<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Maestro Bridge in Trunk mode in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159643#M1213</link>
    <description>&lt;P&gt;R81.10 + JHF for version?&lt;/P&gt;
&lt;P&gt;What is the configuration of the access switch interfaces are you using LACP/802.3AD (etherchannel) for the trunks?&lt;/P&gt;</description>
    <pubDate>Sun, 16 Oct 2022 11:49:43 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-10-16T11:49:43Z</dc:date>
    <item>
      <title>Maestro Bridge in Trunk mode</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159629#M1212</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; In the flow deployment , Core switch&amp;nbsp; and Access are running in the Trunk mode and all default gateway are in the core switch .&amp;nbsp; we want to delploy the MHO in the middle and working&amp;nbsp; in a bridge mode .&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp; MHO Interface assignment configuration :&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Bond1 &amp;gt;&amp;nbsp; MHO140-A: 1/7/1&amp;nbsp; &amp;nbsp;MHO140-B:2/7/1&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Bond2 &amp;gt;&amp;nbsp; MHO140-A :1/9/1&amp;nbsp; &amp;nbsp;MHO140-B:2/9/1&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Bond3 &amp;gt;&amp;nbsp; MHO140-A:1/13/1&amp;nbsp; MHO140-B:2/13/1&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Bond4 &amp;gt; MHO140-A:1/17/1&amp;nbsp; MHO140-B:2/17/1&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;we have creat a vlan subinterface :&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Vlan 200:&amp;nbsp; &amp;nbsp; Bond1.200&amp;nbsp; Bond2.200&amp;nbsp; Bond3.200&amp;nbsp; Bond4.200&lt;/P&gt;&lt;P&gt;&amp;nbsp; Vlan 400:&amp;nbsp; &amp;nbsp; Bond1.400&amp;nbsp; Bond2.400&amp;nbsp; &amp;nbsp;Bond3.400&amp;nbsp; &amp;nbsp;Bond4.400&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;FONT color="#000000"&gt;Bridge interface ,I haven't add the bond interface only the vlan sub-interface :&amp;nbsp;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Bridge 1 &amp;nbsp;(bond 1 \bond 2): &amp;nbsp;Bond1.200&amp;nbsp; Bond2.200&amp;nbsp; Bond1.400&amp;nbsp; Bond2.400&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;Bridge 2 &amp;nbsp;(bond 3 \bond 4) : Bond3.200&amp;nbsp; Bond4.200&amp;nbsp; Bond3.400&amp;nbsp; &amp;nbsp;Bond4.400&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11111.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18139iB5B643529C89269C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="11111.png" alt="11111.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Accroding this deployment , I have question :&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;1、 there are need to add vlan subinterface into special bridge in the Trunking bridge mode?&amp;nbsp; (I has try remove the vlan subinterface in the bridge ,networking come to interrupt.)&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;2、bridge 1 and brige2 in our&amp;nbsp; enviroument , we seem some network looping and&amp;nbsp; , so I am sure this configuration&amp;nbsp; or deploment is right ?&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;3、is&amp;nbsp; there are 8 interface can add in the bond interface&amp;nbsp; limitaion , it's same as the vlan subinterface ?&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;I hope everybody&amp;nbsp; could give us some suggestions ，Thanks !&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 15 Oct 2022 03:33:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159629#M1212</guid>
      <dc:creator>LongjiangLI</dc:creator>
      <dc:date>2022-10-15T03:33:52Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro Bridge in Trunk mode</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159643#M1213</link>
      <description>&lt;P&gt;R81.10 + JHF for version?&lt;/P&gt;
&lt;P&gt;What is the configuration of the access switch interfaces are you using LACP/802.3AD (etherchannel) for the trunks?&lt;/P&gt;</description>
      <pubDate>Sun, 16 Oct 2022 11:49:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159643#M1213</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-16T11:49:43Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro Bridge in Trunk mode</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159663#M1214</link>
      <description>&lt;P&gt;Hi Chris ,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;Thanks for your replay . Both the (CP-28600 HS )and MHO-140 are running the R81.10 with T66 (now we upgrade to T78)&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;Core and access switch are configuration are the same&amp;nbsp; ,below is configuration&amp;nbsp;&lt;/P&gt;&lt;P&gt;--------------------------------------------------&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; Huawei Switch Interface config&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp;interface XGigabitEthernet0/0/1&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;Eth-trunk 10&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp;interface eth-trunk 10&lt;BR /&gt;&amp;nbsp; &amp;nbsp; port link-type trunk&lt;BR /&gt;&amp;nbsp; &amp;nbsp;port trunk allow-pass vlan 2 to 4094&lt;BR /&gt;&amp;nbsp; &amp;nbsp;mode lacp&lt;BR /&gt;--------------------------------------------------&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; I have check the LACP stat on the switch negotiation Trunk is up .&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Today ,I have flow the&amp;nbsp;&amp;nbsp;sk165172&amp;nbsp; to enable the "uplink_trunk_mode" that we can remove the VLAN sub-interface and only add the bond interface in the bridge&amp;nbsp; is working .&lt;/P&gt;&lt;P&gt;&amp;nbsp; But this kb&amp;nbsp; is showing only use for R80.20SP . So I'm not sure it's right or not . Could you give us same suggest ? Thanks again !&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 01:33:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159663#M1214</guid>
      <dc:creator>LongjiangLI</dc:creator>
      <dc:date>2022-10-17T01:33:50Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro Bridge in Trunk mode</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159670#M1215</link>
      <description>&lt;P&gt;Further relevant information can be found in&amp;nbsp;&lt;SPAN&gt;sk170294 pertaining to R81.10.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 03:50:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-Bridge-in-Trunk-mode/m-p/159670#M1215</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-10-17T03:50:11Z</dc:date>
    </item>
  </channel>
</rss>

