<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.20 CDT Versus SmartUpdate (FIGHT!) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59922#M84530</link>
    <description>&lt;P&gt;We took a different route this time. We focused on robust core upgrades (with CPUSE and automation with CDT), all with APIs first and later UI.&lt;/P&gt;
&lt;P&gt;We understand that a UI component is needed and phase 1 is coming in R80.40 (why phase 1? because it will not cover all the richness of CDT - it will enable simple update scenario). The UI will be based on UI extension and therefore part of Smart Console and not a separate application.&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In general the richness of CDT comes with strong automation (which wasnt part of SmartUpdate and is less UI relevant) but for CPUSE surely a UI is expected&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Dorit&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BTW you are welcome to join the early availability in a month or two&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 09 Aug 2019 00:17:48 GMT</pubDate>
    <dc:creator>Dorit_Dor</dc:creator>
    <dc:date>2019-08-09T00:17:48Z</dc:date>
    <item>
      <title>R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59883#M84528</link>
      <description>&lt;P&gt;Hello all,&lt;BR /&gt;&lt;BR /&gt;First post so please take it easy on me...&lt;BR /&gt;&lt;BR /&gt;Why can't we upgrade managed firewalls (Service Packs and various updates) through a SmartUpdate-like utility?&amp;nbsp; Forgive me if this has been asked before.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;gt;AntiSpoofing&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2019 13:43:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59883#M84528</guid>
      <dc:creator>AntiSpoofing</dc:creator>
      <dc:date>2019-08-08T13:43:54Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59919#M84529</link>
      <description>For the last several years, we've distributed patches via CPUSE.&lt;BR /&gt;SmartUpdate was never updated to leverage this mechanism.&lt;BR /&gt;CDT can distribute CPUSE packages (among other things) to multiple gateways, but doesn't have a SmartUpdate GUI.&lt;BR /&gt;I suspect, though don't know the exact timelines, that we will integrate this function into SmartConsole in a later release.</description>
      <pubDate>Thu, 08 Aug 2019 22:41:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59919#M84529</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-08-08T22:41:20Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59922#M84530</link>
      <description>&lt;P&gt;We took a different route this time. We focused on robust core upgrades (with CPUSE and automation with CDT), all with APIs first and later UI.&lt;/P&gt;
&lt;P&gt;We understand that a UI component is needed and phase 1 is coming in R80.40 (why phase 1? because it will not cover all the richness of CDT - it will enable simple update scenario). The UI will be based on UI extension and therefore part of Smart Console and not a separate application.&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In general the richness of CDT comes with strong automation (which wasnt part of SmartUpdate and is less UI relevant) but for CPUSE surely a UI is expected&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Dorit&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BTW you are welcome to join the early availability in a month or two&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2019 00:17:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59922#M84530</guid>
      <dc:creator>Dorit_Dor</dc:creator>
      <dc:date>2019-08-09T00:17:48Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59938#M84531</link>
      <description>&lt;P&gt;Yup, just a few clicks to install the latest Jumbo HF (without even having to search for it). Will automatically install cluster members one-by-one and take care of an orderly fail over.&lt;/P&gt;
&lt;P&gt;Join our R80.40 EA!&lt;/P&gt;
&lt;P&gt;We do have even more cool stuff coming &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;And here is a teaser:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R80.40 HF Installation.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2102iD909A4109C120E61/image-size/large?v=v2&amp;amp;px=999" role="button" title="R80.40 HF Installation.png" alt="R80.40 HF Installation.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2019 11:58:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59938#M84531</guid>
      <dc:creator>Tomer_Noy</dc:creator>
      <dc:date>2019-08-09T11:58:52Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59940#M84532</link>
      <description>Thank-You, yes, that was what I expected. I just thought that the CPUSE approach was a tad laborious since you are downloading multiple times the same package whereas the Management distribute and scheduled application was much-to-be-desired function.&lt;BR /&gt;&lt;BR /&gt;Thanks!</description>
      <pubDate>Fri, 09 Aug 2019 12:01:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59940#M84532</guid>
      <dc:creator>AntiSpoofing</dc:creator>
      <dc:date>2019-08-09T12:01:37Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59941#M84533</link>
      <description>Thank-you sir!&lt;BR /&gt;I got word that it's coming.&lt;BR /&gt;&lt;BR /&gt;It was just that it seemed like a step back from where "we" were...</description>
      <pubDate>Fri, 09 Aug 2019 12:04:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59941#M84533</guid>
      <dc:creator>AntiSpoofing</dc:creator>
      <dc:date>2019-08-09T12:04:35Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59942#M84534</link>
      <description>Thanks Dorit!&lt;BR /&gt;&lt;BR /&gt;BTW - Former Employee (Roger, Diamond TAC, Team 1)</description>
      <pubDate>Fri, 09 Aug 2019 12:06:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/59942#M84534</guid>
      <dc:creator>AntiSpoofing</dc:creator>
      <dc:date>2019-08-09T12:06:21Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64075#M84535</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I thought CDT in GUI form was going to be part of R80.30 is this now not the case?&amp;nbsp; We are not yet on this release but were planning to be due to&amp;nbsp;CDT availability in the console.&lt;/P&gt;&lt;P&gt;I have just checked on the SmartConsole for R80.30 on Demopoint but couldn't find CDT in the console, unless I am missing it or&amp;nbsp;does it require an extension of some sort?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2019 16:12:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64075#M84535</guid>
      <dc:creator>Lewis_Ryan</dc:creator>
      <dc:date>2019-10-01T16:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64087#M84536</link>
      <description>Hadn't heard this MIGHT be in R80.30.&lt;BR /&gt;In any case, it's planned for R80.40 and you are encouraged to join the EA.</description>
      <pubDate>Tue, 01 Oct 2019 17:49:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64087#M84536</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-10-01T17:49:16Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64136#M84537</link>
      <description>That's what I was told at the Demo at CPX Vienna. Will consider EA</description>
      <pubDate>Wed, 02 Oct 2019 08:04:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/64136#M84537</guid>
      <dc:creator>Lewis_Ryan</dc:creator>
      <dc:date>2019-10-02T08:04:48Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/66897#M84538</link>
      <description>&lt;P&gt;Right now...I am on the CDT side.&amp;nbsp; &amp;nbsp;So please don't take my CDT away!!!!&lt;/P&gt;&lt;P&gt;The CDT has worked very well for us. We have upgraded more that 135 firewalls in three months. Keep in mind, we can only do these upgrades on weekends. It used to take us more than a year to upgrade everything. The upgrades have been from R77.20 and R77.30 to R80.20 with Jumbo Take. And we are using CDT to roll out HFA's as well. We have already started patching with Take 118, which was recently released. This has dramatically sped up our upgrades and patching cycles.&amp;nbsp; &amp;nbsp;This will be the first time in over 10 Years that all of our firewalls will be on the same version and HFA!&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you have not tried CDT, I would recommend just skipping the basic method and go right to the advanced method and define a deployment plan. Not very hard to do it, and you are going to end up doing this way anyway. So don't bother with basic method.&lt;/P&gt;</description>
      <pubDate>Fri, 08 Nov 2019 17:22:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/66897#M84538</guid>
      <dc:creator>M_Ruszkowski</dc:creator>
      <dc:date>2019-11-08T17:22:07Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/74210#M84539</link>
      <description>&lt;P&gt;This new feature is for hotfixes. Upgrading using SmartConsole would be the next step. We are waiting.....&amp;nbsp;8)&lt;/img&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2020 13:24:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/74210#M84539</guid>
      <dc:creator>VincentBacher</dc:creator>
      <dc:date>2020-02-05T13:24:14Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111322#M84540</link>
      <description>&lt;P&gt;I have watched this video about CDT in Smartconsole in R81. Beautiful. Really nice.&lt;BR /&gt;I was wondering what are the plans? Will the smartconsole with get more and more features of the CDT CLI version?&lt;BR /&gt;And just something simple: in the GUI version both gateways in the cluster get upgraded one after the other. I was thinking that it would be nice to give the administrator the option to wait to run postchecks before the upgrade of the second gateway.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Feb 2021 18:47:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111322#M84540</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2021-02-19T18:47:33Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111327#M84541</link>
      <description>&lt;P&gt;CDT may have a few more options overall, but the plan is to bring in more functionality into SmartConsole.&lt;BR /&gt;Like the suggestion for post-upgrade checks before upgrading other cluster members.&lt;BR /&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8469"&gt;@Tsahi_Etziony&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Feb 2021 19:30:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111327#M84541</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-19T19:30:52Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111376#M84542</link>
      <description>&lt;P&gt;The SmartConsole capabilities are separated from CDT and it is not a GUI for CDT. It is developed by the same team to make sure we learn from the CDT development, but it has much higher focus on usability, and hopefully it can be used without any learning effort.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;wrote, we will continue to bring new capabilities to SmartConsole, but I expect CDT to stay with us for a very long time because frankly, it is much more powerful. We will definitely continue to develop and support both options.&lt;/P&gt;
&lt;P&gt;The cluster suggestion is a high priority for us, but unfortunately it will probably only be available towards the end of 2021. The reason - we want to make the UX perfect, and it requires some more research and usability trials. If you are interested to contribute this effort, share your thoughts and even try out early developments, we would love to contact you for an open discussion.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 20 Feb 2021 20:57:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111376#M84542</guid>
      <dc:creator>Tsahi_Etziony</dc:creator>
      <dc:date>2021-02-20T20:57:43Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111534#M84543</link>
      <description>&lt;P&gt;Yeah absolutely, thanks.&amp;nbsp; I am definitely interested in the usability focus of the GUI/Smartconsole version.&amp;nbsp;&lt;BR /&gt;I guess that you may be already working on these few things I am suggesting, but anyway&amp;nbsp; at the&amp;nbsp; moment I miss:&lt;/P&gt;&lt;P&gt;- more visibility of what is going on during the upgrade, be aware of the different phases, perhaps show the cpuse messages...&lt;/P&gt;&lt;P&gt;- include snapshots in the process&lt;/P&gt;&lt;P&gt;-&amp;nbsp; include breakpoints and post checks, so the admin can pause for a while (after one member of the cluster has been upgraded) and then decide if resume or rollback&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Feb 2021 16:56:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111534#M84543</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2021-02-22T16:56:45Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111597#M84544</link>
      <description>&lt;P&gt;Sure. I'll have my guys contact you for future usability sessions and feedback.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Your suggestions are indeed known to us. I only have one comment on the snapshot - when you perform a major upgrade, either from SmartConsole, using CDT or directly using the GW's CPUSE interface, CPUSE is keeping an automatic snapshot on the GW as part of the process.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Feb 2021 09:34:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111597#M84544</guid>
      <dc:creator>Tsahi_Etziony</dc:creator>
      <dc:date>2021-02-23T09:34:36Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111616#M84545</link>
      <description>&lt;P&gt;That is great that CPUSE already do it. So perhaps a bit of visibility on what is going behind the scenes would be enough.&lt;BR /&gt;And would CPUSE allow you to use it for a rollback? And would CPUSE also be able to take the snapshot and store it remotely?&lt;/P&gt;</description>
      <pubDate>Tue, 23 Feb 2021 11:52:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111616#M84545</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2021-02-23T11:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111641#M84546</link>
      <description>&lt;P&gt;Visibility - for sure!&lt;/P&gt;
&lt;P&gt;Currently exporting a snapshot or reverting to a saved snapshot is only available from the machine itself.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 Feb 2021 16:36:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/111641#M84546</guid>
      <dc:creator>Tsahi_Etziony</dc:creator>
      <dc:date>2021-02-23T16:36:37Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 CDT Versus SmartUpdate (FIGHT!)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/128121#M84547</link>
      <description>&lt;P&gt;I have been using CDT for about three years now.&amp;nbsp; &amp;nbsp;I originally posted on this thread above back in 2019.&amp;nbsp; We recently upgraded our MDS servers to R80.40 last March and shortly after that I started upgrading all the GW's from R80.20 to R80.40.&amp;nbsp; &amp;nbsp;I had to wait on some custom HFA's that R&amp;amp;D...so I would have started sooner.&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;I have upgraded since this May,&amp;nbsp; 140 firewalls / 70 clusters using CDT - i am almost done!&lt;/P&gt;&lt;P&gt;Our "CDT Deployment scripts", do more than just the upgrade, push HFA's...We are pushing down different "fwkern.conf" files depending on the cluster in our env.; pushing custom scripts, un-taring them,&amp;nbsp; and running them.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I just recently used CDT to push out the new v1.6 GAIA API to the GW's.&amp;nbsp; &amp;nbsp; I have also used CDT to rotate passwords on all the GW's.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So what i am trying to say is that I am using CDT for other things than just doing an upgrade or installing an HFA.&amp;nbsp; &amp;nbsp;I am not sure how this is going to be done in when you add CDT to the GUI.&amp;nbsp; I am just worried that turning CDT into a GUI may impact other features or how I am using it.&amp;nbsp; &amp;nbsp;Our MDS env has 70+ domains,&amp;nbsp; I have all my files structured on the MDS and rsync'ed between the MDS servers.&amp;nbsp; &amp;nbsp;For GW upgrades I have multiple sessions opened and just do a 'mdsenv" and run the deployment plans.&lt;/P&gt;&lt;P&gt;As for the other items that we use CDT for (not upgrades)&amp;nbsp; I have bash scripts that loop through the domains, dynamically does the "-generate for the csv file" and then does the "execute", once completes loops to the next domain.&amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;I am sure in the future, some of this can be moved over to Ansible...but that is another story because I am having issues with v1.5 of the API and I am using CDT to push out v1.6.&lt;/P&gt;&lt;P&gt;I am not sure how all of this will work in the GUI.&amp;nbsp; I really do not want be opening a SmartConsole to each domain and making sure the upgrades are configured the same, or maintaining configuration in all the domains.&amp;nbsp; &amp;nbsp;If we only had a handful them maybe...but we have over 70 domains.&amp;nbsp; &amp;nbsp;Is this going to in the Global view of the MDS?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please don't break CDT.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 14:26:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-CDT-Versus-SmartUpdate-FIGHT/m-p/128121#M84547</guid>
      <dc:creator>M_Ruszkowski</dc:creator>
      <dc:date>2021-08-26T14:26:47Z</dc:date>
    </item>
  </channel>
</rss>

