<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Qauntum Spark 1600 HA down problem in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186017#M9172</link>
    <description>&lt;P&gt;TAC suggested upgrade to version R81.10.07. I will cluster again after upgrade. I will post if the problem is solved.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 10 Jul 2023 11:02:19 GMT</pubDate>
    <dc:creator>ikafka</dc:creator>
    <dc:date>2023-07-10T11:02:19Z</dc:date>
    <item>
      <title>Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184633#M9073</link>
      <description>&lt;P&gt;I configured 2 Quantum Spark 1600 Ha. The device that should be passive seems to be down. When I check the interfaces, some interfaces do not seem to have arrived. The screenshots are as below.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="diag.png" style="width: 816px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21503iBE5ACA97EE34BEB7/image-size/large?v=v2&amp;amp;px=999" role="button" title="diag.png" alt="diag.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Active Devica HA List of Configuration&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="active.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21506i30169C77BF919105/image-size/large?v=v2&amp;amp;px=999" role="button" title="active.png" alt="active.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Network interfaces of active device&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="activa device network.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21509iD035A946A2023742/image-size/large?v=v2&amp;amp;px=999" role="button" title="activa device network.png" alt="activa device network.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Down Device list of internet interfaces.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="passive.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21507i62B45065813FE0BC/image-size/large?v=v2&amp;amp;px=999" role="button" title="passive.png" alt="passive.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When I enter the down device, I get such a web gui.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ekran.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21508iA8797D1BE424DAAA/image-size/large?v=v2&amp;amp;px=999" role="button" title="ekran.png" alt="ekran.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I reset the secondary device a couple of times, then added it as HA secondary again, and this happens every time. not all interface ip's come through.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 14:32:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184633#M9073</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-06-23T14:32:47Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184635#M9074</link>
      <description>&lt;P&gt;For context which firmware version/build is used here?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 14:34:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184635#M9074</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-06-23T14:34:04Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184639#M9075</link>
      <description>&lt;P&gt;Two devices of the same version:&amp;nbsp;Version: R81.10.05 (996001301&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 14:46:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184639#M9075</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-06-23T14:46:57Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184645#M9076</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;According to&amp;nbsp;&lt;SPAN&gt;sk167453 traffic from standby member goes through sync interface. In our case active member dropped traffic from standby member. T&lt;/SPAN&gt;ry creating a rule with src the two members and dest any accept.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If that doesn't fix the issue try changing "&lt;SPAN&gt;OS advanced settings - Use unique ICMP ID&lt;/SPAN&gt;" value to true so both members can do monitoring independently.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 15:20:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184645#M9076</guid>
      <dc:creator>RS_Daniel</dc:creator>
      <dc:date>2023-06-23T15:20:47Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184655#M9077</link>
      <description>&lt;P&gt;The result has not changed. The device is still down. I did a reboot and it showed LOST during the reboot. When the device is turned on, it appears down again. But when I try to access from the web, I get ERR_CONNECTION_TIMED_OUT error. This quantaum series is strange.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 16:04:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184655#M9077</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-06-23T16:04:23Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184658#M9078</link>
      <description>&lt;P&gt;There is cphaprob state output on the down device:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Cluster Mode:   High Availability (Active Up) with IGMP Membership

ID         Unique Address  Assigned Load   State

1          10.231.149.1    100%            ACTIVE(!)
2 (local)  10.231.149.2    0%              DOWN


Active PNOTEs: LPRB, IAC, COREXL

Last member state change event:
   Event Code:                 CLUS-110600
   State change:               INIT -&amp;gt; DOWN
   Reason for state change:    Incorrect configuration - Sync interface has not been detected
   Event time:                 Fri Jun 23 18:35:00 2023

Cluster failover count:
   Failover counter:           0
   Time of counter reset:      Fri Jun 23 21:32:33 2023 (reboot)&lt;/LI-CODE&gt;&lt;P&gt;But when check sync interface status is up. ping to active device is successfully. and there is active device cphaprobstate&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="upupupuup.png" style="width: 586px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21510iC519F7B120EF1ABE/image-size/large?v=v2&amp;amp;px=999" role="button" title="upupupuup.png" alt="upupupuup.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 16:13:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184658#M9078</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-06-23T16:13:09Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184817#M9079</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Yes, quantum spark have more issues/bugs than regular Gaia appliances. You have pnote COREXL, i would start there. Compare output of this command on both members "fw ctl multik stat",&amp;nbsp; Also you can check cpview &amp;gt; cpu &amp;gt; overview, you should have the same amount of CoreXL_FW and OTHER cpu's.&amp;nbsp;do they match?&amp;nbsp;Is case no, you need to check this with TAC.&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Mon, 26 Jun 2023 15:54:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/184817#M9079</guid>
      <dc:creator>RS_Daniel</dc:creator>
      <dc:date>2023-06-26T15:54:59Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186017#M9172</link>
      <description>&lt;P&gt;TAC suggested upgrade to version R81.10.07. I will cluster again after upgrade. I will post if the problem is solved.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jul 2023 11:02:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186017#M9172</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-07-10T11:02:19Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186021#M9173</link>
      <description>&lt;P&gt;sk174423 provides further guidance on CoreXL configuration for Spark appliances and how to align if different.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Is this the only Pnote remaining?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jul 2023 11:28:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186021#M9173</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-07-10T11:28:04Z</dc:date>
    </item>
    <item>
      <title>Re: Qauntum Spark 1600 HA down problem</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186383#M9193</link>
      <description>&lt;P&gt;Hi;&lt;/P&gt;&lt;P&gt;The problem is solved.&amp;nbsp;&lt;/P&gt;&lt;P&gt;TAc suggested an upgrade.&amp;nbsp;&lt;BR /&gt;After upgrading the primary and secondary member, the problem persisted. as you can see in the picture above, there are vlan interfaces in the primary member that do not pass to the secondary member. (when adding the secondary, the vlan interfaces do not pass in any way. normally it passes.)&lt;BR /&gt;So I manually added the vlan interface ip addresses that did not pass. After waiting for a while, the problem was fixed. I did this in the previous version and it didn't work. I think the secondary device is having trouble getting the vlan interface ip addresses when clustering on SMB devices.&lt;BR /&gt;As a result: My problem is solved. Thank you.&lt;BR /&gt;related upgrade package &lt;A href="https://support.checkpoint.com/results/download/127826" target="_self"&gt;link&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jul 2023 15:31:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Qauntum-Spark-1600-HA-down-problem/m-p/186383#M9193</guid>
      <dc:creator>ikafka</dc:creator>
      <dc:date>2023-07-13T15:31:26Z</dc:date>
    </item>
  </channel>
</rss>

