<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remove CMA from an MDS in Firewall &amp; Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248459#M62425</link>
    <description>&lt;P&gt;There are the steps I noted down while ago when I had to do this with someone.&lt;/P&gt;
&lt;P&gt;mdsstop_customer &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;mdsenv &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;fwm sic_reset&lt;BR /&gt;fwm unloadlocal&lt;BR /&gt;mdsenv&lt;BR /&gt;mdsstop&lt;BR /&gt;mds_cma_delete &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;mdsstart&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 08 May 2025 15:55:55 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-05-08T15:55:55Z</dc:date>
    <item>
      <title>Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248409#M62420</link>
      <description>&lt;P&gt;Hello, Mates&lt;/P&gt;
&lt;P&gt;Is it possible to remove a particular CMA from my MLM?&lt;BR /&gt;I have MLM redundancy, but there is a problem with a particular CMA, and we need to delete it and recreate it.&lt;/P&gt;
&lt;P&gt;Is this possible? Either by the SmartConsole itself or by the MLM CLI.&lt;/P&gt;
&lt;P&gt;Does deleting a CMA impact the main box at all? Is there any special consideration to take into account?&lt;/P&gt;
&lt;P&gt;Thanks for your comments.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 03:48:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248409#M62420</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-05-08T03:48:27Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248445#M62421</link>
      <description>&lt;P&gt;A CMA contains all data for a specific domain (objects, rules, SIC for all managed objects, etc).&lt;BR /&gt;Deleting it is a rather destructive action.&lt;BR /&gt;Also, you don't delete it from the MLM, you delete it from the MDS side.&lt;BR /&gt;When you create the new CMA, you can associate it to the MLM.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 13:21:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248445#M62421</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-08T13:21:21Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248451#M62422</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;In my case, it is not a CMA that is “managing” GW or Cluster.&lt;BR /&gt;It is a CMA but it is inside a MLM box ...&lt;BR /&gt;The CMA is intended only as a “Virtual Log Server”, to collect the logs of several VS's.&lt;BR /&gt;We are having problems with a single CMA of our MLM, so, would it be possible to delete it, and recreate it?&lt;BR /&gt;Or would this still cause service interruption in some way?&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 14:13:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248451#M62422</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-05-08T14:13:37Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248455#M62423</link>
      <description>&lt;P&gt;In terms of gateway traffic, there should be no impact.&lt;BR /&gt;If a gateway can't reach its log server, it will either log to a different server (if configured) or store logs locally until the log server is available.&lt;BR /&gt;It will likely require a policy install for logging to flow to the MLM again.&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 15:18:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248455#M62423</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-08T15:18:33Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248458#M62424</link>
      <description>&lt;P&gt;For MLM we're using a different term not to confuse.&lt;/P&gt;
&lt;P&gt;Yes, you can remove it and create a fresh one instead. I would move the logs if existing first to the other log server you have on the domain.&lt;/P&gt;
&lt;P&gt;You can stop/start just a specific server in the CLI using "mdsstop_customer &amp;lt;IP/name&amp;gt;"&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 15:34:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248458#M62424</guid>
      <dc:creator>Amir_Senn</dc:creator>
      <dc:date>2025-05-08T15:34:25Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248459#M62425</link>
      <description>&lt;P&gt;There are the steps I noted down while ago when I had to do this with someone.&lt;/P&gt;
&lt;P&gt;mdsstop_customer &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;mdsenv &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;fwm sic_reset&lt;BR /&gt;fwm unloadlocal&lt;BR /&gt;mdsenv&lt;BR /&gt;mdsstop&lt;BR /&gt;mds_cma_delete &amp;lt;CMA_Name&amp;gt;&lt;BR /&gt;mdsstart&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 08 May 2025 15:55:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248459#M62425</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-08T15:55:55Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248504#M62426</link>
      <description>&lt;P&gt;Hello, &lt;BR /&gt;We have already run the command repeatedly, we have also restarted the MLM box, and the problem continues. &lt;BR /&gt;The TAC does not find the root-cause of the problem. &lt;BR /&gt;The MLM has several CMA and the problem is only with 1, that is not receiving logs from the VSX Cluster that corresponds to it, and that is causing that one of the members of the VSX CLUSTER is filling daily its var/log path because it is storing locally. &lt;BR /&gt;It is a very strange case.&lt;/P&gt;</description>
      <pubDate>Fri, 09 May 2025 11:20:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248504#M62426</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-05-09T11:20:22Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248506#M62427</link>
      <description>&lt;P&gt;Very odd...maybe have them escalate the case?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 09 May 2025 11:27:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248506#M62427</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-09T11:27:02Z</dc:date>
    </item>
    <item>
      <title>Re: Remove CMA from an MDS</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248609#M62428</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/82839"&gt;@Matlu&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hey mate, did you try steps I mentioned to see if that works?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 01:33:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Remove-CMA-from-an-MDS/m-p/248609#M62428</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T01:33:46Z</dc:date>
    </item>
  </channel>
</rss>

