Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
velo
Contributor

Quantum Spark SMB Gaia not working after 81.10.10 Build 996002993

I have a number of SMB1500 appliances, all running on 81.10.10. 

As per sk182459

I have have upgraded to 81.10.10 build 996002993. I have only done this one one firewall to test the image. 

After the upgrade, gaia web interface doesn't work anymore (SSH works)

I'm seeing the following in /var/log/messages

2024 Aug 14 10:49:43 EDIWSE daemon.info thttpd: [my source IP] connection timed out reading

I have a ticket open with Checkpoint , no joy yet.

Thanks

0 Kudos
15 Replies
PhoneBoy
Admin
Admin

What happens on the client when you connect to https://device-ip:4434?
I didn’t experience this issue when upgrading to this version. 

0 Kudos
velo
Contributor

You get:

Hmmm… can't reach this pageThe connection was reset.
Try:

ERR_CONNECTION_RESET

0 Kudos
Chris_Atkinson
Employee Employee
Employee

Does the issue persists regardless of browser choice or source address?

I also didn't see this issue post upgrade to this build.

CCSM R77/R80/ELITE
0 Kudos
velo
Contributor

Yes same behaviour, even when in incognito mode. 

To add a bit more detail.

  • I upgraded the firewall and it came up fine, also the VPN back to main location.
  • I noticed management wasn't working via public IP, but it was working via LAN IP over VPN. 
  • I rebooted the Gateway again, then it stopped working completely.

I can access the firewall via SSH on public and LAN IP.

 

0 Kudos
the_rock
Legend
Legend

I dont work much with SMB, but from clish, can you run show web ssl-port?

See what port it shows. Locally or centrally managed?

Andy

0 Kudos
velo
Contributor

That command doesn't work but if you do show admin-access it shows it on port 4434 (correct port)

web-access-port: 4434

0 Kudos
Naama_Specktor
Employee
Employee

Hi @velo ,

My name is Naama Specktor, and I am checkpoint employee.

I will appreciate it if you share TAC SR# , here or in DM.

thanks in advanced,

Naama Specktor

0 Kudos
velo
Contributor

Hi Naama

I sent you the ticket number. (I got some error when sending the DM so let me know if you don't get it)

 

0 Kudos
Pauli
Participant

@velo  

Since we are also about to update:
Have you solved the problem?

0 Kudos
velo
Contributor

Nope, same issue and not luck with Checkpoint TAC yet.

0 Kudos
velo
Contributor

TAC have told me I need to rebuild the whole firewall which is not good. 

0 Kudos
the_rock
Legend
Legend

Thats not great news...just curious, was there any debugging done?

Andy

0 Kudos
velo
Contributor

Not much at all. For that reason I asked if the case can be escalated. Let's see. 

0 Kudos
Amir_Ayalon
Employee
Employee

please share the SR number and R&D will have a look

amiray@checkpoint.com

 

 

0 Kudos
velo
Contributor

DM Sent.. Thanks. 

Part of me thinks maybe policy is corrupted. 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events