- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
When the Agents Attack
A Live Look at Agentic Exposure Validation
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Hey everyone. We upgraded our management server from R81.20 to R82 Take 44 several weeks back, and are now planning on doing our secondary logging server. The verify is failing with the attached error message. I'm reading that the primary management server can't have any jumbos installed, but it's got Take 44 which is why it's failing. The upgrade from R81 was done in one fell swoop (R82 with take 44), so how would one uninstall the take in order to get the secondary logging server upgraded?
Looks right to me. I wonder if its because logging server shows active...
You might be onto something. Ran the following command on logging;
cpprod_util FwSetActiveManagement 0
Now shows standby, and the verify shows it's good for clean install or upgrade. I'll proceed with the upgrade and report back.
Did you make sure based on below screnshow you sent that primary is indeed active and secondary is standby?
It is indeed. This isn't even a secondary management server, it's only purpose is for logging.
Fair enough. What do you get with cpstat mg command?
[Expert@CP-MANAGEMENT:0]# cpstat mg
Product Name: Check Point Security Management Server
Major version: 6
Minor version: 0
Build number: 998000009
Is started: 1
Active status: active
ICA status: 0
Status: The Internal Certificate Authority (ICA) certificate is valid until Jan 19 03:14:07 2038 GMT
Connected clients
----------------------------------------------------
|Client type |Administrator|Host |Database lock|
----------------------------------------------------
|SmartConsole|admin |EVE-WIN11|false |
----------------------------------------------------
[Expert@CP-MANAGEMENT:0]#
This too?
cpprod_util FwIsPrimary
From the logging server, or the management server?
Logging
Product Name: Check Point Security Management Server
Major version: 6
Minor version: 0
Build number: 997000016
Is started: 0
Active status: active
ICA status: 0
Status: The Internal Certificate Authority (ICA) certificate is valid until Jan 19 03:14:07 2038 GMT
Connected clients
----------------------------------------------
|Client type|Administrator|Host|Database lock|
----------------------------------------------
----------------------------------------------
Management
Product Name: Check Point Security Management Server
Major version: 6
Minor version: 0
Build number: 998000008
Is started: 1
Active status: active
ICA status: 0
Status: The Internal Certificate Authority (ICA) certificate is valid until Jan 19 03:14:07 2038 GMT
Connected clients
------------------------------------------------------
Logging
cpprod_util FwIsPrimary
0
Management
cpprod_util FwIsPrimary
1
Looks right to me. I wonder if its because logging server shows active...
You might be onto something. Ran the following command on logging;
cpprod_util FwSetActiveManagement 0
Now shows standby, and the verify shows it's good for clean install or upgrade. I'll proceed with the upgrade and report back.
Excellent! Great job! Honestly, I just said that based on pure logic. There are lots smarter people than I on here 🙂
this is something that i warned just yesterday https://community.checkpoint.com/t5/Management/Upgrade-Experience-Log-Server-amp-Management-Server-f...
check point needs to update documentation urgently, a lot of admins are failing in this
I do recall you mentioning it.
My upgrade completed successfully. I do appreciate the help.
Excellent...very happy it worked. We always find a solution on community.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 29 | |
| 15 | |
| 6 | |
| 6 | |
| 5 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 3 |
Thu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningThu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningThu 18 Jun 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point WAF - The Next Generation of AI powered protectionTue 23 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point Cloud Firewall | Securing all of your clouds: Art of the possibleAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY