<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.10 MDM import in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47433#M96337</link>
    <description>&lt;P&gt;Currently the only tools available to migrate R80.10 are the MDS Migrate tools, you cannot export a single CMA yet.&lt;/P&gt;
&lt;P&gt;This is still work in progress.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 18 Mar 2019 12:03:54 GMT</pubDate>
    <dc:creator>Maarten_Sjouw</dc:creator>
    <dc:date>2019-03-18T12:03:54Z</dc:date>
    <item>
      <title>R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13903#M96326</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;DIV&gt;If I'm running a R80.10 MDM, and I am onboarding a new managed customer into this environment from their already existing managment server, it seems the import process that used to work for R77.30 MDM is broken.&lt;/DIV&gt;&lt;DIV&gt;&lt;BR /&gt;We used to be able to take a migrate export from the stand-alone manager and use the CMA import tools to bring this into a new domain within the MDM.&lt;/DIV&gt;&lt;DIV&gt;&lt;BR /&gt;Similarly if the customer used to be on another providers MDM, they could get the migrate export from that MDM and we could import into a new domain.&lt;/DIV&gt;&lt;DIV&gt;&lt;BR /&gt;Reading through the community, I see a few options about API usage, but this would require re-creation of objects which the API cannot support (gateway objects - and therefore SIC etc), so this is certainly more intense than I would like, and is nowhere near as straightforward as it was?&lt;/DIV&gt;&lt;DIV&gt;&lt;BR /&gt;Is there anything I'm missing here?&lt;/DIV&gt;&lt;DIV&gt;What's the best practise way to onboard an existing R80.10 customer into an R80.10 MDM?&lt;/DIV&gt;&lt;DIV&gt;&lt;BR /&gt;Thanks&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Apr 2018 15:08:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13903#M96326</guid>
      <dc:creator>Michael_Goodwin</dc:creator>
      <dc:date>2018-04-10T15:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13904#M96327</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;R80&amp;nbsp;Security Management is a platform change -&amp;nbsp;completely different&amp;nbsp;backend design and a different frontend technology. Many of the R7x scripts are replaced with R8x alternatives. We hope that we can clarify solutions to all our customers' product questions with this community.&lt;/P&gt;&lt;P&gt;For migrating between&amp;nbsp;a SmartCenter and a Multi-Domain we don't have an official tool at the moment. We are working on one and then it will be published. I could offer this procedure, for some of the objects:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Upgrade an R7x to R8x SmartCenter using either CPUSE or Advanced Upgrade&lt;/P&gt;&lt;P&gt;2. Export policies and their members using the ExportImportPolicy tool (you can create an export&amp;nbsp;per policy)&amp;nbsp;&lt;A href="https://community.checkpoint.com/docs/DOC-1938"&gt;Python tool for exporting/importing a policy package or parts of it&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3. Create a new R8x Multi-Domain machine&lt;/P&gt;&lt;P&gt;4. Import the policies from step 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This tool is a Community Tool, not an official Check Point project, and the community generally updates and fixes it based on requests.&lt;/P&gt;&lt;P&gt;This tool currently support security policies and their members, but&amp;nbsp;some of the object types are not fully supported for export and import, like Gateway settings. &lt;SPAN style="color: #24292e; background-color: #ffffff;"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;In such a case, an appropriate dummy object will be exported instead, and a message will be logged into the log files to notify you of this. In the Check Point SmartConsole you can easily replace each of these objects by searching "export_error" in the search field, see where each object is used, create the necessary object manually, then replace it.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Apr 2018 04:58:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13904#M96327</guid>
      <dc:creator>Tomer_Sole</dc:creator>
      <dc:date>2018-04-11T04:58:52Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13905#M96328</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;DIV&gt;&lt;P&gt;Hi Tomer,&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the reply!&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is this functionality going to be released as a stand-alone tool or integrated in a future release (80.20 etc?)&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is quite a limiting factor when a customer is considering moving into a "Check Point as a Service" model which MDM is great for, but it seems there is no way for them to extract themselves without requiring quite a bit of manual work and likely downtime.&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And really the only alternative is to continue to use 77.30, but then we don't get any of the nice new features that R80 brings!&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'll look again at the Python tool, which will certainly help for object and policy re-creation.&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Apr 2018 07:54:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13905#M96328</guid>
      <dc:creator>Michael_Goodwin</dc:creator>
      <dc:date>2018-04-11T07:54:59Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13906#M96329</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Plan is shorter release cycles.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Apr 2018 08:16:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13906#M96329</guid>
      <dc:creator>Tomer_Sole</dc:creator>
      <dc:date>2018-04-11T08:16:13Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13907#M96330</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If the customer uses R77.30 MDM and you just want to&amp;nbsp;gradually migrate his domains to an R80.10 MDM then this is supported and recommended. See&amp;nbsp;&lt;A href="https://community.checkpoint.com/thread/5221-is-there-an-easy-way-to-upgrade-large-scale-environments-to-r8010" target="_blank"&gt;https://community.checkpoint.com/thread/5221-is-there-an-easy-way-to-upgrade-large-scale-environments-to-r8010&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jun 2019 09:04:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13907#M96330</guid>
      <dc:creator>Tomer_Sole</dc:creator>
      <dc:date>2019-06-21T09:04:15Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13908#M96331</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In this case, we are talking R80.10 into R80.10.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, you should really caveat the recommendation, as if you did have a R77.30 MDM environment and migrated them gradually to a new R80.10 environment, they are then "locked in" to that R80.10 environment with no easy way of getting out, until this new tool is developed and released.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Apr 2018 08:30:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13908#M96331</guid>
      <dc:creator>Michael_Goodwin</dc:creator>
      <dc:date>2018-04-11T08:30:30Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13909#M96332</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/6703"&gt;Tomer Sole&lt;/A&gt;‌, maybe I don't understand something here,&amp;nbsp;but&amp;nbsp;cannot we use migrate export from R80.10 tools to migrate a single management server to&amp;nbsp;multi-domain server? Does it work only with MDS and CMA now, as described in&amp;nbsp;&lt;A href="https://community.checkpoint.com/thread/5221"&gt;is there an easy way to upgrade large-scale environments to R80.10&lt;/A&gt;?&amp;nbsp;I wasn't aware of that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/57442"&gt;Michael Goodwin&lt;/A&gt;‌, you can have a temp virtual machine for migrating customers. For example, create a R77.30 MDM on a virtual machine, import there database from customers server as a CMA, and then do cma_migrate to R80.10 production server. Or you can use pre-upgrade verifier on customer's policy on R77.30 virtual machine, upgrade it to R80.10, and then migrate to production server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Apr 2018 20:14:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13909#M96332</guid>
      <dc:creator>AlekseiShelepov</dc:creator>
      <dc:date>2018-04-11T20:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13910#M96333</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/45132"&gt;https://community.checkpoint.com/people/aleks65d64154-3014-4796-9c66-6b9f4aeee8e8&lt;/A&gt;‌, sorry, I think I may have confused matters by mentioning R77.30!&lt;/P&gt;&lt;P&gt;I have two scenarios, a customer with a R80.10 standalone which I'm trying to import into a new R80.10 MDM domain, and also a customer who is in a R80.10 MDM already with another provider, and they want to move from their 80.10 MDM to our 80.10 MDM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you think this is something that is possible using a temp VM?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Apr 2018 08:49:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13910#M96333</guid>
      <dc:creator>Michael_Goodwin</dc:creator>
      <dc:date>2018-04-13T08:49:40Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13911#M96334</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Aleksei,&lt;/P&gt;&lt;P&gt;Were you able to&amp;nbsp;get confirmation if&amp;nbsp;it is possible and supported to upgrade a R77.30 single management server to a multi-domain server running R80.10 using migrate export/import?&lt;/P&gt;&lt;P&gt;Thanks for your help!&lt;/P&gt;&lt;P&gt;Harald&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Jun 2018 18:02:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/13911#M96334</guid>
      <dc:creator>net-harry</dc:creator>
      <dc:date>2018-06-27T18:02:13Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47329#M96335</link>
      <description>&lt;P&gt;I am thinking of something along these lines: &amp;nbsp;We have a R80.10 MDM and want to move to R80.20. &amp;nbsp;But to take advantage of the new files systems, I was told to "export" my R80.10 MDM and create a new R80.20 MDM. &amp;nbsp;I would then like to import my R8010 MDM into it. &amp;nbsp;&lt;/P&gt;&lt;P&gt;I am concerned that there is limited export /import tools when there is a new release every 6 months.&lt;/P&gt;&lt;P&gt;I also was going to import one cma to a new partition to move the policies - I hope I am missing something.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 02:34:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47329#M96335</guid>
      <dc:creator>John_Fulater</dc:creator>
      <dc:date>2019-03-18T02:34:13Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47332#M96336</link>
      <description>You are correct that you need to do a fresh install in order to get the benefits of the xfs filesystem. Sadly, that's unavoidable in this particular instance.&lt;BR /&gt;&lt;BR /&gt;You should be able to export/import a CMA at a time, which is no different than how you can migrate from R77.x to R80.x.</description>
      <pubDate>Mon, 18 Mar 2019 03:01:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47332#M96336</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-18T03:01:32Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47433#M96337</link>
      <description>&lt;P&gt;Currently the only tools available to migrate R80.10 are the MDS Migrate tools, you cannot export a single CMA yet.&lt;/P&gt;
&lt;P&gt;This is still work in progress.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 12:03:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/47433#M96337</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-03-18T12:03:54Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/60100#M96338</link>
      <description>Hello, any advance in this topic?&lt;BR /&gt;&lt;BR /&gt;We're facing multiple single CMA migrations and we're using the above Python script but it would be much easier with the old "cma_migrate".&lt;BR /&gt;&lt;BR /&gt;I guess still there is no workaround to sk122700 right?&lt;BR /&gt;&lt;BR /&gt;Regards,</description>
      <pubDate>Mon, 12 Aug 2019 10:08:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/60100#M96338</guid>
      <dc:creator>Enrique_Gonzale</dc:creator>
      <dc:date>2019-08-12T10:08:51Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 MDM import</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/60108#M96339</link>
      <description>&lt;P&gt;We are bringing back the CMA migration capabilities in R80.40.&lt;/P&gt;
&lt;P&gt;You will be able to backup, restore a single domain, migrate it between MDS's and also move from SMS to MDS.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Would you like to join our R80.40 EA to receive this capability early (and other additional great features)?&lt;/P&gt;</description>
      <pubDate>Mon, 12 Aug 2019 12:20:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-MDM-import/m-p/60108#M96339</guid>
      <dc:creator>Tomer_Noy</dc:creator>
      <dc:date>2019-08-12T12:20:38Z</dc:date>
    </item>
  </channel>
</rss>

