- CheckMates
- :
- Products
- :
- CloudMates Products
- :
- Cloud Network Security
- :
- Azure based Vsec R80.10 Cluster - Secondary node i...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Azure based Vsec R80.10 Cluster - Secondary node issue
Hi, I have deployed an R80.10 Checkpoint Cluster into Microsoft Azure. Cluster XL is working (active/standby) and I can manage and push policies to both cluster nodes (inbound connectivity ok)
However when running the azure test script to check connectivity to Azure to make UDR and cluster IP changes the secondary node can't resolve DNS. Primary node works fine. If I try and ping 8.8.8.8 for example, I get no response as if the node has no outbound Internet connectivity not just a DNS issue. This is very odd because I can manage the cluster nodes and cluster XL is working but because the secondary node has no outbound connectivity failover is not working and also it can't contact checkpoint.com to get its contracts status so its complaining about licensing. Any ideas?
Output from the secondary node below which is unsuccessful.
[Expert@vsec-node-2]# $FWDIR/scripts/azure_ha_test.py
Image version is: ogu_GAR1-289
Reading configuration file...
Testing if DNS is configured...
- Primary DNS server is: 8.8.8.8
Testing if DNS is working...
Error:
Failed to resolve login.windows.net
!
[Expert@vsec-node-2]# ping 8.8.8.8
PING 8.8.8.8 (8.8.8.8) 56(84) bytes of data.
--- 8.8.8.8 ping statistics ---
3 packets transmitted, 0 received, 100% packet loss, time 2001ms
-
168.63.129.16
1 -
ACI
1 -
API
1 -
architecture
4 -
Automation
4 -
Automation and APIs
1 -
autoprov_cfg
1 -
Aviatrix
1 -
AWS
8 -
Azure
10 -
Azure DevOps
1 -
bash
1 -
CDT
1 -
cisco
1 -
Cisco ACI
1 -
Cloud
3 -
Cloud - Automation - Orchestration
1 -
Cloud Managment Extention
1 -
Cloud network security
3 -
Cloud Security
1 -
cloudappsecurity
1 -
CloudGuard
6 -
Cloudguard Controller debug
1 -
CloudGuard IaaS
7 -
cloudwatch
1 -
Cluster
1 -
ClusterXL
2 -
CP CME
1 -
Debug
1 -
Debug full
1 -
deployment
2 -
DevSecOps
1 -
DHCP
1 -
DirectConnect
1 -
disk
1 -
file share
1 -
firewall
1 -
Gaia
1 -
GWLB
1 -
IaC
1 -
identity
1 -
Install-Policy
1 -
Integrations
2 -
Intra
1 -
Intra-VCN
1 -
Intra-VCN Routing
1 -
loadbalancer
1 -
Logging
1 -
MDS 80.40
1 -
mount
1 -
multi cloud
1 -
NAT
1 -
NDR
1 -
networking
1 -
next generation firewall
1 -
NSX-T
2 -
OCI
1 -
Oracle
1 -
partition
1 -
private
1 -
public
1 -
R81
1 -
R81.10
1 -
reference
1 -
Remote Access
1 -
resource groups
1 -
Routing
2 -
script
1 -
Site to Site VPN
4 -
Smart Console
1 -
sms
1 -
Structura.io
1 -
technical
1 -
Terraform
2 -
TGW
1 -
VCN
1 -
VMSS
1 -
VPN
2 -
vsec_lic_cli
1
- « Previous
- Next »