<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Smooth migration of Firewall Management R77.30 to R80 in API / CLI Discussion</title>
    <link>https://community.checkpoint.com/t5/API-CLI-Discussion/Smooth-migration-of-Firewall-Management-R77-30-to-R80/m-p/2556#M143</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Typically you'd use the cp_merge tool to do this, but cp_merge does not appear to be supported in R80 from my experience.&amp;nbsp; Just bringing in the objects/policies during an upgrade is sometimes desirable after many many past upgrades on the same SMS, especially when you'd like to retain the default global settings for the target version and avoid bringing any possible old cruft forward.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd guess you could do a migrate export on your current SMS using the R80 migration tools, import the config into an intermediate Virtual Machine running R80, extract just the objects/policies from the R80 VM's mgmt_cli in command/text format, then import those commands into the target SMS's config via the mgmt_cli.&amp;nbsp; I don't think there is any kind of existing tool to do this, but something like this sure would be handy...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt; My book "Max Power: Check Point Firewall Performance Optimization" &lt;/P&gt;&lt;P&gt; now available via &lt;A href="http://maxpowerfirewalls.com/" target="_blank"&gt;http://maxpowerfirewalls.com&lt;/A&gt;.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 11 Sep 2016 13:16:05 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2016-09-11T13:16:05Z</dc:date>
    <item>
      <title>Smooth migration of Firewall Management R77.30 to R80</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/Smooth-migration-of-Firewall-Management-R77-30-to-R80/m-p/2555#M142</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="text-align: justify;"&gt;Hello.&lt;/P&gt;&lt;P style="text-align: justify;"&gt;We have a productive Firewall Manager with R77.30 and manage 8 FW Cluster.&lt;/P&gt;&lt;P style="text-align: justify;"&gt;&lt;/P&gt;&lt;P style="text-align: justify;"&gt;We would like to migrate one cluster after another cluster to our new R80 Firewall Manager.&lt;/P&gt;&lt;P style="text-align: justify;"&gt;&lt;/P&gt;&lt;P style="text-align: justify;"&gt;- Is it possible to export (R77.30) / import (R80) only the Network Objects and Services&lt;/P&gt;&lt;P style="text-align: justify;"&gt;- Is it possible to export (R77.30) / import (R80) individual Policies.&lt;/P&gt;&lt;P style="text-align: justify;"&gt;&lt;/P&gt;&lt;P style="text-align: justify;"&gt;Thank you in advance for any advice&lt;/P&gt;&lt;P style="text-align: justify;"&gt;&lt;/P&gt;&lt;P style="text-align: justify;"&gt;Best regards&lt;/P&gt;&lt;P style="text-align: justify;"&gt;Carlos&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2016 13:10:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/Smooth-migration-of-Firewall-Management-R77-30-to-R80/m-p/2555#M142</guid>
      <dc:creator />
      <dc:date>2016-07-22T13:10:53Z</dc:date>
    </item>
    <item>
      <title>Re: Smooth migration of Firewall Management R77.30 to R80</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/Smooth-migration-of-Firewall-Management-R77-30-to-R80/m-p/2556#M143</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Typically you'd use the cp_merge tool to do this, but cp_merge does not appear to be supported in R80 from my experience.&amp;nbsp; Just bringing in the objects/policies during an upgrade is sometimes desirable after many many past upgrades on the same SMS, especially when you'd like to retain the default global settings for the target version and avoid bringing any possible old cruft forward.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd guess you could do a migrate export on your current SMS using the R80 migration tools, import the config into an intermediate Virtual Machine running R80, extract just the objects/policies from the R80 VM's mgmt_cli in command/text format, then import those commands into the target SMS's config via the mgmt_cli.&amp;nbsp; I don't think there is any kind of existing tool to do this, but something like this sure would be handy...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt; My book "Max Power: Check Point Firewall Performance Optimization" &lt;/P&gt;&lt;P&gt; now available via &lt;A href="http://maxpowerfirewalls.com/" target="_blank"&gt;http://maxpowerfirewalls.com&lt;/A&gt;.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 11 Sep 2016 13:16:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/Smooth-migration-of-Firewall-Management-R77-30-to-R80/m-p/2556#M143</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2016-09-11T13:16:05Z</dc:date>
    </item>
  </channel>
</rss>

