<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VSX ClusterXL in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91814#M9072</link>
    <description>&lt;P&gt;The state is per VS. If a VS fails over, then yes, traffic will be handled as you say&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 17 Jul 2020 20:27:53 GMT</pubDate>
    <dc:creator>_Val_</dc:creator>
    <dc:date>2020-07-17T20:27:53Z</dc:date>
    <item>
      <title>VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91418#M9055</link>
      <description>&lt;P&gt;Hi Guys, not sure if this output is normal when dealing in active standby VSX.&lt;/P&gt;&lt;P&gt;when I do "cphaprob state" in the VS0 it shows that it is active standby. But, when I enter a specific VS such as VS1 then I do "cphaprob state" it shows that this VS is in active active in both VSX gateways.&lt;/P&gt;&lt;P&gt;is this the normal scenario? Is this means the both VAX gateways forwards traffic in that VS?&lt;/P&gt;&lt;P&gt;thank you.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 08:45:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91418#M9055</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T08:45:00Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91425#M9056</link>
      <description>&lt;P&gt;In VS0 you should always see the status of the VSX ClusterXL. For example the following is normal for VSX LS: &lt;BR /&gt;GW1: active GW2: standby GW3: standby&lt;/P&gt;
&lt;P&gt;The virtual systems VS1, VS2,... can have different status informations.&lt;BR /&gt;For example:&lt;BR /&gt;VS on GW1: active&lt;BR /&gt;VS on GW2: standby&amp;nbsp; (&lt;STRONG&gt;full session and tabel sync&lt;/STRONG&gt; with the active VS gateway)&lt;BR /&gt;VS on GW3: backup&amp;nbsp; &amp;nbsp;(&lt;STRONG&gt;no session and tabel sync&lt;/STRONG&gt; with the active VS gateway)&lt;/P&gt;
&lt;P&gt;Here a list with cluster states:&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_20200714-111905_Edge.jpg" style="width: 571px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/7262i765E49CB064ED2B4/image-dimensions/571x556?v=v2" width="571" height="556" role="button" title="Screenshot_20200714-111905_Edge.jpg" alt="Screenshot_20200714-111905_Edge.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:23:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91425#M9056</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-07-14T09:23:22Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91426#M9057</link>
      <description>&lt;P&gt;Here you find a cheat sheet with ClusterXL information:&lt;BR /&gt;&lt;A class="jive-link-wiki-small" href="https://community.checkpoint.com/docs/DOC-3741-r8030-cheat-sheet-clusterxl" target="_blank" rel="noopener" data-containerid="2057" data-containertype="14" data-objectid="3475" data-objecttype="102"&gt;R80.x - cheat sheet - ClusterXL&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:18:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91426#M9057</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-07-14T09:18:10Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91429#M9058</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;&amp;nbsp;, thanks for the feedback and help. But why mine is when I do cphaprob state in VS0 it shows that active/standby in each cluster members but when I go inside a specific VS then do cphaprob state, I can see active/active for both cluster members.&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the meaning of it? Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:29:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91429#M9058</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T09:29:26Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91430#M9059</link>
      <description>&lt;P&gt;Am running some VSX in HA and all of the members are active/standby same with the VS atleast for R80.10 and up.&lt;BR /&gt;Same with VR that are active/standby, VSW complains if you do that command.&lt;BR /&gt;&lt;BR /&gt;In VSLS it should show active / standby on all members when everything is OK.&lt;BR /&gt;The active will be on diff member depending what vs you check for.&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;Magnus&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:40:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91430#M9059</guid>
      <dc:creator>Magnus-Holmberg</dc:creator>
      <dc:date>2020-07-14T09:40:20Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91431#M9060</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9282"&gt;@Magnus-Holmberg&lt;/a&gt;&amp;nbsp;, which means my current status right now is abnormal. Is the Monitoring blade needs to be enabled for the clusterXL monitoring that will help for this? thanks&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:42:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91431#M9060</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T09:42:24Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91433#M9061</link>
      <description>&lt;P&gt;For HA the standard should be Active / Standby.&amp;nbsp;&lt;BR /&gt;If there is something else there is an issue.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670" target="_blank"&gt;@HeikoAnkenbrand&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;did post a list of all statuses &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;BR /&gt;Regards&lt;BR /&gt;Magnus&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 09:48:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91433#M9061</guid>
      <dc:creator>Magnus-Holmberg</dc:creator>
      <dc:date>2020-07-14T09:48:22Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91435#M9062</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9282"&gt;@Magnus-Holmberg&lt;/a&gt;&amp;nbsp;, yup I saw &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;'s posts. Do you have any idea why my VS goes active/active in both cluster members? Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 10:02:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91435#M9062</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T10:02:49Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91461#M9063</link>
      <description>&lt;P&gt;If you are running a bridge mode, it will be shown active-active, as it is supposed to be.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Please share with us your "cphaprob stat" from VS0 and also "vsx stat -v" output, then we can be sure what's going on&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:36:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91461#M9063</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-07-14T12:36:38Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91463#M9064</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/41736"&gt;@CyberBreaker&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;I agree with &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;.&lt;/P&gt;
&lt;P&gt;In which mode do you use the VS?&lt;BR /&gt;- Bride mode a/a&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (I think active/active)&lt;BR /&gt;- Bridge mode a/s&lt;/P&gt;
&lt;P&gt;In the v&lt;SPAN class="Menu_Options"&gt;&lt;SPAN class="Vars_BladesFeaturestp_vsx_vs"&gt;irtual system&lt;/SPAN&gt; general properties&lt;/SPAN&gt; page of the v&lt;SPAN class="Vars_BladesFeaturestp_vsx_vs"&gt;irtual system&lt;/SPAN&gt; object, you can see the selected m&lt;SPAN class="Menu_Options"&gt;&lt;SPAN class="Other_Varstp_bridge_mode"&gt;ode&lt;/SPAN&gt;&lt;/SPAN&gt;!&amp;nbsp;Maybe a screenshot of this as well.&lt;BR /&gt;&lt;BR /&gt;Can you send a screenshot of "cphaprob stat" in "vsenv 0"&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:54:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91463#M9064</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-07-14T12:54:54Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91466#M9065</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;&amp;nbsp;, sorry I forgot to include it in my first statement. Yes, my VSX' are running in bridge mode.&lt;/P&gt;&lt;P&gt;The cphaprob stat in VS0 states that FW1 is Active and FW2 is Standby. The cphaprob in VS1 and VS2 states that both FW1 and FW2 are Active.&lt;/P&gt;&lt;P&gt;So meaning, this scenario is normal?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:54:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91466#M9065</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T12:54:02Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91469#M9066</link>
      <description>&lt;P&gt;yes, it is normal&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:55:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91469#M9066</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-07-14T12:55:20Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91470#M9067</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;, thanks for the confirmation&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:56:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91470#M9067</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T12:56:13Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91471#M9068</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;was two seconds faster.&lt;BR /&gt;Yes, that's normal.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:57:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91471#M9068</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-07-14T12:57:20Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91472#M9069</link>
      <description>&lt;P&gt;Thanks also&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;&amp;nbsp;for the help&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 12:58:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91472#M9069</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-14T12:58:27Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91487#M9070</link>
      <description>&lt;P&gt;lol, there is no competition here &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jul 2020 14:46:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91487#M9070</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-07-14T14:46:10Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91797#M9071</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;just a follow up question. Even if the VS shows active/active, it will still follow the cluster role which is active/standby state, correct? So if I failover, the VS will now pass traffic to the new active VSX gateway, correct?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jul 2020 15:37:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91797#M9071</guid>
      <dc:creator>CyberBreaker</dc:creator>
      <dc:date>2020-07-17T15:37:07Z</dc:date>
    </item>
    <item>
      <title>Re: VSX ClusterXL</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91814#M9072</link>
      <description>&lt;P&gt;The state is per VS. If a VS fails over, then yes, traffic will be handled as you say&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jul 2020 20:27:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VSX-ClusterXL/m-p/91814#M9072</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-07-17T20:27:53Z</dc:date>
    </item>
  </channel>
</rss>

