt;So i am not going to change any.&lt;BR /&gt;i only wonder why only 2 interfaces are LS&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:51:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262765#M51583</guid>
      <dc:creator>Moudar</dc:creator>
      <dc:date>2025-11-13T13:51:25Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262766#M51584</link>
      <description>&lt;P&gt;so maybe it is vlan 5 i should investigate&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:52:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262766#M51584</guid>
      <dc:creator>Moudar</dc:creator>
      <dc:date>2025-11-13T13:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262767#M51585</link>
      <description>&lt;P&gt;Hey brother, please refer to the sk I sent, it would be 100% relevant here, as Chris indicated.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 13:52:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/ClusterXL/m-p/262767#M51585</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-11-13T13:52:38Z</dc:date>
    </item>
  </channel>
</rss>

