Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
the_rock
MVP Diamond
MVP Diamond
Jump to solution

Recommended jumbo hotfix install question

Hey guys,

Had client ask me this yesterday and quite frankly, was not sure what to even make of it. They essentially wanted to know if there was any way to install jumbo hotfix on their R81.20 cluster once take is recommended say at  1 am on specic day of the week.

I reckon cron job might be one option for it, but since we would not know when jumbo would become recommended, not even sure how that would work.

Thoughts?

Thanks as always for your support, I truly appreciate it.

Best,
Andy
"Have a great day and if its not, change it"
0 Kudos
1 Solution

Accepted Solutions
Vincent_Bacher
MVP Silver
MVP Silver

Technically speaking, this might be feasible with a script started by cron that repeatedly checks whether there is anything new e.g. using “show installer packages” and, if so, gets started.

But.
For my part, however, I would definitely not consider something like this, and if I were still working for service providers, I would talk the customer out of such a crazy idea.
But everyone can see it as they wish.

and now to something completely different - CCVS, CCAS, CCTE, CCCS, CCSM elite

View solution in original post

9 Replies
Vincent_Bacher
MVP Silver
MVP Silver

Technically speaking, this might be feasible with a script started by cron that repeatedly checks whether there is anything new e.g. using “show installer packages” and, if so, gets started.

But.
For my part, however, I would definitely not consider something like this, and if I were still working for service providers, I would talk the customer out of such a crazy idea.
But everyone can see it as they wish.

and now to something completely different - CCVS, CCAS, CCTE, CCCS, CCSM elite
the_rock
MVP Diamond
MVP Diamond

Yea, I get what you mean Vince. I dont even think they were truly considering this, more just as an idea.

Best,
Andy
"Have a great day and if its not, change it"
0 Kudos
Lesley
MVP Gold
MVP Gold

Cronjob can start an update for sure but how would it know when to perform failover to the other member when it is ready. Unit will reboot after jumbo update. With a script you can do a lot also some checks if the other member is ready. But in general I would advise against it to many factors that could go wrong. 

-------
Please press "Accept as Solution" if my post solved it 🙂
0 Kudos
the_rock
MVP Diamond
MVP Diamond

Im with you 100%, Lesley. Thats exactly the thought I had as well when they described it to me.

Best,
Andy
"Have a great day and if its not, change it"
0 Kudos
Vincent_Bacher
MVP Silver
MVP Silver

A script could be used on the management and once a new jumbo is available use cdt which does the needful for a cluster including creating the deployment plan and so on.

If there is a way using SmartConsole…no clue.

But I would advise against that too.

and now to something completely different - CCVS, CCAS, CCTE, CCCS, CCSM elite
0 Kudos
the_rock
MVP Diamond
MVP Diamond

@Lesley and @Vincent_Bacher 

Thanks guys for your great help, as always! I told them even yesterday that this was not the best idea, but they still wanted to know if it was possible, hence my question. Since mgmt is S1C, cdt method can also be used, so thats most likely what we will go with for the next recommended jumbo take.

Best,
Andy
"Have a great day and if its not, change it"
0 Kudos
Lesley
MVP Gold
MVP Gold

correct with cdt there is more automation possible even for clusters

https://sc1.checkpoint.com/documents/CDT/Unified/Topics/Package-Installation-in-Clusters.htm

Maybe this is better answer for the customer then no 😉 

-------
Please press "Accept as Solution" if my post solved it 🙂
the_rock
MVP Diamond
MVP Diamond

This dude is super chill, so Im sure they would not be disappointed either way : - )

Best,
Andy
"Have a great day and if its not, change it"
0 Kudos
Bob_Zimmerman
MVP Gold
MVP Gold

The jumbo page claims there's an RSS feed, but it doesn't seem to actually work. It just has a single item, which is a link to the documentation page. No information about what jumbos exist, let alone which are recommended. Right now, I think the only option is scraping the site and processing the HTML.

I've asked for a few years, now, for a machine-readable list of jumbos so I could build a system like this. ElasticXL clusters have several ways to accidentally update all of the members at once (thereby causing a hard outage), so I'm working on a tool to install jumbos. I'd like to be able to fully automate it on some of my less-critical firewalls so I can hold them up as examples when it's time to update more sensitive systems.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events