<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Management on Cluster-XL in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Management-on-Cluster-XL/m-p/86119#M6641</link>
    <description>&lt;P&gt;Which interface address on the standby node are you using for your HTTPS/SSH connection?&amp;nbsp; You need to use the interface IP address that is "facing" or closest to where you are initiating the connection from.&amp;nbsp; Trying to use an interface address that is not facing you for direct HTTPS/SSH connections to the standby will result in asymmetric traffic through the cluster and not usually work.&lt;/P&gt;</description>
    <pubDate>Sat, 23 May 2020 19:31:04 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2020-05-23T19:31:04Z</dc:date>
    <item>
      <title>Management on Cluster-XL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Management-on-Cluster-XL/m-p/86118#M6640</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;I am running a Checkpoint FW XL cluster with two physical appliances. Version R80.30 with take 191.&lt;/P&gt;&lt;P&gt;I have an issue with the secondary node. I can not reach it on HTTPS on the management port. I can reach it fine with SSH. But SSH gives a Connection Refused. If primary node is down I can reach with HTTPS. So no routing error. I can see the packet accepts in the firewall log. Also if use a server in the same subnet as the firewall I will reach it through https..&lt;/P&gt;&lt;P&gt;I use an inline vlan as management port, and I have defined it as mgmt in Checkpoint GAIA.&lt;/P&gt;&lt;P&gt;The physical mgmt port is not in use, and its not possible to use.&lt;/P&gt;&lt;P&gt;Anyone have any tips?&lt;/P&gt;</description>
      <pubDate>Sat, 23 May 2020 12:41:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Management-on-Cluster-XL/m-p/86118#M6640</guid>
      <dc:creator>EspenH</dc:creator>
      <dc:date>2020-05-23T12:41:10Z</dc:date>
    </item>
    <item>
      <title>Re: Management on Cluster-XL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Management-on-Cluster-XL/m-p/86119#M6641</link>
      <description>&lt;P&gt;Which interface address on the standby node are you using for your HTTPS/SSH connection?&amp;nbsp; You need to use the interface IP address that is "facing" or closest to where you are initiating the connection from.&amp;nbsp; Trying to use an interface address that is not facing you for direct HTTPS/SSH connections to the standby will result in asymmetric traffic through the cluster and not usually work.&lt;/P&gt;</description>
      <pubDate>Sat, 23 May 2020 19:31:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Management-on-Cluster-XL/m-p/86119#M6641</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2020-05-23T19:31:04Z</dc:date>
    </item>
  </channel>
</rss>

