Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
TSOL
Collaborator
Jump to solution

How to control MGMT routing using PBR in Quantum R81.20

Hi Team

 

Thank you as always.

In a ClusterXL configuration with Quantum R81.20, I need to ensure that management-related services like NTP, syslog, cpuse, etc. communicate through the management port. If the NTP server or other services are not located in the connected segment, I believe that routing needs to be configured.

In cases where the business communication segment and the IP addresses of the NTP server and syslog server are on the same segment, can this be achieved using PBR (Policy-Based Routing)? Or is the management routing table separately configured, similar to Cisco routers?

 

Thank you for the advice.

0 Kudos
1 Solution

Accepted Solutions
PhoneBoy
Admin
Admin

PBR rules do not apply for locally generated traffic per: https://support.checkpoint.com/results/sk/sk167135 
The only supported method currently is MDPS.

View solution in original post

0 Kudos
4 Replies
emmap
Employee
Employee

You can look to enable MDPS:

https://support.checkpoint.com/results/sk/sk138672

Or you can rebuild the cluster as VSX, which gives you VS0 as the admin context that holds the management interface and a VS1 with a totally separate routing instance for production traffic.

0 Kudos
(1)
TSOL
Collaborator

Thank you for the advice.

Are you saying that it's not possible to route management communication through a specific MGMT port using PBR?

0 Kudos
emmap
Employee
Employee

I've not tried with PBR.

0 Kudos
(1)
PhoneBoy
Admin
Admin

PBR rules do not apply for locally generated traffic per: https://support.checkpoint.com/results/sk/sk167135 
The only supported method currently is MDPS.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events