- Products
- Learn
- Local User Groups
- Partners
- More
Stop Babysitting Rules.
Go Agentic
Step Into the Future of
AI-Powered Cyber Security
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
We have Selected 'Policy Targets' as to install on for Cluster. Policy Targets contains the specific gateway cluster.
Now When I install policy on 'Cluster-1' with target set as 'Cluster-1' 0nly in the situation when I do Policy Install on 'Cluster -2' it still shows installed policy changes on Cluster-1 under 'View Chnages'.
I am not sure if I explained it well.
Thanks
Ravi
If you see attached files, Install on is set to 'Policy Targets' which are specific to cluster only. Now When I go to install policy it shows 419 changes which we made on other clusters not on 'P-cluster'. None of the change related to 'P-cluster' but still it shows under changes list while I do install on 'P-cluster'.
Lets assume the following:
This is correct, those changes had not been applied to Cluster_2 yet so they show as not finished, it is the same policy you made changes to.
I have deleted 1 Policy on 'Cluster_1' and its not used on 'Cluster_2' still it shows waiting install on 'Cluster_2'.
We have 15 cluster in our environment. So if I delete 1 policy on 'Cluster_1' it shows pending install on all rest of 14 clusters.
Just not I have deleted rule on another cluster and it shows the changes on 'Cluster_P'.
We have separate policy install package 'Target' used for each clusters. So each clusters are using different policies.
I mean to say Perimeter firewall will not have same policies as inside firewall. Still if I made any changes on Inside firewall its shows on Perim firewall in pending install.
Is this something known or same policy thing?
Regards,
Ravi
If each policy is only related to a specific cluster, do you have the installation target set? - Yes it set to specific cluster target only.
I have observed this thing in scenario where 'Object_X' is used only on 'Cluster_1' and I do changes on 'Object_X' it will set to install for all the clusters.
Though I need to try other possible way to fix.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 34 | |
| 19 | |
| 10 | |
| 9 | |
| 7 | |
| 7 | |
| 7 | |
| 5 | |
| 5 | |
| 4 |
Tue 02 Jun 2026 @ 10:00 AM (AEST)
The Cloud Architect Series: Check Point WAF. The next generation of AI-Powered Protection - APACTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeTue 02 Jun 2026 @ 10:00 AM (AEST)
The Cloud Architect Series: Check Point WAF. The next generation of AI-Powered Protection - APACTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeThu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaThu 04 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E9: READY OR NOT: Securing the AI Enterprise 1/5 - AI Agent SecurityAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY