<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Configuration in HA MDS in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251993#M62107</link>
    <description>&lt;P&gt;You have a primary and secondary management. On secondary (or standby) you can read-only in SmartConsole, so no changes are possible there. Changes using SmartConsole can only be done on the primary (active) management.&lt;/P&gt;&lt;P&gt;CLI changes are never synced.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 25 Jun 2025 20:13:07 GMT</pubDate>
    <dc:creator>joerivang</dc:creator>
    <dc:date>2025-06-25T20:13:07Z</dc:date>
    <item>
      <title>Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251991#M62106</link>
      <description>&lt;P&gt;Hello everybody.&lt;/P&gt;
&lt;P&gt;In an MDS HA environment, if you configure something in the HA standby member, this configuration is ‘replicated’ in the ‘Active’ member?&lt;/P&gt;
&lt;P&gt;Or does the configuration stay locally on the MDS Standby?&lt;/P&gt;
&lt;P&gt;Thanks for your comments&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jun 2025 19:45:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251991#M62106</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-06-25T19:45:59Z</dc:date>
    </item>
    <item>
      <title>Re: Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251993#M62107</link>
      <description>&lt;P&gt;You have a primary and secondary management. On secondary (or standby) you can read-only in SmartConsole, so no changes are possible there. Changes using SmartConsole can only be done on the primary (active) management.&lt;/P&gt;&lt;P&gt;CLI changes are never synced.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jun 2025 20:13:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251993#M62107</guid>
      <dc:creator>joerivang</dc:creator>
      <dc:date>2025-06-25T20:13:07Z</dc:date>
    </item>
    <item>
      <title>Re: Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251999#M62108</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;By CLI, can you validate if your login account is in "read only" mode?&lt;BR /&gt;If I run a script in the MDS Standby, this will not work (if the script is to create objects in the MDS).&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jun 2025 21:14:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/251999#M62108</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-06-25T21:14:53Z</dc:date>
    </item>
    <item>
      <title>Re: Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252001#M62109</link>
      <description>&lt;P&gt;Hey bro,&lt;/P&gt;
&lt;P&gt;What&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/85175"&gt;@joerivang&lt;/a&gt;&amp;nbsp;is indeed the case. By the way, just for the context, as LOTS of people confuse these things...primary will ALWAYS be primary and secondary WILL always be scondary, unless rebuilt. Either one can be active/standby.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jun 2025 00:34:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252001#M62109</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-06-26T00:34:45Z</dc:date>
    </item>
    <item>
      <title>Re: Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252011#M62110</link>
      <description>&lt;P&gt;CLI is just CLI, you're logging into the local machine. On a CLI point of view you could run a script, but in that script you'll always have to define the primary management to execute on. This script can then be run on the secondary management, making the changes to objects on the primary management.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jun 2025 05:18:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252011#M62110</guid>
      <dc:creator>joerivang</dc:creator>
      <dc:date>2025-06-26T05:18:10Z</dc:date>
    </item>
    <item>
      <title>Re: Configuration in HA MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252039#M62111</link>
      <description>&lt;P&gt;Correct, and as you said, cli commands are definitely not synced.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jun 2025 10:30:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuration-in-HA-MDS/m-p/252039#M62111</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-06-26T10:30:32Z</dc:date>
    </item>
  </channel>
</rss>

