<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Maestro connection to SMS without a switch in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162626#M1256</link>
    <description>&lt;P&gt;Hi again,&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;It looks like I have it already solved.&lt;BR /&gt;I had some time and phisical access to these devices so I decided to test my idea ... and hopefully it works like a charm.&lt;/P&gt;&lt;P&gt;Here is what I did:&lt;/P&gt;&lt;P&gt;1) first of all I logged in to SMS gaia portal and added ethernet ports and SFP ports to a bridge&lt;BR /&gt;2) then I switched mgmt interface to br1&lt;/P&gt;&lt;P&gt;And ... as you probably already know - it works flawlessly.&lt;BR /&gt;Now I have:&lt;BR /&gt;1x Maestro&lt;BR /&gt;1x SMS&lt;BR /&gt;4x SGM&lt;BR /&gt;All connected without any phisical switch (you can say there is virtual one ... br1 &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ).&lt;BR /&gt;And if Customer will have pure ethernet based network ... he can connect to ethernet port of SMS, if he will have fiber he can connect to fiber ... perfect !&lt;/P&gt;&lt;P&gt;So in case anybody else is wondering if it is possible - it is.&lt;/P&gt;&lt;P&gt;--&lt;BR /&gt;Best&lt;BR /&gt;Marcin&lt;/P&gt;</description>
    <pubDate>Mon, 21 Nov 2022 17:44:09 GMT</pubDate>
    <dc:creator>marcyn</dc:creator>
    <dc:date>2022-11-21T17:44:09Z</dc:date>
    <item>
      <title>Maestro connection to SMS without a switch</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162452#M1251</link>
      <description>&lt;P&gt;Hi CheckMates,&lt;/P&gt;&lt;P&gt;I want to create small rack platform (box) with:&lt;/P&gt;&lt;P&gt;1x MHO140 (1U)&lt;BR /&gt;1x SMS (1U)&lt;BR /&gt;4x SGMs (8U)&lt;/P&gt;&lt;P&gt;And I was wondering if I can handle it ... without a switch.&lt;/P&gt;&lt;P&gt;What I want to achieve is to have demo platform for potential Customer to whom I will send Maestro for testing in their environment.&lt;/P&gt;&lt;P&gt;So it should work something like this:&lt;BR /&gt;1) LAN1, LAN2, ..., LANx, DMZ1, DMZ2, ..., DMZx, WAN1, WAN2, ..., WANx - all of these internal and external networks Customer will connect to uplink ports in MHO&lt;/P&gt;&lt;P&gt;2) Customer will connect his mgmt network to MHO's mgmt1 or mgmt2 port (these on back)&lt;BR /&gt;3) all SGMs will be already connected via DAC cables to MHOs downlink p&lt;BR /&gt;4) MHO MGMT (not mgmt1, mgmt2 on back but these first 4 ports in front) port will be already connected to SMS&lt;/P&gt;&lt;P&gt;So only thing they should do is to connect their networks to 10G uplink ports, and one ethernet cable to mgmt1/2 on back.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And with the above scenario I encountered following issues:&lt;BR /&gt;1) does connection from MHO MGMT port to SMS has to be to the SMS's MGMT port or any of 10G ports in SMS ? .... if it does, then I have a problem because on MHO it is 10G SFP interface ... and on SMS it is 1G ethernet interface&lt;BR /&gt;Probably I can resolve this issue by using gigabit ethernet SFP module connected to MGMT port in MHO ... does anyone tried that already ?&lt;BR /&gt;2) but ... if the above will work how I will connect to this SMS MGMT interface from outsite of Maestro ? There is only one MGMT port on SMS side ... which will be occupied by Maestro. Can I bound "normal" SMS's interface with this MGMT ? So that I will have "2 ports" for MGMT (one for Maestro and one for Customer's network - so that he can connect to SMS from his network).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So in summary I think about such connections:&lt;BR /&gt;1) MHO MGMT -&amp;gt; SMS MGMT (port1)&lt;BR /&gt;2) Customer's network in MGMT subnet -&amp;gt; SMS MGMT (port2)&lt;BR /&gt;3) Rest of Customer's networks -&amp;gt; MHO uplinks&lt;BR /&gt;4) MHO downlinks -&amp;gt; SGMs&lt;BR /&gt;5) and of course MHO mgmt1 port (in back) -&amp;gt; Customer's network in MGMT subnet (the same as 2nd point above)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sure I will have absolutely no problems if I will use 10G switch and such of connections:&lt;BR /&gt;1) Customer's network in MGMT subnet -&amp;gt; switch&lt;BR /&gt;2) Maestro mgmt1/2 port -&amp;gt; switch&lt;BR /&gt;3) Maestro MGMT port -&amp;gt; switch -&amp;gt; SMS&lt;BR /&gt;But ... I don't have free space in this box for a switch &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Maybe somebody will have interesting idea how to solve this issue.&lt;/P&gt;&lt;P&gt;--&lt;BR /&gt;Best&lt;BR /&gt;Marcin&lt;/P&gt;</description>
      <pubDate>Fri, 18 Nov 2022 13:40:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162452#M1251</guid>
      <dc:creator>marcyn</dc:creator>
      <dc:date>2022-11-18T13:40:10Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro connection to SMS without a switch</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162608#M1255</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/4113"&gt;@Anatoly&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1967"&gt;@Lari_Luoma&lt;/a&gt;&amp;nbsp;can you please advise here?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 07:32:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162608#M1255</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-11-21T07:32:11Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro connection to SMS without a switch</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162626#M1256</link>
      <description>&lt;P&gt;Hi again,&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;It looks like I have it already solved.&lt;BR /&gt;I had some time and phisical access to these devices so I decided to test my idea ... and hopefully it works like a charm.&lt;/P&gt;&lt;P&gt;Here is what I did:&lt;/P&gt;&lt;P&gt;1) first of all I logged in to SMS gaia portal and added ethernet ports and SFP ports to a bridge&lt;BR /&gt;2) then I switched mgmt interface to br1&lt;/P&gt;&lt;P&gt;And ... as you probably already know - it works flawlessly.&lt;BR /&gt;Now I have:&lt;BR /&gt;1x Maestro&lt;BR /&gt;1x SMS&lt;BR /&gt;4x SGM&lt;BR /&gt;All connected without any phisical switch (you can say there is virtual one ... br1 &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ).&lt;BR /&gt;And if Customer will have pure ethernet based network ... he can connect to ethernet port of SMS, if he will have fiber he can connect to fiber ... perfect !&lt;/P&gt;&lt;P&gt;So in case anybody else is wondering if it is possible - it is.&lt;/P&gt;&lt;P&gt;--&lt;BR /&gt;Best&lt;BR /&gt;Marcin&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 17:44:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162626#M1256</guid>
      <dc:creator>marcyn</dc:creator>
      <dc:date>2022-11-21T17:44:09Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro connection to SMS without a switch</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162669#M1259</link>
      <description>&lt;P&gt;You can get a C3750 switch with gigabit links from e-bay for under $200. That's what I did in my lab and works great! While you might get it working without one, having a switch would make things a bit easier. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 16:12:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162669#M1259</guid>
      <dc:creator>Lari_Luoma</dc:creator>
      <dc:date>2022-11-21T16:12:27Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro connection to SMS without a switch</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162675#M1260</link>
      <description>&lt;P&gt;Lari, money was not a problem at all... but lack of space for such a switch (I have only 0,5U free &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ).&lt;/P&gt;&lt;P&gt;But all ended as expected - it works as perfectly as Maestro deserves &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;--&lt;BR /&gt;Best&lt;BR /&gt;Marcin&lt;/P&gt;</description>
      <pubDate>Mon, 21 Nov 2022 17:38:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maestro-connection-to-SMS-without-a-switch/m-p/162675#M1260</guid>
      <dc:creator>marcyn</dc:creator>
      <dc:date>2022-11-21T17:38:40Z</dc:date>
    </item>
  </channel>
</rss>

