<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R77.30 to R80.10 upgrade/migration to new Smart-1?   in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32058#M92172</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think that is exactly what I said:&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;&amp;nbsp;(only remember to allow the new IP full access to the Gateway before migration)&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 02 Oct 2018 17:51:37 GMT</pubDate>
    <dc:creator>Maarten_Sjouw</dc:creator>
    <dc:date>2018-10-02T17:51:37Z</dc:date>
    <item>
      <title>R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32051#M92165</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;My current environment is a Smart1 225 (HA) management station with about 8 gateways, all running R77.30. We purchased new Smart1 5050 appliances.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are my options? Do I need to upgrade the Smart1-225 first, then export the DB to the new appliance? I'd prefer not to upgrade the Smart1-225's if at all possible and just cleanly move over to the 5050, and move SIC from each gateway to the new management station.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2018 14:20:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32051#M92165</guid>
      <dc:creator>Saul_Schwartz</dc:creator>
      <dc:date>2018-10-01T14:20:08Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32052#M92166</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;Yes, you can export the database &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;Install the new Smart1 Gen5 machine with the same IP as the original MGMT(smart-1 225)&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;Add a license&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;Follow&amp;nbsp;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R80.20_GA/WebAdminGuides/EN/CP_R80.20_Installation_and_Upgrade_Guide/204420.htm" title="https://sc1.checkpoint.com/documents/R80.20_GA/WebAdminGuides/EN/CP_R80.20_Installation_and_Upgrade_Guide/204420.htm"&gt;Upgrading a Security Management Server, Endpoint Security Management Server, or vSEC Controller&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;You can follow&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R80.20_GA/WebAdminGuides/EN/CP_R80.20_Installation_and_Upgrade_Guide/205919.htm" style="text-decoration: none;" target="_self"&gt;Upgrading a Security Management Server with Advanced Upgrade&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #333333; background-color: #ffffff; border: 0px;"&gt;Shutdown the Smart-1 225&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2018 16:20:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32052#M92166</guid>
      <dc:creator>Ofir_Shikolski</dc:creator>
      <dc:date>2018-10-01T16:20:04Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32053#M92167</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A few days ago I have&amp;nbsp;asked the same question. In my case migration from R77.30 to R80.20:&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/thread/9687"&gt;MDS migration from R77.30 to R80.20&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To sum it up:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Transfer R80.10 ISO to the R77.30 MDS&lt;/LI&gt;&lt;LI&gt;Mount R80.10 ISO&lt;/LI&gt;&lt;LI&gt;Run "&amp;lt;MOUNT_POINT&amp;gt;/linux/p1_install/mds_setup" script&lt;/LI&gt;&lt;LI&gt;Follow on-screen wizard to create report (what are errors or warnings) and/or export itself&lt;/LI&gt;&lt;LI&gt;Transfer export from R77.30 MDS to the R80.10 MDS&lt;/LI&gt;&lt;LI&gt;Run command "$MDSDIR/scripts/mds_import.sh /var/log/exported_mds.&amp;lt;DATE&amp;gt;.tgz" on R80.10 MDS&lt;/LI&gt;&lt;LI&gt;Wait ... Wait ... Wait ...&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The script "mds_setup" will check all created CMAs for possible errors and warning, including Global Policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not sure about licenses. Once migrated, the original lics are also migrated, which means there will be wrong CK key (MAC of Mgmt interface)...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2018 17:18:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32053#M92167</guid>
      <dc:creator>JozkoMrkvicka</dc:creator>
      <dc:date>2018-10-01T17:18:44Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32054#M92168</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When done just replace the license of the 225 with the license of the 5050.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Oct 2018 21:12:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32054#M92168</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2018-10-01T21:12:48Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32055#M92169</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Advanced upgrade is always the best option. Keep older Smart-1 as is, move DB as part of advanced upgrade to the new boxes in the lab. Once they are up, replace the older SMSs. No SIC should be moved, it will work as before, unless you also want to change IPs of the management servers (not really needed)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2018 10:14:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32055#M92169</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2018-10-02T10:14:59Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32056#M92170</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Even if you change the IP's (only remember to allow the new IP full access to the Gateway before migration) you don't need to reset the SIC, it is moved along. Only other problem you have is the licenses, in central license scheme you will need to issue the licenses on the new CMA IP's and apply them after migration.&lt;/P&gt;&lt;P&gt;Done about 160 CMA's in the last year and a half.....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2018 14:56:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32056#M92170</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2018-10-02T14:56:24Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?  </title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32057#M92171</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Not only licenses. You need to adjust your policy BEFORE moving to new IP addresses, as the implied rules only cover pre-existing management objects with their old IP addresses. GW will refuse SIC requests from new MGMT IP addresses, unless you take care of that before migration.&lt;BR /&gt;&lt;BR /&gt;That said, without changing IP addresses on the management side it is much easier&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2018 15:18:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32057#M92171</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2018-10-02T15:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: R77.30 to R80.10 upgrade/migration to new Smart-1?  </title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32058#M92172</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think that is exactly what I said:&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;&amp;nbsp;(only remember to allow the new IP full access to the Gateway before migration)&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Oct 2018 17:51:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R77-30-to-R80-10-upgrade-migration-to-new-Smart-1/m-p/32058#M92172</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2018-10-02T17:51:37Z</dc:date>
    </item>
  </channel>
</rss>

