<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Maetro Hyperscale security group unassign interfaces in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165774#M1313</link>
    <description>&lt;P&gt;Hi Folks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;New to Maestro concept, i was just going through some documents and videos. there was unassign interfaces column under security group, this unassign interfaces are from orchestrator or gateway ?&amp;nbsp; Hope to get clarification&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;</description>
    <pubDate>Wed, 21 Dec 2022 11:36:35 GMT</pubDate>
    <dc:creator>Ali426</dc:creator>
    <dc:date>2022-12-21T11:36:35Z</dc:date>
    <item>
      <title>Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165774#M1313</link>
      <description>&lt;P&gt;Hi Folks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;New to Maestro concept, i was just going through some documents and videos. there was unassign interfaces column under security group, this unassign interfaces are from orchestrator or gateway ?&amp;nbsp; Hope to get clarification&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;</description>
      <pubDate>Wed, 21 Dec 2022 11:36:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165774#M1313</guid>
      <dc:creator>Ali426</dc:creator>
      <dc:date>2022-12-21T11:36:35Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165784#M1314</link>
      <description>&lt;P&gt;This is done at the Orchestrator level, not the device/gateway level.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Dec 2022 13:35:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165784#M1314</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-12-21T13:35:08Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165826#M1317</link>
      <description>&lt;P&gt;All interfaces in Maestro (except the downlinks) are housed on the orchestrators. When you create a security group, you assign gateways and interfaces into it (in orchestrator WebUI). The interfaces not assigned to any security group are "unassigned". You should only assign interfaces to each security group that you will need.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 02:39:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165826#M1317</guid>
      <dc:creator>Lari_Luoma</dc:creator>
      <dc:date>2022-12-22T02:39:07Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165829#M1319</link>
      <description>&lt;P&gt;Appreciate the response! my question was&lt;/P&gt;&lt;P&gt;1. Unassign interfaces - are this physical interfaces of gateways or are this physical interfaces of orchestrator itself ?&lt;/P&gt;&lt;P&gt;2. In the attach diagram - LAN connections from core switches and wan connections from internet are connected to orchestrator only, dont we have to connect lan and wan connections to gateways ?&lt;/P&gt;&lt;P&gt;3. Basically i am trying to understand real time best practise traffic flow&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 03:17:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165829#M1319</guid>
      <dc:creator>Ali426</dc:creator>
      <dc:date>2022-12-22T03:17:30Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165841#M1320</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/86753"&gt;@Ali426&lt;/a&gt;&amp;nbsp;It is best to actually consult the documentation.&lt;BR /&gt;&lt;BR /&gt;Your questions were answered twice already here.&lt;BR /&gt;&lt;BR /&gt;An orchestrator is connected to the GWs with uplinks and downlinks only. All production interfaces are connected to the orchestrator.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 08:06:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165841#M1320</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-12-22T08:06:03Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165842#M1321</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt; thanks for the response! so as per my understanding&lt;/P&gt;&lt;P&gt;1. Traffic from source network comes to orchestrator&lt;/P&gt;&lt;P&gt;2. then orchestrator send the traffic to respective gateway of that security group&lt;/P&gt;&lt;P&gt;3. Gateway will process this traffic and send back to orchestrator over the downlink&lt;/P&gt;&lt;P&gt;4. Orchestrator then send this traffic to destination&lt;/P&gt;&lt;P&gt;Summary:&lt;/P&gt;&lt;P&gt;1.Gateways will just receive traffic from orchestrator, process the traffic and send back to orchestrator&lt;/P&gt;&lt;P&gt;2. Gateways will never have Internal or External connection connected to them physically&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 08:20:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165842#M1321</guid>
      <dc:creator>Ali426</dc:creator>
      <dc:date>2022-12-22T08:20:29Z</dc:date>
    </item>
    <item>
      <title>Re: Maetro Hyperscale security group unassign interfaces</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165849#M1322</link>
      <description>&lt;P&gt;Correct. MHO is a load balancer, as part of other operations. It breaks your traffic into flows, which are sent to GWs for processing via downlinks and returned filtered (policy applied and enforced) via uplinks. A Security Group with multiple physical appliances is acting as a single logical security GW.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Look into documentation and look up in the community, there are tons of info:&lt;BR /&gt;&lt;BR /&gt;For example,&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Maestro Jump Start Video Course:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Check-Point-for-Beginners-2-0/Check-Point-Jump-Start-Course-Maestro/ba-p/153352?cat=10" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Check-Point-for-Beginners-2-0/Check-Point-Jump-Start-Course-Maestro/ba-p/153352?cat=10&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;Maestro Intoriductory session by &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1967"&gt;@Lari_Luoma&lt;/a&gt;:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Maestro/Introduction-to-Maestro-EMEA-session/m-p/156237" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Maestro/Introduction-to-Maestro-EMEA-session/m-p/156237&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Thu, 22 Dec 2022 11:06:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Maetro-Hyperscale-security-group-unassign-interfaces/m-p/165849#M1322</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-12-22T11:06:53Z</dc:date>
    </item>
  </channel>
</rss>

