<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dropping traffic on HA Sync Interface in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274548#M13815</link>
    <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;P&gt;Cluster Mode: High Availability (Active Up)&lt;/P&gt;&lt;P&gt;Sync Mode: Optimized Sync&lt;/P&gt;&lt;P&gt;ID Unique Address Assigned Load State&lt;/P&gt;&lt;P&gt;1 10.231.149.1 100% ACTIVE&lt;BR /&gt;2 (local) 10.231.149.2 0% DOWN&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Active PNOTEs: FSYNC&lt;/P&gt;&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-112100&lt;BR /&gt;State change: INIT -&amp;gt; DOWN&lt;BR /&gt;Reason for state change: FULLSYNC PNOTE&lt;BR /&gt;Event time: Tue Mar 31 10:01:58 2026&lt;/P&gt;&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 0&lt;BR /&gt;Time of counter reset: Tue Mar 31 07:29:25 2026 (reboot)&lt;/P&gt;&lt;P&gt;Cluster Mode: High Availability (Active Up)&lt;/P&gt;&lt;P&gt;Sync Mode: Optimized Sync&lt;/P&gt;&lt;P&gt;ID Unique Address Assigned Load State&lt;/P&gt;&lt;P&gt;1 (local) 10.231.149.1 100% ACTIVE&lt;BR /&gt;2 10.231.149.2 0% DOWN&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Active PNOTEs: None&lt;/P&gt;&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-114904&lt;BR /&gt;State change: ACTIVE(!) -&amp;gt; ACTIVE&lt;BR /&gt;Reason for state change: Reason for ACTIVE! alert has been resolved&lt;BR /&gt;Event time: Tue Mar 31 10:01:43 2026&lt;/P&gt;&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 0&lt;BR /&gt;Time of counter reset: Mon Mar 30 05:17:42 2026 (reboot)&lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description>
    <pubDate>Tue, 31 Mar 2026 13:12:42 GMT</pubDate>
    <dc:creator>SnafuNL</dc:creator>
    <dc:date>2026-03-31T13:12:42Z</dc:date>
    <item>
      <title>Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274540#M13813</link>
      <description>&lt;P&gt;I've got two 1590 appliances running in a cluster, but I can't seem to get the HA working as expected. One of the cluster members always has a status of inactive.&lt;/P&gt;&lt;P&gt;Noticing in the Security Log of the active member dropped traffic on the Sync interface (the two appliances are directly connected), and I'm guessing this is at least part of the problem. Do I need to put a rule in place to allow this traffic or is something else happening?&lt;/P&gt;&lt;P&gt;Running R81.10.17&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 12:49:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274540#M13813</guid>
      <dc:creator>SnafuNL</dc:creator>
      <dc:date>2026-03-31T12:49:16Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274542#M13814</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;Can you please share the output of:&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;cphaprob stat&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;From both cluster members?&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 12:56:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274542#M13814</guid>
      <dc:creator>sigal</dc:creator>
      <dc:date>2026-03-31T12:56:42Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274548#M13815</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;P&gt;Cluster Mode: High Availability (Active Up)&lt;/P&gt;&lt;P&gt;Sync Mode: Optimized Sync&lt;/P&gt;&lt;P&gt;ID Unique Address Assigned Load State&lt;/P&gt;&lt;P&gt;1 10.231.149.1 100% ACTIVE&lt;BR /&gt;2 (local) 10.231.149.2 0% DOWN&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Active PNOTEs: FSYNC&lt;/P&gt;&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-112100&lt;BR /&gt;State change: INIT -&amp;gt; DOWN&lt;BR /&gt;Reason for state change: FULLSYNC PNOTE&lt;BR /&gt;Event time: Tue Mar 31 10:01:58 2026&lt;/P&gt;&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 0&lt;BR /&gt;Time of counter reset: Tue Mar 31 07:29:25 2026 (reboot)&lt;/P&gt;&lt;P&gt;Cluster Mode: High Availability (Active Up)&lt;/P&gt;&lt;P&gt;Sync Mode: Optimized Sync&lt;/P&gt;&lt;P&gt;ID Unique Address Assigned Load State&lt;/P&gt;&lt;P&gt;1 (local) 10.231.149.1 100% ACTIVE&lt;BR /&gt;2 10.231.149.2 0% DOWN&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Active PNOTEs: None&lt;/P&gt;&lt;P&gt;Last member state change event:&lt;BR /&gt;Event Code: CLUS-114904&lt;BR /&gt;State change: ACTIVE(!) -&amp;gt; ACTIVE&lt;BR /&gt;Reason for state change: Reason for ACTIVE! alert has been resolved&lt;BR /&gt;Event time: Tue Mar 31 10:01:43 2026&lt;/P&gt;&lt;P&gt;Cluster failover count:&lt;BR /&gt;Failover counter: 0&lt;BR /&gt;Time of counter reset: Mon Mar 30 05:17:42 2026 (reboot)&lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description>
      <pubDate>Tue, 31 Mar 2026 13:12:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274548#M13815</guid>
      <dc:creator>SnafuNL</dc:creator>
      <dc:date>2026-03-31T13:12:42Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274552#M13816</link>
      <description>&lt;P&gt;If your Firewall policy is set to Strict mode then I suggest allowing the traffic between the two cluster members.&lt;BR /&gt;This issue has been fixed in R82.00.10, which I understand you cannot upgrade to since you are using 1590.&lt;BR /&gt;If adding this rule is extremely inconvenient then you can open SR and we will try to back-port the fix to R81.10.17.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 13:41:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274552#M13816</guid>
      <dc:creator>sigal</dc:creator>
      <dc:date>2026-03-31T13:41:15Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274553#M13817</link>
      <description>&lt;P&gt;Mind also sending below?&lt;/P&gt;
&lt;P&gt;cphaprob -a if&lt;/P&gt;
&lt;P&gt;cphaprob -i list&lt;/P&gt;
&lt;P&gt;cphaprob -l list&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 13:43:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274553#M13817</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2026-03-31T13:43:40Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274556#M13818</link>
      <description>&lt;P&gt;Thank you. The rule resolved the issue. Both are in Active/Standby now.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 14:10:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274556#M13818</guid>
      <dc:creator>SnafuNL</dc:creator>
      <dc:date>2026-03-31T14:10:10Z</dc:date>
    </item>
    <item>
      <title>Re: Dropping traffic on HA Sync Interface</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274582#M13820</link>
      <description>&lt;P&gt;Glad it worked.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2026 19:04:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Dropping-traffic-on-HA-Sync-Interface/m-p/274582#M13820</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2026-03-31T19:04:44Z</dc:date>
    </item>
  </channel>
</rss>

