<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remove interface from VSX systems. in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66487#M9518</link>
    <description>&lt;P&gt;Hi Maarten,&lt;/P&gt;&lt;P&gt;in the screenshot you can see in the background, the IP for bond1.4031 is deleted, but I still can't delete the VLAN interface itself.&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Christian&lt;/P&gt;</description>
    <pubDate>Mon, 04 Nov 2019 10:14:53 GMT</pubDate>
    <dc:creator>Christian_Koehl</dc:creator>
    <dc:date>2019-11-04T10:14:53Z</dc:date>
    <item>
      <title>Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65004#M9512</link>
      <description>&lt;P&gt;Dear CheckMates,&lt;/P&gt;&lt;P&gt;I have running a VSX Cluster with VSLS with some bond interfaces in version R80.20. A couple of VLANs were added to bond1 and in each of my VS systems one of this bond1 VLAN interfaces is used.&lt;/P&gt;&lt;P&gt;Now, the bond1 needs to be remove.&lt;BR /&gt;Therefore, I have deleted the bond1 VLAN interface in every VS and installed the policy within that VS.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A "show configuration" still shows the configuration for all the bond1 VLAN interfaces.&lt;BR /&gt;"vsx_utill show_interfaces" did't show them.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;How to remove the configuration for the bond1 interface completly?&lt;/P&gt;&lt;P&gt;Best regards,&lt;BR /&gt;Christian&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2019 13:24:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65004#M9512</guid>
      <dc:creator>Christian_Koehl</dc:creator>
      <dc:date>2019-10-15T13:24:03Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65005#M9513</link>
      <description>Did you push the policy after you removed the VLAN interfaces? It really sounds like you did not.</description>
      <pubDate>Tue, 15 Oct 2019 13:42:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65005#M9513</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-15T13:42:18Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65012#M9514</link>
      <description>&lt;P&gt;Did you select to remove Bond1 from Physical Interfaces on the actual VSX Cluster Object and then install the Policy to the VSX Cluster itself.&lt;/P&gt;&lt;P&gt;I believe that afterwards will have to SSH to the box&lt;/P&gt;&lt;P&gt;set vsx off&lt;/P&gt;&lt;P&gt;delete bonding group bond1&lt;/P&gt;&lt;P&gt;set vsx on&lt;/P&gt;&lt;P&gt;Make Sure install policies afterwards&lt;/P&gt;&lt;P&gt;Should remove the bond1 from the VSX Cluster and then remove the bond from the VSX box.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2019 14:25:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65012#M9514</guid>
      <dc:creator>mdjmcnally</dc:creator>
      <dc:date>2019-10-15T14:25:33Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65019#M9515</link>
      <description>&lt;P&gt;I have installed the policy. It tooks me some time, as I have done this in about 9 different Domains / for 9 different gateways....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This steps, as requested, I will do the next time, when I am at the customer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; set vsx off&lt;BR /&gt;&amp;nbsp;&amp;nbsp; delete bonding group bond1&lt;BR /&gt;&amp;nbsp;&amp;nbsp; set vsx on&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks to all for your help,&lt;/P&gt;&lt;P&gt;Christian&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2019 17:36:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/65019#M9515</guid>
      <dc:creator>Christian_Koehl</dc:creator>
      <dc:date>2019-10-15T17:36:42Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66482#M9516</link>
      <description>&lt;P&gt;Hi folks,&lt;/P&gt;&lt;P&gt;Sorry for not updating this post earlier.&lt;/P&gt;&lt;P&gt;I run the command "set vsx off" and tried to delete the bond, but it still fails with the error-message "This interface is used by the Dynamic Routing Protocol: Static Routes. Cannot delete the selected interface."&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="interface.jpg" style="width: 645px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2943i8B2CAE91969647D2/image-dimensions/645x279?v=v2" width="645" height="279" role="button" title="interface.jpg" alt="interface.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Christian&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Mon, 04 Nov 2019 09:14:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66482#M9516</guid>
      <dc:creator>Christian_Koehl</dc:creator>
      <dc:date>2019-11-04T09:14:50Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66485#M9517</link>
      <description>you need to remove any IP if still there on the interface.</description>
      <pubDate>Mon, 04 Nov 2019 09:43:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66485#M9517</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-11-04T09:43:05Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66487#M9518</link>
      <description>&lt;P&gt;Hi Maarten,&lt;/P&gt;&lt;P&gt;in the screenshot you can see in the background, the IP for bond1.4031 is deleted, but I still can't delete the VLAN interface itself.&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Christian&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 10:14:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66487#M9518</guid>
      <dc:creator>Christian_Koehl</dc:creator>
      <dc:date>2019-11-04T10:14:53Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66495#M9519</link>
      <description>&lt;P&gt;Check your config very carefully.&lt;/P&gt;
&lt;P&gt;I would use at least:&lt;/P&gt;
&lt;LI-CODE lang="c"&gt;clish -c "show configuration" | grep bond&lt;/LI-CODE&gt;
&lt;P&gt;It might show you some leftovers you need to take care of.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 11:34:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66495#M9519</guid>
      <dc:creator>Hugo_vd_Kooij</dc:creator>
      <dc:date>2019-11-04T11:34:32Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66497#M9520</link>
      <description>&lt;P&gt;How are you trying to delete the vlan interface?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I ask as the WebUI which I am guessing is being run AFTER running the set vsx off as VSX doesn't have the WebUI enabled is showing interfaces with IP from the VSX Network.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You won't be able to delete the bond1 until all of those sub-interfaces are removed.&lt;/P&gt;&lt;P&gt;I would expect that they are deleted in the SmartConsole for the VS that they are created in and then after the topology updates then says to install the security policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You said that did this but is contradicted by seeing the vlan interfaces exist in the WebUI which to access would need to have the VSX turned off.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 11:53:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66497#M9520</guid>
      <dc:creator>mdjmcnally</dc:creator>
      <dc:date>2019-11-04T11:53:29Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66498#M9521</link>
      <description>Are you trying to remove the BOND interface or only a VLAN?&lt;BR /&gt;You will not be able to see all information from VSX in the GUI.&lt;BR /&gt;As Hugo says get the info from the Show configuration to see what is going on.</description>
      <pubDate>Mon, 04 Nov 2019 12:05:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66498#M9521</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-11-04T12:05:10Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66530#M9522</link>
      <description>&lt;P&gt;Did you also remove the bond interface from the&amp;nbsp;&lt;STRONG&gt;Physical Interfaces&lt;/STRONG&gt;&amp;nbsp;tab of the VSX Cluster Properties? If there are no VLANs left on this bond group, you don't want it listed here.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="physical_interface.jpg" style="width: 451px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2945i459F6F0633D091DD/image-size/large?v=v2&amp;amp;px=999" role="button" title="physical_interface.jpg" alt="physical_interface.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 20:24:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66530#M9522</guid>
      <dc:creator>Daniel_Taney</dc:creator>
      <dc:date>2019-11-04T20:24:01Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66560#M9523</link>
      <description>On second thoughts The only way to remove a VLAN interface on a VSX system is by deleting that interface from the VS it is used in.&lt;BR /&gt;Only when you have removed all VLAN's from the Bond interface, will you be able to remove the interface itself.</description>
      <pubDate>Tue, 05 Nov 2019 07:22:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/66560#M9523</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-11-05T07:22:47Z</dc:date>
    </item>
    <item>
      <title>Re: Remove interface from VSX systems.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/120227#M17013</link>
      <description>&lt;P&gt;I get the same error when deleting the vlan by webui and cli,&amp;nbsp;did they manage to fix it?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Jun 2021 20:17:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Remove-interface-from-VSX-systems/m-p/120227#M17013</guid>
      <dc:creator>Luis_Romero</dc:creator>
      <dc:date>2021-06-02T20:17:34Z</dc:date>
    </item>
  </channel>
</rss>

