<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Maestro R81.10 - Interface Distribution Issue in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178906#M1521</link>
    <description>&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;P&gt;No internal interfaces set in topology because we have only three interfaces( 2 ISP(External), one Management) interface) and it took automatically external distribution&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution l4-mode&lt;BR /&gt;1_01:&lt;BR /&gt;Member 192.0.2.1 is down. See "/var/log/messages".&lt;/P&gt;&lt;P&gt;1_02:&lt;BR /&gt;L4 Distribution: Enabled&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution interface bond2 configuration&lt;BR /&gt;1_01:&lt;BR /&gt;Member 192.0.2.1 is down. See "/var/log/messages".&lt;/P&gt;&lt;P&gt;1_02:&lt;BR /&gt;policy-external&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution configuration&lt;BR /&gt;Distribution Mode: auto-topology (per-port)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;</description>
    <pubDate>Mon, 24 Apr 2023 10:01:59 GMT</pubDate>
    <dc:creator>Satya2021</dc:creator>
    <dc:date>2023-04-24T10:01:59Z</dc:date>
    <item>
      <title>Traffice passing through one SGM not second SGM under Maestro Setup</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178883#M1512</link>
      <description>&lt;P&gt;We have implemented Maestro Setup with R81.10 jhf take 94 and put in production and checked that everything was working fine and after 4 hours we have rebooted both SGM (Module 6600) after came Active/Active internet was very slow as not able to browser properly&amp;nbsp; after troubleshooting i found that I get cpstop or clusterXL_admin -b 1_01 down then internet is working properly as expected.&lt;/P&gt;&lt;P&gt;it means internet and all application are working excellent with one SGM if both SGM comes Actove/Active then everything slow.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;please provide any solution&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 06:09:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178883#M1512</guid>
      <dc:creator>Satya2021</dc:creator>
      <dc:date>2023-04-24T06:09:56Z</dc:date>
    </item>
    <item>
      <title>Re: Traffice passing through one SGM not second SGM under Maestro Setup</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178886#M1513</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you see any drops?&lt;/P&gt;
&lt;P&gt;Do you have high traffic volume?&lt;/P&gt;
&lt;P&gt;Do you have NAT?&lt;/P&gt;
&lt;P&gt;Traffic Distribution is set by policy (default config)?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yair&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 06:38:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178886#M1513</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2023-04-24T06:38:37Z</dc:date>
    </item>
    <item>
      <title>Re: Traffice passing through one SGM not second SGM under Maestro Setup</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178887#M1514</link>
      <description>&lt;P&gt;Hi Yair,&lt;/P&gt;&lt;P&gt;No high traffic volume...very less traffic&lt;/P&gt;&lt;P&gt;Only Hide behind NAT using to go on internet&amp;nbsp;&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution interface bond2 configuration&lt;BR /&gt;1_01:&lt;BR /&gt;Member 192.0.2.1 is down. See "/var/log/messages".&lt;/P&gt;&lt;P&gt;1_02:&lt;BR /&gt;policy-external&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 06:51:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178887#M1514</guid>
      <dc:creator>Satya2021</dc:creator>
      <dc:date>2023-04-24T06:51:25Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178889#M1518</link>
      <description>&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution status&lt;BR /&gt;distribution:&lt;BR /&gt;l4_mode: 'on'&lt;BR /&gt;mode: per-port&lt;BR /&gt;matrix:&lt;BR /&gt;actual_size: '512'&lt;BR /&gt;ports:&lt;BR /&gt;eth1-06: policy-external&lt;BR /&gt;eth1-07: policy-external&lt;BR /&gt;eth2-06: policy-external&lt;BR /&gt;eth2-07: policy-external&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 07:08:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178889#M1518</guid>
      <dc:creator>Satya2021</dc:creator>
      <dc:date>2023-04-24T07:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178902#M1519</link>
      <description>&lt;P&gt;Have you tested without L4 distribution?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Maestro/Layer-4-Distribution-Yes-or-No/m-p/154974" target="_blank"&gt;https://community.checkpoint.com/t5/Maestro/Layer-4-Distribution-Yes-or-No/m-p/154974&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:51:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178902#M1519</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-04-24T09:51:14Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178903#M1520</link>
      <description>&lt;P&gt;No internal interfaces set in topology?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 09:51:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178903#M1520</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2023-04-24T09:51:16Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178906#M1521</link>
      <description>&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;P&gt;No internal interfaces set in topology because we have only three interfaces( 2 ISP(External), one Management) interface) and it took automatically external distribution&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution l4-mode&lt;BR /&gt;1_01:&lt;BR /&gt;Member 192.0.2.1 is down. See "/var/log/messages".&lt;/P&gt;&lt;P&gt;1_02:&lt;BR /&gt;L4 Distribution: Enabled&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution interface bond2 configuration&lt;BR /&gt;1_01:&lt;BR /&gt;Member 192.0.2.1 is down. See "/var/log/messages".&lt;/P&gt;&lt;P&gt;1_02:&lt;BR /&gt;policy-external&lt;/P&gt;&lt;P&gt;[Global] HO-GW-ch01-02&amp;gt; show distribution configuration&lt;BR /&gt;Distribution Mode: auto-topology (per-port)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Mon, 24 Apr 2023 10:01:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/178906#M1521</guid>
      <dc:creator>Satya2021</dc:creator>
      <dc:date>2023-04-24T10:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/189776#M2161</link>
      <description>&lt;P&gt;Was this one resolved?&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 13:55:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/189776#M2161</guid>
      <dc:creator>Yair_Shahar</dc:creator>
      <dc:date>2023-08-17T13:55:11Z</dc:date>
    </item>
    <item>
      <title>Re: Maestro R81.10 - Interface Distribution Issue</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/189792#M2163</link>
      <description>&lt;P&gt;Yes, issue was resolved.&lt;/P&gt;&lt;P&gt;We have created 3 interface Magg1(User are sitting- for going internet), bond2(ISP-External) and Bond3(ISP-External)&lt;/P&gt;&lt;P&gt;now if user sitting on Magg interface on Maestro then Internet traffic will not&amp;nbsp; distribute between both SGM and if we want to forward data traffic on Magg1so we have to follow below sk179005&lt;/P&gt;&lt;P&gt;g_fw -a ctl set int fwha_data_mgmt_connection 1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 16:00:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/189792#M2163</guid>
      <dc:creator>Satya2021</dc:creator>
      <dc:date>2023-08-17T16:00:55Z</dc:date>
    </item>
    <item>
      <title>Re: Traffice passing through one SGM not second SGM under Maestro Setup</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/254316#M3558</link>
      <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are facing the similar issue which we have total 4 SGM in the security group, whenever we bring up over 3 chassis and above become ACTIVE, users experienced slowness and inconsistence to the Internet Traffic, some certain website domain is loading slowly or not even able to browse and ping, nslookup not able to get the result as well. However when there's only 2 chassis is ACTIVE in the security group no matter which SGM then everything is running good. We had disabled the L4 mode but still the same.&lt;/P&gt;&lt;P&gt;Any advice ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Keon&lt;/P&gt;</description>
      <pubDate>Thu, 31 Jul 2025 08:07:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Traffice-passing-through-one-SGM-not-second-SGM-under-Maestro/m-p/254316#M3558</guid>
      <dc:creator>KeonNg</dc:creator>
      <dc:date>2025-07-31T08:07:07Z</dc:date>
    </item>
  </channel>
</rss>

