<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Not able to convert full config from CiscoASA to Checkpoint using Smart Move in SmartMove</title>
    <link>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271133#M694</link>
    <description>&lt;P&gt;Hi Lesley,&lt;/P&gt;&lt;P&gt;I have Port channel interfaces in cisco as below:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Port-channel2&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;description **Connected to Internal**&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nameif lan-zone&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;security-level 100&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;ip address x.x.x.x 255.255.255.0 standby x.x.x.x&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Port-channel95.888&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;vlan 888&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nameif Example1&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;security-level 80&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;ip address x.x.x.x 255.255.255.240 standby x.x.x.x&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;So as per your suggestion, should this config be present in one-line itself, rather then on each new line??? this also I tried still the same issue, not converting the full policy package.&lt;/P&gt;&lt;P&gt;Also I noticed that many network objects are&amp;nbsp; not getting converted.&lt;/P&gt;&lt;P&gt;Also Any suggestions on the errors mentioned?&lt;/P&gt;</description>
    <pubDate>Tue, 17 Feb 2026 14:08:50 GMT</pubDate>
    <dc:creator>AmitS</dc:creator>
    <dc:date>2026-02-17T14:08:50Z</dc:date>
    <item>
      <title>Not able to convert full config from CiscoASA to Checkpoint using Smart Move</title>
      <link>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271027#M692</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;I am facing issues in converting the Firewall config from &lt;STRONG&gt;Cisco ASA v9.18(4)50&amp;nbsp;&lt;/STRONG&gt; to check Point compatible using the SmartMove tool (v9.50.8370.13807).&lt;/P&gt;&lt;P&gt;The Cisco ASA config consists of 700+ access policies &amp;amp; 1000+ objects (address objects/groups, service objects/groups).&lt;/P&gt;&lt;P&gt;While converting, using tool I am able to see only 5-7 rules being converted, rest rules are not getting converted.&lt;/P&gt;&lt;P&gt;I have tried resolving all Error of Duplicate object name or unique object name, still the same issues.&lt;/P&gt;&lt;P&gt;Need some solution on this asap as we are about to do a migration in coming weeks and manual policy creation will take time.&lt;/P&gt;&lt;P&gt;Also I am getting below errors:&lt;/P&gt;&lt;TABLE border="1"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;0&lt;/TD&gt;&lt;TD&gt;Cannot find interface assigned to ACL group: Interface details: lan-zone.;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;1&lt;/TD&gt;&lt;TD&gt;Cannot find interface assigned to ACL group: Interface details: external-zone.;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;SPAN&gt;Error creating a rule, missing information for source Cisco object:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Error creating a rule, missing information for Cisco service object&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Feb 2026 16:28:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271027#M692</guid>
      <dc:creator>AmitS</dc:creator>
      <dc:date>2026-02-16T16:28:21Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to convert full config from CiscoASA to Checkpoint using Smart Move</title>
      <link>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271051#M693</link>
      <description>&lt;P&gt;Copy paste from old topic:&lt;/P&gt;
&lt;P&gt;interface info must be indented as follows -&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE class="line-numbers  language-none"&gt;&lt;CODE&gt;interface GigabitEthernet0/0.123 vlan 123 nameif EXAMPLE1 security-level 0 ip address x.x.x.x 255.255.255.240 standby x.x.x.x‍‍‍‍‍&lt;/CODE&gt;&lt;/PRE&gt;
&lt;P&gt;interface command is a parent command, and vlan/nameif/security-level/ip address are child commands and must be indented.&lt;/P&gt;
&lt;P&gt;Also did you see:&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;Before you run SmartMove, replace DHCP / DAIP interfaces with static IP addresses on your cisco Gateway. In&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk115416" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk115416&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Feb 2026 21:52:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271051#M693</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2026-02-16T21:52:15Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to convert full config from CiscoASA to Checkpoint using Smart Move</title>
      <link>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271133#M694</link>
      <description>&lt;P&gt;Hi Lesley,&lt;/P&gt;&lt;P&gt;I have Port channel interfaces in cisco as below:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Port-channel2&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;description **Connected to Internal**&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nameif lan-zone&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;security-level 100&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;ip address x.x.x.x 255.255.255.0 standby x.x.x.x&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;interface Port-channel95.888&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;vlan 888&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nameif Example1&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;security-level 80&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;ip address x.x.x.x 255.255.255.240 standby x.x.x.x&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;So as per your suggestion, should this config be present in one-line itself, rather then on each new line??? this also I tried still the same issue, not converting the full policy package.&lt;/P&gt;&lt;P&gt;Also I noticed that many network objects are&amp;nbsp; not getting converted.&lt;/P&gt;&lt;P&gt;Also Any suggestions on the errors mentioned?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Feb 2026 14:08:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SmartMove/Not-able-to-convert-full-config-from-CiscoASA-to-Checkpoint/m-p/271133#M694</guid>
      <dc:creator>AmitS</dc:creator>
      <dc:date>2026-02-17T14:08:50Z</dc:date>
    </item>
  </channel>
</rss>

