<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic 3rd party firmware - IP moving in Off Topic</title>
    <link>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177708#M212</link>
    <description>&lt;P&gt;Hey all&amp;nbsp;&lt;/P&gt;&lt;P&gt;First post here, and this probably isn't a unique situation, but I can't seem to figure out what's going on...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I bought a used 4600 (I think), it's for sure it s T160 model.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I bought it to use with VyOS.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I chose this because I read about a few others using it, and comparable hardware from Lanner or netgate is quite expensive.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was able to install VyOS white easily, and it was ready to start the config. I set the eth1 to my internal ip, 172.26.1.1/24. Port 2 (eth1) was responding it pings and I wanted to move on. However, I wanted to set up a second IP while I was getting the config entered as to not conflict with the existing gateway.&amp;nbsp;&lt;/P&gt;&lt;P&gt;At that point I had 3 cables plugged in, and set an IP on port 3 (eth2) as 172.16.5.60.&lt;/P&gt;&lt;P&gt;I unplugged port 2 (eth1) and went back to my PC to continue the config entry.&amp;nbsp;&lt;/P&gt;&lt;P&gt;As expected, the ping replies and stopped.&amp;nbsp;&lt;/P&gt;&lt;P&gt;But then the weirdest thing happened. 172.26.5.1 started responding again about 10 seconds after unplugging the cable from the port it was configured on.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;I&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;checked, and sure enough it was responding on the port with the correct MAC address for port 3 (eth2).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;So, somehow, without any failover config, this IP address failed over to another port. At least, no software config within vyos.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tested this a few more times with multiple ports and it did the same thing every time.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there some sort of hardware thing on these systems that would cause this? And if so, can it be disabled?&lt;/P&gt;&lt;P&gt;I've never worked with checkpoint hardware before, so I'm very confused.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TIA&amp;nbsp;&lt;/P&gt;&lt;P&gt;--reno&lt;/P&gt;</description>
    <pubDate>Sat, 08 Apr 2023 02:08:09 GMT</pubDate>
    <dc:creator>reno138</dc:creator>
    <dc:date>2023-04-08T02:08:09Z</dc:date>
    <item>
      <title>3rd party firmware - IP moving</title>
      <link>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177708#M212</link>
      <description>&lt;P&gt;Hey all&amp;nbsp;&lt;/P&gt;&lt;P&gt;First post here, and this probably isn't a unique situation, but I can't seem to figure out what's going on...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I bought a used 4600 (I think), it's for sure it s T160 model.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I bought it to use with VyOS.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I chose this because I read about a few others using it, and comparable hardware from Lanner or netgate is quite expensive.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was able to install VyOS white easily, and it was ready to start the config. I set the eth1 to my internal ip, 172.26.1.1/24. Port 2 (eth1) was responding it pings and I wanted to move on. However, I wanted to set up a second IP while I was getting the config entered as to not conflict with the existing gateway.&amp;nbsp;&lt;/P&gt;&lt;P&gt;At that point I had 3 cables plugged in, and set an IP on port 3 (eth2) as 172.16.5.60.&lt;/P&gt;&lt;P&gt;I unplugged port 2 (eth1) and went back to my PC to continue the config entry.&amp;nbsp;&lt;/P&gt;&lt;P&gt;As expected, the ping replies and stopped.&amp;nbsp;&lt;/P&gt;&lt;P&gt;But then the weirdest thing happened. 172.26.5.1 started responding again about 10 seconds after unplugging the cable from the port it was configured on.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;I&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;checked, and sure enough it was responding on the port with the correct MAC address for port 3 (eth2).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;So, somehow, without any failover config, this IP address failed over to another port. At least, no software config within vyos.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tested this a few more times with multiple ports and it did the same thing every time.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there some sort of hardware thing on these systems that would cause this? And if so, can it be disabled?&lt;/P&gt;&lt;P&gt;I've never worked with checkpoint hardware before, so I'm very confused.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TIA&amp;nbsp;&lt;/P&gt;&lt;P&gt;--reno&lt;/P&gt;</description>
      <pubDate>Sat, 08 Apr 2023 02:08:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177708#M212</guid>
      <dc:creator>reno138</dc:creator>
      <dc:date>2023-04-08T02:08:09Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party firmware - IP moving</title>
      <link>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177709#M213</link>
      <description>&lt;P&gt;Check Point appliances are purpose built to run the Quantum Security Gateway software only.&lt;BR /&gt;All other uses of our hardware are unsupported.&lt;/P&gt;
&lt;P&gt;Having said that, I'm not aware of any function in our hardware that would cause the issue you describe to occur.&lt;BR /&gt;Even if there is, it'd be in the BIOS, the settings for which are not accessible to users.&lt;/P&gt;</description>
      <pubDate>Sat, 08 Apr 2023 02:31:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177709#M213</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-08T02:31:47Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party firmware - IP moving</title>
      <link>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177715#M214</link>
      <description>&lt;P&gt;Oh. Yes. I'm completely aware that this is wholly unsupported. And I really appreciate you taking the time to respond at all.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was also afraid that would be the answer. It's so strange that it's happening without any software or hardware&amp;nbsp; config directing it to do so.&amp;nbsp; At this point it was more lire curiosity than anything else that brought me to post here, because it SO weird that the IP moves to a new nic, is using that new NICs MAC, and nothing I can find is telling it to do so. I'm really starting to wonder if it's something on my switch that's updating the MAC associated with the IP and it has nothing to do with the checkpoint hardware&lt;/P&gt;&lt;P&gt;Oh well. Back to the hunt.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again!&lt;/P&gt;</description>
      <pubDate>Sat, 08 Apr 2023 04:08:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Off-Topic/3rd-party-firmware-IP-moving/m-p/177715#M214</guid>
      <dc:creator>reno138</dc:creator>
      <dc:date>2023-04-08T04:08:42Z</dc:date>
    </item>
  </channel>
</rss>

