<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Active Active Cloudguard AWS in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129811#M23646</link>
    <description>&lt;P&gt;They are active/active in the sense they are both available to pass traffic.&lt;BR /&gt;However, as mentioned in the other thread, the routing is configured so it's more like active/passive.&lt;BR /&gt;I presume it's the script we run to monitor state that is also setting the routing so only one of the gateways is receiving the traffic.&lt;/P&gt;</description>
    <pubDate>Mon, 20 Sep 2021 20:49:55 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-09-20T20:49:55Z</dc:date>
    <item>
      <title>Active Active Cloudguard AWS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129659#M23626</link>
      <description>&lt;P&gt;I have a geo cluster configured on AWS in Active / Active mode.. however at a time in logs only 1 FW passes traffic.. how is this an Active/Active cluster if at a time only one Cluster member caters to all the traffic ? by design 1 member is in 1 availability zone and the other is in a different availability zone..still traffic initiated from both zones falls on one Firewall ..only when a cluster down command is issued traffic gets transferred to secondary member. Shudnt both members accept traffic from its respective zones ?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Sep 2021 15:00:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129659#M23626</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2021-09-17T15:00:10Z</dc:date>
    </item>
    <item>
      <title>Re: Active Active Cloudguard AWS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129688#M23630</link>
      <description>&lt;P&gt;Technically both gateways are active and available in an active/active config.&lt;BR /&gt;What determines which gateway is handling the traffic? Routing.&lt;BR /&gt;&lt;BR /&gt;What precise guide(s) did you follow to set this up?&lt;/P&gt;</description>
      <pubDate>Sun, 19 Sep 2021 00:08:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129688#M23630</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-09-19T00:08:05Z</dc:date>
    </item>
    <item>
      <title>Re: Active Active Cloudguard AWS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129750#M23638</link>
      <description>&lt;P&gt;i followed the following&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_ClusterXL_AdminGuide/Topics-CXLG/Active-Active-Mode.htm#:~:text=The%20IP%20addresses%20of%20the,not%20balanced%20between%20the%20members." target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_ClusterXL_AdminGuide/Topics-CXLG/Active-Active-Mode.htm#:~:text=The%20IP%20addresses%20of%20the,not%20balanced%20between%20the%20members.&lt;/A&gt;&lt;/P&gt;&lt;P&gt;i used cloudformation cross availability zone template to deploy this.. there are 2 external and 2 private subnets for this cluster..i looked into the routing and i can see..under vpc routing of both private subnets there is a default route pointing towards private interface of Firewall 1..so this is why all traffic goes to FW1..these routes in both private subnets were created automatically ..even if i try to modify subnet 2 routing ..it reverts back to point to FW1 automatically..&lt;/P&gt;&lt;P&gt;just wondering..does active-active in this geo cluster means FW is active for both zones ? hence active active&amp;nbsp; ?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 07:52:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129750#M23638</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2021-09-20T07:52:55Z</dc:date>
    </item>
    <item>
      <title>Re: Active Active Cloudguard AWS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129811#M23646</link>
      <description>&lt;P&gt;They are active/active in the sense they are both available to pass traffic.&lt;BR /&gt;However, as mentioned in the other thread, the routing is configured so it's more like active/passive.&lt;BR /&gt;I presume it's the script we run to monitor state that is also setting the routing so only one of the gateways is receiving the traffic.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Sep 2021 20:49:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129811#M23646</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-09-20T20:49:55Z</dc:date>
    </item>
    <item>
      <title>Re: Active Active Cloudguard AWS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129825#M23647</link>
      <description>&lt;P&gt;i guess this is the most apt explanation as private subnet default routing is auto defined .. thanks for your help&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 08:49:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Active-Active-Cloudguard-AWS/m-p/129825#M23647</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2021-09-21T08:49:33Z</dc:date>
    </item>
  </channel>
</rss>

