<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Access to Gaia Portal (WebUI) after R80.20 upgrade in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10505#M87603</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;after upgrading the gateway cluster, consisting of two SG5400HPP, from R80.10 with Jumbo Hotfix Take 154 to R80.20 (with jumbo hotfix take 33) we couldn't reach the GAiA Portal (Admin WebGUI) anymore. We got a certificate error like before, because of a private certificate (from the ICA), but the certificate error now said that it's for a different system. Afterwards, we renewed the certificate by the ICA (gateway cluster object properties --&amp;gt; IPSec VPN) and even added additional informationen like other IPs an the DNS name, but this didn't solved the problem. We could only reach the GAiA Portal via the external IP, but because it's not facing towards the internal side, the standby member isn't reachable. The cluster members still weren't reachbable from the mgmt interface by the admin server (same network as mgmt interface --&amp;gt; mgmt network). Only access via SSH was possible.&lt;BR /&gt;We had to fallback via snapshot to R80.10 and afterwards the GAiA Portal was reachable immediately from the mgmt network again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any differences in the configuration (needed) in R80.20 comparing to R80.10 to solve this issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 06 Mar 2019 09:06:54 GMT</pubDate>
    <dc:creator>Oliver_Marzok</dc:creator>
    <dc:date>2019-03-06T09:06:54Z</dc:date>
    <item>
      <title>Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10505#M87603</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;after upgrading the gateway cluster, consisting of two SG5400HPP, from R80.10 with Jumbo Hotfix Take 154 to R80.20 (with jumbo hotfix take 33) we couldn't reach the GAiA Portal (Admin WebGUI) anymore. We got a certificate error like before, because of a private certificate (from the ICA), but the certificate error now said that it's for a different system. Afterwards, we renewed the certificate by the ICA (gateway cluster object properties --&amp;gt; IPSec VPN) and even added additional informationen like other IPs an the DNS name, but this didn't solved the problem. We could only reach the GAiA Portal via the external IP, but because it's not facing towards the internal side, the standby member isn't reachable. The cluster members still weren't reachbable from the mgmt interface by the admin server (same network as mgmt interface --&amp;gt; mgmt network). Only access via SSH was possible.&lt;BR /&gt;We had to fallback via snapshot to R80.10 and afterwards the GAiA Portal was reachable immediately from the mgmt network again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any differences in the configuration (needed) in R80.20 comparing to R80.10 to solve this issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 09:06:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10505#M87603</guid>
      <dc:creator>Oliver_Marzok</dc:creator>
      <dc:date>2019-03-06T09:06:54Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10506#M87604</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;tellpm process:httpd2&lt;BR /&gt;tellpm process:httpd2 t&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;works now?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 09:20:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10506#M87604</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-06T09:20:08Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10507#M87605</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jerry,&lt;/P&gt;&lt;P&gt;yes, the processes were running. The portal was accessible from the external site like described.&lt;BR /&gt;It's seems there're differences in the configuration and dependencies of the certificate in R80.20.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 09:24:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10507#M87605</guid>
      <dc:creator>Oliver_Marzok</dc:creator>
      <dc:date>2019-03-06T09:24:03Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10508#M87606</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;httpd2 is equally the same on R80.20 afaik. guys, can you please confirm that?&lt;/P&gt;&lt;P&gt;when you set the WebUI what ports have you specified for it?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 10:03:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10508#M87606</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-06T10:03:42Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10509#M87607</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The service is the same, yes.&lt;/P&gt;&lt;P&gt;We didn't changed the Port. It's still the default one 443, only added a path (.../admin).&lt;/P&gt;&lt;P&gt;On R80.10 it's working, and worked immediatly after the fallback to R80.10, but on R80.20 (even after certifcate renewal) it's not working.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 10:18:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10509#M87607</guid>
      <dc:creator>Oliver_Marzok</dc:creator>
      <dc:date>2019-03-06T10:18:01Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10510#M87608</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ok.now I gotcha. change the port from 443 to 4434 and restart the daemon:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tellpm process:httpd2&lt;BR /&gt;tellpm process:httpd2 t&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;make sure that there are no more sockets on tcp/443 running on the same GW.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I had this before and by customizing port it has solved itself plus, bear in mind that tcp/443 is shared on GAIA and for WebUI should be rather NOT USED (my own experience sorry).&lt;/P&gt;&lt;P&gt;is the MAB running there too? if yes - you've got all the answers, if not - please change port to any custom one but 443 and restart httpd2. Cert is another story, easy to re-deploy &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 11:07:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10510#M87608</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-06T11:07:00Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10511#M87609</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you very much, Jerry. That's sounds realy good.&lt;/P&gt;&lt;P&gt;MAB isn't running, but I think that on R80.20 based on new features, there're more shared services with tcp/443. That would explain why on R80.10 everything is fine and on R80.20 we have issues.&lt;/P&gt;&lt;P&gt;I will first try this at other customers in a few weeks and come back to this one when R80.20 works fine on the others.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 13:40:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10511#M87609</guid>
      <dc:creator>Oliver_Marzok</dc:creator>
      <dc:date>2019-03-06T13:40:29Z</dc:date>
    </item>
    <item>
      <title>Re: Access to Gaia Portal (WebUI) after R80.20 upgrade</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10512#M87610</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;great stuff. let us know please.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;best&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;J.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Mar 2019 15:24:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Access-to-Gaia-Portal-WebUI-after-R80-20-upgrade/m-p/10512#M87610</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-03-06T15:24:17Z</dc:date>
    </item>
  </channel>
</rss>

