<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ElasticXL Policy Push Debug? in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239761#M3137</link>
    <description>&lt;P&gt;I recall that message a lot back in R76 and R77 versions. Anyway, glad you got it working.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Tue, 28 Jan 2025 01:20:23 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-01-28T01:20:23Z</dc:date>
    <item>
      <title>ElasticXL Policy Push Debug?</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239743#M3134</link>
      <description>&lt;P&gt;I'm trying out ElasticXL in a lab. I can't seem to push policy to one of my clusters (currently with one site and one member). The policy push debug script in&amp;nbsp;sk159452 shows all clear on the management, and the files appear to make it into $FWDIR/state/__tmp/FW1/. When I run the script on the firewall side, it successfully loads the policy. When I push with the policy loaded, it still fails. When I reboot the member, it goes back to InitialPolicy.&lt;/P&gt;
&lt;P&gt;I get the same results when I add a second member, which seems expected if pushing to a single member fails. I've tried with the 15-day PnP eval, a manually-generated 30-day eval, and a real, permanent license with the same results in all those cases.&lt;/P&gt;
&lt;P&gt;These are lab boxes, so I can rebuild and try anything at any time. What I&amp;nbsp;&lt;STRONG&gt;can't&lt;/STRONG&gt; do is call support, since the lab management wasn't part of our most recent renewal, and the firewalls aren't supported with ElasticXL.&lt;/P&gt;
&lt;P&gt;Any advice on what I should look at or try?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2025 21:33:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239743#M3134</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2025-01-27T21:33:16Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL Policy Push Debug?</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239748#M3135</link>
      <description>&lt;P&gt;What is the error you get? Does it complain about the licence?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2025 23:07:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239748#M3135</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-27T23:07:09Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL Policy Push Debug?</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239760#M3136</link>
      <description>&lt;P&gt;I guess I should have mentioned, but it's one of the most unhelpful error messages in the history of error messages:&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Installation failed. Reason: Failed to load Policy on Security Gateway.&lt;/LI-CODE&gt;
&lt;P&gt;That is the full extent of what it tells me in the task.&lt;/P&gt;
&lt;P&gt;I also just discovered that while the member accepts the permanent license (and is even able to fetch the associated contracts), it removes it after a few minutes. I decided to try switching the sixth interface back from the name "eth-01" (which is included in magg1 by default) to the name Mgmt. Rebooted, ran this in gclish via serial console:&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;add bonding group 1 interface Mgmt&lt;/LI-CODE&gt;
&lt;P&gt;and presto. My license stopped getting removed, and now policy installation works. Weird, but I'll take it.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 01:16:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239760#M3136</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2025-01-28T01:16:08Z</dc:date>
    </item>
    <item>
      <title>Re: ElasticXL Policy Push Debug?</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239761#M3137</link>
      <description>&lt;P&gt;I recall that message a lot back in R76 and R77 versions. Anyway, glad you got it working.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 01:20:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/ElasticXL-Policy-Push-Debug/m-p/239761#M3137</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-28T01:20:23Z</dc:date>
    </item>
  </channel>
</rss>

