<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PBR Bug - Cannot delete it in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86115#M17282</link>
    <description>&lt;P&gt;Hi guys,&lt;/P&gt;&lt;P&gt;Just to chime in, ran into this issue today. Tried deleting the PBR rules, then cpstop;cpstart, and ip rule list still showed the wrong rules. A little bit expected, as restarting the cp daemons shouldn't affect the inner working of the system in this case.&lt;/P&gt;&lt;P&gt;Was tempted to remove it manually via the ip command, but since that's generally not advisable and as this had a maintenance window, I rebooted the node and everything is fine now.&lt;/P&gt;&lt;P&gt;This was under R80.20 take 141&lt;/P&gt;</description>
    <pubDate>Sat, 23 May 2020 11:27:56 GMT</pubDate>
    <dc:creator>Tiago_Cerqueira</dc:creator>
    <dc:date>2020-05-23T11:27:56Z</dc:date>
    <item>
      <title>PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/63788#M12946</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am having an issue with a Security Gateway (R80.10, build number 1) to delete a Policy Rule. I have tried to delete is from GUI and CLI but it is still listed in Expert Mode:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@GW1:0]# ip rule list&lt;BR /&gt;19: from 192.168.50.0/29 lookup 9 hit 90788&amp;nbsp; &amp;nbsp;&amp;lt;----&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Weirdest thing is that if I add a new Policy Rule with ID 19, the old one Policy Rule which should be deleted still appear there:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Expert@GW1:0]# ip rule list&lt;BR /&gt;19: from 192.168.50.0/29 lookup 9 hit 90788&lt;BR /&gt;19: from 192.168.80.0/25 lookup 9&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Can you please tell me if there is a way to delete this Policy Rule from the Expert mode directly (this Policy Rule is aleready deleted from GUI/CLI)?.&amp;nbsp; Thank you very much.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best Regards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2019 10:09:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/63788#M12946</guid>
      <dc:creator>Edu_Amores</dc:creator>
      <dc:date>2019-09-27T10:09:03Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/63875#M12962</link>
      <description>If the clish command isn't properly removing the route, it's likely a bug and you should probably open a TAC case.</description>
      <pubDate>Sat, 28 Sep 2019 02:33:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/63875#M12962</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-09-28T02:33:56Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86115#M17282</link>
      <description>&lt;P&gt;Hi guys,&lt;/P&gt;&lt;P&gt;Just to chime in, ran into this issue today. Tried deleting the PBR rules, then cpstop;cpstart, and ip rule list still showed the wrong rules. A little bit expected, as restarting the cp daemons shouldn't affect the inner working of the system in this case.&lt;/P&gt;&lt;P&gt;Was tempted to remove it manually via the ip command, but since that's generally not advisable and as this had a maintenance window, I rebooted the node and everything is fine now.&lt;/P&gt;&lt;P&gt;This was under R80.20 take 141&lt;/P&gt;</description>
      <pubDate>Sat, 23 May 2020 11:27:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86115#M17282</guid>
      <dc:creator>Tiago_Cerqueira</dc:creator>
      <dc:date>2020-05-23T11:27:56Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86171#M17295</link>
      <description>&lt;P&gt;There are multiple parts to the problem. Leaving PBR rule in the kernel happens whenever user tried to delete it and it is deleted from the configuration database as well as from routed.conf &amp;nbsp;but&amp;nbsp; the back-end process 'routed' didn’t get a chance to delete it from the kernel. Mostly routed is crashed or something went wrong with the routed.conf file.&lt;/P&gt;
&lt;P&gt;Once the system is in the weird state, here is the suggested approach:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Check the config system with ‘dbget&amp;nbsp; –arv &amp;nbsp;routed:instance:default:pbrrules”, if it doesn’t exists then&lt;/LI&gt;
&lt;LI&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Check with “ip rule list”, if it exists only way to remove is using ‘ip&amp;nbsp;&amp;nbsp; rule delete’ command or&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Reboot the system to reset the PBR rules in the kernel.&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We need to find out the root cause of routed crash and this is only a side effect.&amp;nbsp; This can happen with any other feature also.&lt;/P&gt;
&lt;P&gt;Since you are able to add PBR rule later, mostly something to do with some other configuration that you have done along with PBR configuration.&lt;/P&gt;
&lt;P&gt;If the problem still persists, you can upgrade to new JHF or release. You can also open a ticket with TAC for further help.&lt;/P&gt;
&lt;P&gt;-Raghu&lt;/P&gt;</description>
      <pubDate>Sun, 24 May 2020 23:06:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86171#M17295</guid>
      <dc:creator>rdevarak</dc:creator>
      <dc:date>2020-05-24T23:06:15Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86198#M17298</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I actually viewed the state of routed, via the cpwd_admin list and show cluster-state and it seemed that everything was fine. Additionally, there were no core dumps under the /var/log/dumps&lt;/P&gt;</description>
      <pubDate>Mon, 25 May 2020 07:52:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86198#M17298</guid>
      <dc:creator>Tiago_Cerqueira</dc:creator>
      <dc:date>2020-05-25T07:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86409#M17333</link>
      <description>&lt;P&gt;In some scenarios, routed just restarts without dumping core. You will get to know from syslog messages. You can see the process id also changes. You can open a ticket with TAC, still if you need help with it.&lt;/P&gt;</description>
      <pubDate>Tue, 26 May 2020 21:09:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/86409#M17333</guid>
      <dc:creator>rdevarak</dc:creator>
      <dc:date>2020-05-26T21:09:57Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Bug - Cannot delete it</title>
      <link>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/231384#M38674</link>
      <description>&lt;P&gt;I managed to solve my problem by deleting it from the rule list with the command below:&lt;/P&gt;&lt;P&gt;ip rule del from &amp;lt;ip&amp;gt; lookup &amp;lt;id&amp;gt;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2024 14:56:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/PBR-Bug-Cannot-delete-it/m-p/231384#M38674</guid>
      <dc:creator>AllenSaldanha</dc:creator>
      <dc:date>2024-10-31T14:56:47Z</dc:date>
    </item>
  </channel>
</rss>

