<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to create vlan on eth2-05 interface via clish on primary MHO in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86243#M207</link>
    <description>&lt;P&gt;There are no restrictions applied. See below the applied configuration to both MHO's.&lt;BR /&gt;Configuration can be succesfully done via the WebUI, so I do not expect a cabling issue.&lt;BR /&gt;(port 48 is used between MHO-1 and MHO-2 as required by single-site dual-mho setup)&lt;BR /&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;MHO-1 config statements:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;set hostname MHO-1&lt;BR /&gt;set interface Mgmt1 ipv4-address 172.23.9.31 mask-length 24&lt;BR /&gt;set static-route default nexthop gateway address 172.23.9.1 on&lt;BR /&gt;set static-route default nexthop gateway address 192.168.1.254 off&lt;BR /&gt;save config&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-2 config statements:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;set hostname MHO-2&lt;BR /&gt;set interface Mgmt1 ipv4-address 172.23.9.32 mask-length 24&lt;BR /&gt;set static-route default nexthop gateway address 172.23.9.1 on&lt;BR /&gt;set static-route default nexthop gateway address 192.168.1.254 off&lt;BR /&gt;save config&lt;BR /&gt;&lt;BR /&gt;Is studied the referenced documentation. In the documentation there is no example on how the add a vlan to an interface of the other MHO.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;I have the feeling that you can only do "set maestro port &lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;1&lt;/STRONG&gt;&lt;/FONT&gt;/x/y . . . " commands on MHO-&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;1&lt;/STRONG&gt;&lt;/FONT&gt; and only&amp;nbsp;"set maestro port &lt;FONT color="#000000"&gt;&lt;STRONG&gt;2&lt;/STRONG&gt;&lt;/FONT&gt;/x/y . . . " commands on MHO-&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;2&lt;/STRONG&gt;&lt;/FONT&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 25 May 2020 15:49:06 GMT</pubDate>
    <dc:creator>Erwin</dc:creator>
    <dc:date>2020-05-25T15:49:06Z</dc:date>
    <item>
      <title>How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86123#M203</link>
      <description>&lt;P&gt;Hi experts,&lt;/P&gt;&lt;P&gt;I want to create the following configuration via clish, by connecting to &lt;STRONG&gt;one&lt;/STRONG&gt; MHO only.&lt;BR /&gt;(Single-site DUAL-MHO setup, R80.20SP)&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2020-05-23_21-00-30.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6211i1CD00CD3EE203D65/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2020-05-23_21-00-30.png" alt="2020-05-23_21-00-30.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;I can create vlan 100 on eth1-05 and vlan 200 on eth1-06, but I can not configure the vlans for eth2-05 and eth2-06 interfaces.&lt;BR /&gt;It looks like the MHO has no "access" to the interfaces on the other MHO.&lt;BR /&gt;As you can see in the output below, I can configure the interfaces of the local-MHO, but not of the other MHO&lt;/P&gt;&lt;P&gt;MHO-1&amp;gt; add maestro port 1/5/1 vlan 100&lt;/P&gt;&lt;P&gt;MHO-1&amp;gt; add maestro port 2/5/1 vlan 100&lt;BR /&gt;NMSSG0001 Port 2/5/1 is invalid.&lt;BR /&gt;add maestro port 2/5/1&lt;BR /&gt;------------^^^^^^^^^^&lt;/P&gt;&lt;P&gt;MHO-1&amp;gt; add maestro port &amp;lt;TAB&amp;gt;&lt;/P&gt;&lt;P&gt;1/42/1 1/48/1 1/43/1 1/55/1 1/56/1 1/49/1 1/51/1 1/24/1 1/25/1&lt;BR /&gt;1/26/1 1/27/1 1/20/1 1/21/1 1/22/1 1/23/1 1/46/1 1/47/1 1/44/1&lt;BR /&gt;1/45/1 1/28/1 1/29/1 1/40/1 1/41/1 1/1/1 1/3/1 1/2/1 1/5/1&lt;BR /&gt;1/4/1 1/7/1 1/6/1 1/9/1 1/8/1 1/50/1 1/39/1 1/38/1 1/54/1&lt;BR /&gt;1/11/1 1/10/1 1/13/1 1/12/1 1/15/1 1/14/1 1/17/1 1/16/1 1/19/1&lt;BR /&gt;1/18/1 1/31/1 1/30/1 1/37/1 1/36/1 1/35/1 1/34/1 1/33/1 1/52/1&lt;BR /&gt;1/32/1 1/53/1&lt;/P&gt;&lt;P&gt;note:&lt;BR /&gt;I found out that I can connect to the other MHO and issue the "add maestro port &lt;STRONG&gt;1&lt;/STRONG&gt;/5/1 vlan 100" command to make it create the eth&lt;STRONG&gt;2&lt;/STRONG&gt;-05.100 interface. I do not want to ssh arount to all MHO's&lt;/P&gt;&lt;P&gt;How can I build this SG via clish?&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Erwin&lt;/P&gt;</description>
      <pubDate>Sat, 23 May 2020 19:25:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86123#M203</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2020-05-23T19:25:45Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86168#M204</link>
      <description>&lt;P&gt;After upgrading MHO's to Jumbo-take-273 the challenge remains, however the interface numbering on MHO-2 is improved:&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;On R80.20SP:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-1&lt;/STRONG&gt;&amp;gt; add maestro port &amp;lt;TAB&amp;gt;&lt;BR /&gt;1/42/1 1/48/1 1/43/1 1/55/1 1/56/1 1/49/1 1/51/1 1/24/1 1/25/1&lt;BR /&gt;1/26/1 1/27/1 1/20/1 1/21/1 1/22/1 1/23/1 1/46/1 1/47/1 1/44/1&lt;BR /&gt;1/45/1 1/28/1 1/29/1 1/40/1 1/41/1 1/1/1 1/3/1 1/2/1 1/5/1&lt;BR /&gt;1/4/1 1/7/1 1/6/1 1/9/1 1/8/1 1/50/1 1/39/1 1/38/1 1/54/1&lt;BR /&gt;1/11/1 1/10/1 1/13/1 1/12/1 1/15/1 1/14/1 1/17/1 1/16/1 1/19/1&lt;BR /&gt;1/18/1 1/31/1 1/30/1 1/37/1 1/36/1 1/35/1 1/34/1 1/33/1 1/52/1&lt;BR /&gt;1/32/1 1/53/1&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-2&amp;gt;&lt;/STRONG&gt; add maestro port &amp;lt;TAB&amp;gt;&lt;BR /&gt;1/42/1 1/48/1 1/43/1 1/55/1 1/56/1 1/49/1 1/51/1 1/24/1 1/25/1&lt;BR /&gt;1/26/1 1/27/1 1/20/1 1/21/1 1/22/1 1/23/1 1/46/1 1/47/1 1/44/1&lt;BR /&gt;1/45/1 1/28/1 1/29/1 1/40/1 1/41/1 1/1/1 1/3/1 1/2/1 &lt;FONT color="#FF0000"&gt;1/5/1&lt;/FONT&gt;&lt;BR /&gt;1/4/1 1/7/1 &lt;FONT color="#FF0000"&gt;1/6/1&lt;/FONT&gt; 1/9/1 1/8/1 1/50/1 1/39/1 1/38/1 1/54/1&lt;BR /&gt;1/11/1 1/10/1 1/13/1 1/12/1 1/15/1 1/14/1 1/17/1 1/16/1 1/19/1&lt;BR /&gt;1/18/1 1/31/1 1/30/1 1/37/1 1/36/1 1/35/1 1/34/1 1/33/1 1/52/1&lt;BR /&gt;1/32/1 1/53/1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;On R80.20SP + take 273:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-1&lt;/STRONG&gt;&amp;gt; add maestro port &amp;lt;TAB&amp;gt;&lt;BR /&gt;1/42/1 1/48/1 1/43/1 1/55/1 1/56/1 1/49/1 1/51/1 1/24/1 1/25/1&lt;BR /&gt;1/26/1 1/27/1 1/20/1 1/21/1 1/22/1 1/23/1 1/46/1 1/47/1 1/44/1&lt;BR /&gt;1/45/1 1/28/1 1/29/1 1/40/1 1/41/1 1/1/1 1/3/1 1/2/1 1/5/1&lt;BR /&gt;1/4/1 1/7/1 1/6/1 1/9/1 1/8/1 1/50/1 1/39/1 1/38/1 1/54/1&lt;BR /&gt;1/11/1 1/10/1 1/13/1 1/12/1 1/15/1 1/14/1 1/17/1 1/16/1 1/19/1&lt;BR /&gt;1/18/1 1/31/1 1/30/1 1/37/1 1/36/1 1/35/1 1/34/1 1/33/1 1/52/1&lt;BR /&gt;1/32/1 1/53/1&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-2&lt;/STRONG&gt;&amp;gt; add maestro port &amp;lt;TAB&amp;gt;&lt;BR /&gt;2/42/1 2/48/1 2/43/1 2/55/1 2/56/1 2/49/1 2/51/1 2/24/1 2/25/1&lt;BR /&gt;2/26/1 2/27/1 2/20/1 2/21/1 2/22/1 2/23/1 2/46/1 2/47/1 2/44/1&lt;BR /&gt;2/45/1 2/28/1 2/29/1 2/40/1 2/41/1 2/1/1 2/3/1 2/2/1 &lt;FONT color="#FF0000"&gt;2/5/1&lt;/FONT&gt;&lt;BR /&gt;2/4/1 2/7/1 &lt;FONT color="#FF0000"&gt;2/6/1&lt;/FONT&gt; 2/9/1 2/8/1 2/50/1 2/39/1 2/38/1 2/54/1&lt;BR /&gt;2/11/1 2/10/1 2/13/1 2/12/1 2/15/1 2/14/1 2/17/1 2/16/1 2/19/1&lt;BR /&gt;2/18/1 2/31/1 2/30/1 2/37/1 2/36/1 2/35/1 2/34/1 2/33/1 2/52/1&lt;BR /&gt;2/32/1 2/53/1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Still curios how to add a vlan for 2/5/1 from within clish on the MHO-1 . . .&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 24 May 2020 18:40:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86168#M204</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2020-05-24T18:40:01Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86228#M206</link>
      <description>&lt;P&gt;How are the MHO connected to one another and have you setup any host access restrictions?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Example procedure:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R80.30SP/WebAdminGuides/EN/CP_R80.30SP_Maestro_GettingStartedGuide/Content/Topics/configuring-vlAN-Interfaces-on-top-of-Bond-Interface-on-Uplink-Ports.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R80.30SP/WebAdminGuides/EN/CP_R80.30SP_Maestro_GettingStartedGuide/Content/Topics/configuring-vlAN-Interfaces-on-top-of-Bond-Interface-on-Uplink-Ports.htm&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 May 2020 13:43:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86228#M206</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-05-25T13:43:09Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86243#M207</link>
      <description>&lt;P&gt;There are no restrictions applied. See below the applied configuration to both MHO's.&lt;BR /&gt;Configuration can be succesfully done via the WebUI, so I do not expect a cabling issue.&lt;BR /&gt;(port 48 is used between MHO-1 and MHO-2 as required by single-site dual-mho setup)&lt;BR /&gt;&lt;STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;MHO-1 config statements:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;set hostname MHO-1&lt;BR /&gt;set interface Mgmt1 ipv4-address 172.23.9.31 mask-length 24&lt;BR /&gt;set static-route default nexthop gateway address 172.23.9.1 on&lt;BR /&gt;set static-route default nexthop gateway address 192.168.1.254 off&lt;BR /&gt;save config&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;MHO-2 config statements:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;set hostname MHO-2&lt;BR /&gt;set interface Mgmt1 ipv4-address 172.23.9.32 mask-length 24&lt;BR /&gt;set static-route default nexthop gateway address 172.23.9.1 on&lt;BR /&gt;set static-route default nexthop gateway address 192.168.1.254 off&lt;BR /&gt;save config&lt;BR /&gt;&lt;BR /&gt;Is studied the referenced documentation. In the documentation there is no example on how the add a vlan to an interface of the other MHO.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;I have the feeling that you can only do "set maestro port &lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;1&lt;/STRONG&gt;&lt;/FONT&gt;/x/y . . . " commands on MHO-&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;1&lt;/STRONG&gt;&lt;/FONT&gt; and only&amp;nbsp;"set maestro port &lt;FONT color="#000000"&gt;&lt;STRONG&gt;2&lt;/STRONG&gt;&lt;/FONT&gt;/x/y . . . " commands on MHO-&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;2&lt;/STRONG&gt;&lt;/FONT&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 May 2020 15:49:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86243#M207</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2020-05-25T15:49:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86277#M208</link>
      <description>&lt;P&gt;Was it added before and you removed it and how?&lt;/P&gt;
&lt;P&gt;Please test on another port/interface/vlan that has not yet been added to the security group before.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Example.png" style="width: 678px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6225i9BCD6E84FBB78BCA/image-size/large?v=v2&amp;amp;px=999" role="button" title="Example.png" alt="Example.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 26 May 2020 02:32:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86277#M208</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-05-26T02:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86291#M210</link>
      <description>&lt;P&gt;Hi Chris,&lt;/P&gt;&lt;P&gt;I think I did not explain the issue correctly, so I try the show as clearly as possible that the interfaces can not reference the port 2/*/* numbers from the clish on MHO-1&lt;/P&gt;&lt;P&gt;Let's take port eth2-05 as an example: (from a working configuration)&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="208_1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6230i9CECADA163DBEE6F/image-size/large?v=v2&amp;amp;px=999" role="button" title="208_1.png" alt="208_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I'll:&lt;BR /&gt;- removed the vlan&lt;BR /&gt;- apply the change&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="208_2.png" style="width: 355px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6231i87C98D1DB461CA30/image-size/large?v=v2&amp;amp;px=999" role="button" title="208_2.png" alt="208_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;We now have this as a starting point:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="208_3.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6232iB179137F7991B7B5/image-size/large?v=v2&amp;amp;px=999" role="button" title="208_3.png" alt="208_3.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Here you can see that I do not have access to ethe 2/* ports from clish on the MHO-1&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="3.gif" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6228i04810EFC9F32103A/image-size/large?v=v2&amp;amp;px=999" role="button" title="3.gif" alt="3.gif" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;So the only way to configure port 2/5 is to do it is on MHO-2?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Erwin&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 26 May 2020 05:54:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86291#M210</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2020-05-26T05:54:05Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86390#M211</link>
      <description>&lt;P&gt;I just got confirmed that this is a known limitation.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;I should assign vlans to 1/x/y interfaces via clish on MHO-1&lt;/LI&gt;&lt;LI&gt;I should assign vlans to 2/x/y interfaces via clish on MHO-2&lt;/LI&gt;&lt;LI&gt;Or I should use the WebUI&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Intermediate solution 1 is to use trunk-mode (sk165172), however this has some limitations.&lt;BR /&gt;&lt;BR /&gt;Intermediate solution 2 is to assign only eth1-05 + eth2-05 to the SG and not define vlan interfaces.&lt;BR /&gt;This will forward all tagged and untagged traffic to the SG. (sk165172)&lt;/P&gt;&lt;P&gt;Both solutions seem to have the limitation that you can not use "auto-topology" as the distribution-mode,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;In future JHF releases the procedure where you have to assign vlans on MHO-level &lt;U&gt;and&lt;/U&gt; SMO-level will be improved so that you have to assign vlans once. We have to watch upcoming release notes for that small improvement.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1011"&gt;@MartijnElzenaar&lt;/a&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 26 May 2020 17:59:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/86390#M211</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2020-05-26T17:59:50Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111309#M426</link>
      <description>&lt;P&gt;Hi Erwin,&lt;/P&gt;&lt;P&gt;I am curious if you got some clarification in the meanwhile.&lt;/P&gt;&lt;P&gt;What happens, if you typed the following command:&lt;/P&gt;&lt;P&gt;MHO-1&amp;gt; add maestro security-group id 1 interface [TAB]&lt;/P&gt;&lt;P&gt;?&lt;/P&gt;&lt;P&gt;Can you only see the interfaces associated to the local orchestrator?&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;Yasushi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Feb 2021 14:44:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111309#M426</guid>
      <dc:creator>Yasushi_Kono1</dc:creator>
      <dc:date>2021-02-19T14:44:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111319#M427</link>
      <description>&lt;P&gt;Hi Yashushi,&lt;BR /&gt;&lt;BR /&gt;I do not have a dual-MHO setup at hand, so I can not tell you.&lt;BR /&gt;The issue is not relevant anymore. When you are using trunk-mode you do not have to assign a vlan to a port.&lt;BR /&gt;&lt;BR /&gt;Good luck!&lt;/P&gt;</description>
      <pubDate>Fri, 19 Feb 2021 17:42:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111319#M427</guid>
      <dc:creator>Erwin</dc:creator>
      <dc:date>2021-02-19T17:42:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to create vlan on eth2-05 interface via clish on primary MHO</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111335#M428</link>
      <description>&lt;P&gt;If you installed the latest Jumbo's there is no need and you should not add the VLANs on the MHO interfaces. You just add them to the interfaces in the Security Group(s) or if you use VSX in the Virtual systems. With the latest JHF you will even be shown the assigned VLANs when you hover the assigned interfaces on the MHO WebUI.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Feb 2021 22:07:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/How-to-create-vlan-on-eth2-05-interface-via-clish-on-primary-MHO/m-p/111335#M428</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2021-02-19T22:07:31Z</dc:date>
    </item>
  </channel>
</rss>

