<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Standby cluster member not logging to SMS in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183122#M30540</link>
    <description>&lt;P&gt;Also, another thing I forgot...make sure content of below is same on both gateways.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;cat $FWDIR/conf/masters&lt;/P&gt;</description>
    <pubDate>Fri, 02 Jun 2023 21:32:09 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-06-02T21:32:09Z</dc:date>
    <item>
      <title>Standby cluster member not logging to SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183113#M30538</link>
      <description>&lt;P&gt;I have a active / standby 2 gateway ClusterXL cluster running 80.40 with JHA take 196.&lt;/P&gt;
&lt;P&gt;Whichever gateway is the standby member logs locally as it's unable to connect to the SMS.&lt;/P&gt;
&lt;P&gt;A "tcpdump -nni any port 257" taken on the standby gateway itself shows logs being sent from the standby cluster member with a source IP of the cluster VIP and all of the packets are TCP SYN's as no connection to the SMS is actually made.&lt;/P&gt;
&lt;P&gt;The logs are being sent on the interface closest to the SMS and not the sync interface =&amp;gt; the active member like I thought it was supposed to work in 80.40.&lt;/P&gt;
&lt;P&gt;If I do a admin failover the previously standby member that is now active starts logging to the SMS again and the new standby member stops.&lt;/P&gt;
&lt;P&gt;A&amp;nbsp;"tcpdump -nni any port 257" taken on the new standby member shows it basically logging to itself:&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;15:27:18.168847 IP 127.0.0.1.59453 &amp;gt; 127.0.0.1.257: Flags [P.], seq 84:88, ack 65, win 43, options [nop,nop,TS val 3386217330 ecr 3386217330], length 4&lt;BR /&gt;15:27:18.168906 IP 127.0.0.1.257 &amp;gt; 127.0.0.1.59453: Flags [P.], seq 65:69, ack 88, win 43, options [nop,nop,TS val 3386217330 ecr 3386217330], length 4&lt;BR /&gt;15:27:18.168939 IP 127.0.0.1.59453 &amp;gt; 127.0.0.1.257: Flags [P.], seq 88:92, ack 69, win 43, options [nop,nop,TS val 3386217330 ecr 3386217330], length 4&lt;BR /&gt;15:27:18.208444 IP 127.0.0.1.257 &amp;gt; 127.0.0.1.59453: Flags [.], ack 92, win 43, options [nop,nop,TS val 3386217370 ecr 3386217330], length 0&lt;/P&gt;
&lt;P&gt;I looked through&amp;nbsp;&lt;SPAN class="css-vy7rm"&gt;sk169154&amp;nbsp;"Asymmetric Connections in ClusterXL R80.20 and Higher" and have tried issuing " but can't seem to resolve this issue.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="css-vy7rm"&gt;I have also tried the "fw ctl set int fwha_cluster_hide_active_only 0" command on both gateway members without any success.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 20:26:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183113#M30538</guid>
      <dc:creator>Mike_Jensen</dc:creator>
      <dc:date>2023-06-02T20:26:52Z</dc:date>
    </item>
    <item>
      <title>Re: Standby cluster member not logging to SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183121#M30539</link>
      <description>&lt;P&gt;At least to me, reading your post, logically it sounds like its something related to clustering thats causing this, as it happens regardless which ons is backup. Just to make sure, can you please send output of below commands (blur out any sensitive info).&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;cphaprob roles&lt;/P&gt;
&lt;P&gt;chpaorb state&lt;/P&gt;
&lt;P&gt;cphaprob -a if&lt;/P&gt;
&lt;P&gt;cphaprob syncstat&lt;/P&gt;
&lt;P&gt;cphaprob -i list&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 21:19:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183121#M30539</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T21:19:11Z</dc:date>
    </item>
    <item>
      <title>Re: Standby cluster member not logging to SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183122#M30540</link>
      <description>&lt;P&gt;Also, another thing I forgot...make sure content of below is same on both gateways.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;cat $FWDIR/conf/masters&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 21:32:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183122#M30540</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T21:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: Standby cluster member not logging to SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183216#M30553</link>
      <description>&lt;P&gt;Here is the output from the commands with the hostnames and IP's redacted:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Taken on the standby member&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;[Expert@XXXXXX-FWB:0]# cphaprob roles&lt;/P&gt;
&lt;P&gt;ID Role&lt;/P&gt;
&lt;P&gt;1 Master&lt;BR /&gt;2 (local) Non-Master&lt;/P&gt;
&lt;P&gt;[Expert@XXXXXXFWB:0]# cphaprob stat&lt;/P&gt;
&lt;P&gt;Cluster Mode: High Availability (Active Up) with IGMP Membership&lt;/P&gt;
&lt;P&gt;ID Unique Address Assigned Load State Name&lt;/P&gt;
&lt;P&gt;1 172.25.1.2 100% ACTIVE xxxx_sg1&lt;BR /&gt;2 (local) 172.25.1.3 0% STANDBY xxxx_sg2&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Active PNOTEs: None&lt;/P&gt;
&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-114802&lt;BR /&gt;State change: DOWN -&amp;gt; STANDBY&lt;BR /&gt;Reason for state change: There is already an ACTIVE member in the cluster (member 1)&lt;BR /&gt;Event time: Fri Jun 2 15:28:46 2023&lt;/P&gt;
&lt;P&gt;Last cluster failover event:&lt;BR /&gt;Transition to new ACTIVE: Member 2 -&amp;gt; Member 1&lt;BR /&gt;Reason: ADMIN_DOWN PNOTE&lt;BR /&gt;Event time: Fri Jun 2 15:28:41 2023&lt;/P&gt;
&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 69&lt;BR /&gt;Time of counter reset: Wed Feb 9 22:16:32 2022 (reboot)&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;[Expert@XXXXXXFWB:0]# cphaprob -a if&lt;/P&gt;
&lt;P&gt;CCP mode: Manual (Unicast)&lt;BR /&gt;Required interfaces: 10&lt;BR /&gt;Required secured interfaces: 1&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Interface Name: Status:&lt;/P&gt;
&lt;P&gt;eth1 UP&lt;BR /&gt;Sync (S) UP&lt;BR /&gt;bond1.1026 (LS) UP&lt;BR /&gt;eth6.32 UP&lt;BR /&gt;bond2.1028 (LS) UP&lt;BR /&gt;eth7.17 UP&lt;BR /&gt;bond2.51 (LS) UP&lt;BR /&gt;eth6.1027 UP&lt;BR /&gt;bond1.50 (LS) UP&lt;BR /&gt;eth7.19 UP&lt;/P&gt;
&lt;P&gt;S - sync, LM - link monitor, HA/LS - bond type&lt;/P&gt;
&lt;P&gt;Virtual cluster interfaces: 19&lt;/P&gt;
&lt;P&gt;eth1 x.x.x.x&lt;BR /&gt;eth7 x.x.x.x&lt;BR /&gt;eth6.39 x.x.x.x&lt;BR /&gt;bond1.1026 x.x.x.x&lt;BR /&gt;eth6.32 x.x.x.x&lt;BR /&gt;eth6.52 x.x.x.x&lt;BR /&gt;bond2.1028 x.x.x.x&lt;BR /&gt;bond2.1025 x.x.x.x&lt;BR /&gt;eth7.17 x.x.x.x&lt;BR /&gt;eth6.38 x.x.x.x&lt;BR /&gt;bond2.51 x.x.x.x&lt;BR /&gt;eth6.45 x.x.x.x&lt;BR /&gt;eth6.36 x.x.x.x&lt;BR /&gt;eth6.1027 x.x.x.x&lt;BR /&gt;bond1.50 x.x.x.x&lt;BR /&gt;eth6.47 x.x.x.x&lt;BR /&gt;eth6.46 x.x.x.x&lt;BR /&gt;eth7.19 x.x.x.x&lt;BR /&gt;eth6.48 x.x.x.x&lt;/P&gt;
&lt;P&gt;[Expert@XXXXFWB:0]# cphaprob syncstat&lt;/P&gt;
&lt;P&gt;Delta Sync Statistics&lt;/P&gt;
&lt;P&gt;Sync status: OK&lt;/P&gt;
&lt;P&gt;Drops:&lt;BR /&gt;Lost updates................................. 0&lt;BR /&gt;Lost bulk update events...................... 0&lt;BR /&gt;Oversized updates not sent................... 0&lt;/P&gt;
&lt;P&gt;Sync at risk:&lt;BR /&gt;Sent reject notifications.................... 0&lt;BR /&gt;Received reject notifications................ 0&lt;/P&gt;
&lt;P&gt;Sent messages:&lt;BR /&gt;Total generated sync messages................ 5826087&lt;BR /&gt;Sent retransmission requests................. 29&lt;BR /&gt;Sent retransmission updates.................. 247&lt;BR /&gt;Peak fragments per update.................... 1&lt;/P&gt;
&lt;P&gt;Received messages:&lt;BR /&gt;Total received updates....................... 171176321&lt;BR /&gt;Received retransmission requests............. 50&lt;/P&gt;
&lt;P&gt;Sync Interface:&lt;BR /&gt;Name......................................... Sync&lt;BR /&gt;Link speed................................... 1000Mb/s&lt;BR /&gt;Rate......................................... 74870 [Bps]&lt;BR /&gt;Peak rate.................................... 1283 [KBps]&lt;BR /&gt;Link usage................................... 0%&lt;BR /&gt;Total........................................ 248215[MB]&lt;/P&gt;
&lt;P&gt;Queue sizes (num of updates):&lt;BR /&gt;Sending queue size........................... 512&lt;BR /&gt;Receiving queue size......................... 256&lt;BR /&gt;Fragments queue size......................... 50&lt;/P&gt;
&lt;P&gt;Timers:&lt;BR /&gt;Delta Sync interval (ms)..................... 100&lt;/P&gt;
&lt;P&gt;Reset on Mon Apr 24 10:31:31 2023 (triggered by fullsync).&lt;/P&gt;
&lt;P&gt;[Expert@XXXXXFWB:0]# cphaprob -i list&lt;/P&gt;
&lt;P&gt;There are no pnotes in problem state&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;------------------&lt;/P&gt;
&lt;P&gt;From the standby member:&lt;/P&gt;
&lt;P&gt;cat $FWDIR/conf/masters&lt;/P&gt;
&lt;P&gt;[Policy]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Log]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Alert]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Backup]&lt;BR /&gt;xxxx-fw2&lt;/P&gt;
&lt;P&gt;From the active member:&lt;/P&gt;
&lt;P&gt;[Policy]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Log]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Alert]&lt;BR /&gt;xxxx-fw1&lt;BR /&gt;[Backup]&lt;BR /&gt;xxxx-fw2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jun 2023 14:23:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Standby-cluster-member-not-logging-to-SMS/m-p/183216#M30553</guid>
      <dc:creator>Mike_Jensen</dc:creator>
      <dc:date>2023-06-05T14:23:52Z</dc:date>
    </item>
  </channel>
</rss>

