<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Reconnect member to cluster in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Reconnect-member-to-cluster/m-p/21776#M914</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I wanted to revert to a previous firmware one of cluster members so I did like that:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Disabled ClusterXL on that member using clutserXL_admin.sh down&lt;/P&gt;&lt;P&gt;2. Disconnected all network interfaces&lt;/P&gt;&lt;P&gt;3. Reverted to previous firmware&lt;/P&gt;&lt;P&gt;4. Restored backup configuration taken from that firmware&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, now member is essentially ready to be reconnected back to the cluster. However it is in Active Attention cluster state and if I just connect all network interfaces back on, I am afraid failover will occur immediately&amp;nbsp; and I want to avoid that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For that, in a maintenance window I plan to do this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Stop cluster service on disconnected node using cphastop&lt;/P&gt;&lt;P&gt;2. Connect all network interfaces in this order: LAN, WAN, SYNC.&lt;/P&gt;&lt;P&gt;3. Re-establish SIC (or otherwise confirm connectivity with SMS)&lt;/P&gt;&lt;P&gt;4. Install policy&lt;/P&gt;&lt;P&gt;5. Reboot appliance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this going to work or am I missing something important ? Thanx.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 07 Jan 2019 12:11:26 GMT</pubDate>
    <dc:creator>HristoGrigorov</dc:creator>
    <dc:date>2019-01-07T12:11:26Z</dc:date>
    <item>
      <title>Reconnect member to cluster</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Reconnect-member-to-cluster/m-p/21776#M914</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I wanted to revert to a previous firmware one of cluster members so I did like that:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Disabled ClusterXL on that member using clutserXL_admin.sh down&lt;/P&gt;&lt;P&gt;2. Disconnected all network interfaces&lt;/P&gt;&lt;P&gt;3. Reverted to previous firmware&lt;/P&gt;&lt;P&gt;4. Restored backup configuration taken from that firmware&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, now member is essentially ready to be reconnected back to the cluster. However it is in Active Attention cluster state and if I just connect all network interfaces back on, I am afraid failover will occur immediately&amp;nbsp; and I want to avoid that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For that, in a maintenance window I plan to do this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Stop cluster service on disconnected node using cphastop&lt;/P&gt;&lt;P&gt;2. Connect all network interfaces in this order: LAN, WAN, SYNC.&lt;/P&gt;&lt;P&gt;3. Re-establish SIC (or otherwise confirm connectivity with SMS)&lt;/P&gt;&lt;P&gt;4. Install policy&lt;/P&gt;&lt;P&gt;5. Reboot appliance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this going to work or am I missing something important ? Thanx.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Jan 2019 12:11:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Reconnect-member-to-cluster/m-p/21776#M914</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2019-01-07T12:11:26Z</dc:date>
    </item>
  </channel>
</rss>

