<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Disabling physical interfaces in VSX in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70594#M9583</link>
    <description>&lt;P&gt;Follow up question to your statement - does that mean if I run "set vsx off" in clish, I can do some things through the WebUI?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 16 Dec 2019 17:07:19 GMT</pubDate>
    <dc:creator>Jake_Williams</dc:creator>
    <dc:date>2019-12-16T17:07:19Z</dc:date>
    <item>
      <title>Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70513#M9580</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have some physical interfaces on a VSX cluster that are no longer used. How do I disable them?&lt;/P&gt;&lt;P&gt;I noticed in sk92311 that "set interface INTERFACE_NAME state" is blocked in CLI. The sk says "Some settings on Security Gateway / Cluster in VSX mode should be configured only via the SmartDashboard (e.g., adding VLAN interfaces)". However, I am not able to find where to disable physical interfaces in the SmartConsole.&lt;/P&gt;&lt;P&gt;Thanks for your help!&lt;/P&gt;&lt;P&gt;Harry&lt;/P&gt;</description>
      <pubDate>Sun, 15 Dec 2019 17:52:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70513#M9580</guid>
      <dc:creator>net-harry</dc:creator>
      <dc:date>2019-12-15T17:52:30Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70514#M9581</link>
      <description>To issue any interface command once you have changed the box to VSX is only possible when you turn VSX "off" for a few moments to allow you to issue those commands.&lt;BR /&gt;So this is the way:&lt;BR /&gt;   set vsx off&lt;BR /&gt;   set interface eth3 state off&lt;BR /&gt;   set interface eth4 state off&lt;BR /&gt;   set vsx on&lt;BR /&gt;Done.&lt;BR /&gt;Actually all set vsx on does, it disables a number of commands and it show a page that the WebUI cannot be used when you try to.</description>
      <pubDate>Sun, 15 Dec 2019 18:52:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70514#M9581</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-12-15T18:52:19Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70515#M9582</link>
      <description>Thanks Maarten,&lt;BR /&gt;That worked very well!&lt;BR /&gt;Harry</description>
      <pubDate>Sun, 15 Dec 2019 19:00:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70515#M9582</guid>
      <dc:creator>net-harry</dc:creator>
      <dc:date>2019-12-15T19:00:18Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70594#M9583</link>
      <description>&lt;P&gt;Follow up question to your statement - does that mean if I run "set vsx off" in clish, I can do some things through the WebUI?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2019 17:07:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70594#M9583</guid>
      <dc:creator>Jake_Williams</dc:creator>
      <dc:date>2019-12-16T17:07:19Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70596#M9584</link>
      <description>I would not recommend it but yes that would be possible.</description>
      <pubDate>Mon, 16 Dec 2019 17:21:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/70596#M9584</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-12-16T17:21:39Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/80741#M9585</link>
      <description>&lt;P&gt;Hi guys,&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/17364"&gt;@Maarten_Sjouw&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/20937"&gt;@net-harry&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/19527"&gt;@Jake_Williams&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no other way to set a VSX interface off? Is there any official reference by CP?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Furthermore I have an issue on VSX where an interface that is not a cluster interface went down and so the Interface Active Check says "problem" .&amp;nbsp;&lt;/P&gt;&lt;P&gt;The cluster member is in down state due to this interface that is set as "state on" at GaiaOS level.&lt;/P&gt;&lt;P&gt;I just want to disable it without issuing set vsx off.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What set vsx off will cause?&lt;/P&gt;&lt;P&gt;Also why the Interface Active Check is checking an interface that is not part of cluster monitored interfaces?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea?&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;D!Z&lt;/P&gt;</description>
      <pubDate>Fri, 03 Apr 2020 13:16:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/80741#M9585</guid>
      <dc:creator>TheRealDiZ</dc:creator>
      <dc:date>2020-04-03T13:16:16Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling physical interfaces in VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/80788#M9586</link>
      <description>All that set vsx ON does:&lt;BR /&gt;it disables you from making changes to the interfaces&lt;BR /&gt;it disables the WebUI&lt;BR /&gt;So all set VSX off does is re-enable these two features. &lt;BR /&gt;&lt;BR /&gt;That said, you should never leave vsx off on any VSX system when you made the required changes.</description>
      <pubDate>Fri, 03 Apr 2020 20:54:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-physical-interfaces-in-VSX/m-p/80788#M9586</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2020-04-03T20:54:04Z</dc:date>
    </item>
  </channel>
</rss>

