<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Downgrade appliance 1450 in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14363#M357</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First, this should be in the &lt;A href="https://community.checkpoint.com/space/2036"&gt;SMB and SMP&lt;/A&gt;‌.&lt;/P&gt;&lt;P&gt;Second,&amp;nbsp;can you explain why your customer requires R77.20.60 versus the latest version?&lt;/P&gt;&lt;P&gt;If it's due to a technical issue, then you should contact the TAC (especially if it's urgent as your message tag suggests).&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://www.checkpoint.com/support-services/contact-support/" title="https://www.checkpoint.com/support-services/contact-support/"&gt;Contact Support | Check Point Software&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As far as I know, the backup can only be installed on the same version it was taken from (or possibly a later release, but definitely not earlier).&lt;/P&gt;&lt;P&gt;The backup contains a copy of the configuration as a sqlite database, among other things.&lt;/P&gt;&lt;P&gt;It does appear the version the backup was taken with is coded into the database.&lt;/P&gt;&lt;P&gt;Using sqlite .dump, I can see the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;CREATE TABLE system&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;(&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;name&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text NOT NULL,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwareVer&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwarePri&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwareSec&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwarePriTimestamp&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;vendor text NOT NULL,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;sysContact text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;sysLoc&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;PRIMARY KEY (name)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;);&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;INSERT INTO "system" VALUES('Security Gateway 80','0.0.1-b0','R77_990172392_20_80',NULL,'Tue Jul&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;3 14:28:30 2018','Check Point',NULL,NULL);&lt;/SPAN&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also see the image used in:&amp;nbsp;&lt;SPAN class=""&gt;addtional_settings_tmp/pfrm2.0/etc/prev_image_info&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Presumably, you could modify&amp;nbsp;the above to the&amp;nbsp;appropriate value, recompress the directory, and attempt to restore against R77.20.60.&lt;/P&gt;&lt;P&gt;However, if there are differences in the&amp;nbsp;database schema between R77.20.60 and R77.20.80, or there are other places where the version is specified that I didn't find, this won't be enough.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 31 Jul 2018 00:01:13 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2018-07-31T00:01:13Z</dc:date>
    <item>
      <title>Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14362#M356</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello, can someone help me with this requirement?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a 1450 appliance in the version R77.20.80, but my client requires that the downgrade be made to the version R77.20.60, however the load the image R77.20.60 and caragar the backup, for compatibility problems it is obvious that it does not work , the question is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any way to adapt the backup of version R77.20.80 to load it to verison77.20.60?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jul 2018 22:08:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14362#M356</guid>
      <dc:creator>Jorge_Luis_Chav</dc:creator>
      <dc:date>2018-07-30T22:08:41Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14363#M357</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First, this should be in the &lt;A href="https://community.checkpoint.com/space/2036"&gt;SMB and SMP&lt;/A&gt;‌.&lt;/P&gt;&lt;P&gt;Second,&amp;nbsp;can you explain why your customer requires R77.20.60 versus the latest version?&lt;/P&gt;&lt;P&gt;If it's due to a technical issue, then you should contact the TAC (especially if it's urgent as your message tag suggests).&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://www.checkpoint.com/support-services/contact-support/" title="https://www.checkpoint.com/support-services/contact-support/"&gt;Contact Support | Check Point Software&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As far as I know, the backup can only be installed on the same version it was taken from (or possibly a later release, but definitely not earlier).&lt;/P&gt;&lt;P&gt;The backup contains a copy of the configuration as a sqlite database, among other things.&lt;/P&gt;&lt;P&gt;It does appear the version the backup was taken with is coded into the database.&lt;/P&gt;&lt;P&gt;Using sqlite .dump, I can see the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;CREATE TABLE system&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;(&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;name&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text NOT NULL,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwareVer&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwarePri&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwareSec&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;firmwarePriTimestamp&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;vendor text NOT NULL,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;sysContact text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;sysLoc&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;text,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;/SPAN&gt;PRIMARY KEY (name)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;);&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;INSERT INTO "system" VALUES('Security Gateway 80','0.0.1-b0','R77_990172392_20_80',NULL,'Tue Jul&lt;SPAN class=""&gt;&amp;nbsp; &lt;/SPAN&gt;3 14:28:30 2018','Check Point',NULL,NULL);&lt;/SPAN&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also see the image used in:&amp;nbsp;&lt;SPAN class=""&gt;addtional_settings_tmp/pfrm2.0/etc/prev_image_info&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Presumably, you could modify&amp;nbsp;the above to the&amp;nbsp;appropriate value, recompress the directory, and attempt to restore against R77.20.60.&lt;/P&gt;&lt;P&gt;However, if there are differences in the&amp;nbsp;database schema between R77.20.60 and R77.20.80, or there are other places where the version is specified that I didn't find, this won't be enough.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 00:01:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14363#M357</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-31T00:01:13Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14364#M358</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN class="" lang="en"&gt;&lt;SPAN&gt;Thank you,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class=""&gt;It does not work because of the difference in the version of the backup, however I got the command "show configuration" of the R77.20.80 version, and later copy and paste the output of the commands in the version R77.20.60 and if the changes were made but&lt;/SPAN&gt; &lt;SPAN&gt;not in its entirety.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class=""&gt;Is there any way I can optimize that process?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 01:03:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14364#M358</guid>
      <dc:creator>Jorge_Luis_Chav</dc:creator>
      <dc:date>2018-07-31T01:03:39Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14365#M359</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A show configuration contains some, but not all of the configuration.&lt;/P&gt;&lt;P&gt;Some of the configuration (certificates and the like) are stored in the files in the backup.&lt;/P&gt;&lt;P&gt;Also, it’s possible that show configuration may not output the configuration in an order that can be pasted into another appliance—This was an issue in older, non-embedded Gaia releases.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But again, what is the reason for needing R77.20.60?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 01:21:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14365#M359</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-31T01:21:43Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14366#M360</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN class="" lang="en"&gt;&lt;SPAN class=""&gt;The reason why version R77.20.60 is required, is because with all the other versions higher than this have presented many problems of CPU consumption and memory and this problem affects the daily activities of the client since the administration is literally lost and&lt;/SPAN&gt; &lt;SPAN&gt;Occasionally it restarts.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class=""&gt;The logs that have been extracted are: Error [CPOSD] Low Free memory status is 8.850%&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 01:44:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14366#M360</guid>
      <dc:creator>Jorge_Luis_Chav</dc:creator>
      <dc:date>2018-07-31T01:44:32Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14367#M361</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You should definitely be working with the TAC to try and resolve those issues.&lt;/P&gt;&lt;P&gt;The TAC may also be able to assist with trying to get the backup to "restore" on an earlier version.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 15:18:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14367#M361</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-31T15:18:19Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14368#M362</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Show configuration won't work, but you can use it and edit the commands&amp;nbsp;to make your own configuration script.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This has been discussed in&amp;nbsp;the thread&amp;nbsp;&lt;A href="https://community.checkpoint.com/docs/DOC-2608"&gt;Configuration transfer between different SMB models&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Commands like 'set interface LAN1 ipv4-address 10.10.10.234 mask-length 24' will look like '&lt;SPAN&gt;set interface LAN1 ipv4-address "10.10.10.234"&amp;nbsp;mask-length "24"', with incorrect double quotes.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jul 2018 17:07:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/14368#M362</guid>
      <dc:creator>Pedro_Espindola</dc:creator>
      <dc:date>2018-07-31T17:07:08Z</dc:date>
    </item>
    <item>
      <title>Re: Downgrade appliance 1450</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/56936#M2210</link>
      <description>&lt;P&gt;This is possible using a USB medium. See&amp;nbsp;sk107592 How to perform a fresh_clean install of firmware on 600_700_1100_1400_1200R appliances via USB on how to install an older firmware to the SMB device...&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2019 08:32:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Downgrade-appliance-1450/m-p/56936#M2210</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-06-28T08:32:48Z</dc:date>
    </item>
  </channel>
</rss>

