- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello All,
I am trying to setup and L3 port on a cisco switch to connect to a checkpoint Cluster-XL, i cannot figure out how to configure the interfaces on the checkpoint members to manage the traffic coming from the switch.
I have tried adding two switch ports into a port-channel with one of each ports going to the cluster members, however this does not seem to work.
Can someone please advise on the correct way to do this?
- Use two layer 2 ports in the same vlan on the switch.
- Now connect the CP gateways to this ports
- If you use CCP multicast -> do not configure multicast port security on the switch ports
More read here:
R80.x - cheat sheet - ClusterXL
ClusterXL R80.30 Administration Guide
Thanks for your reply,
If use layer 2 i will not be able to add and IP to the cisco switch for the gateway of the LAN
You either use
1.) Single Port on Cisco to Single Port on Check Point, so 1 cable per member NO Port Channel,2 Cables overall
2.) Port Channel on Cisco to Bond Interface on Check Point. ie 2 cables from Cisco to 2 interfaces on the same Check Point that are bonded together, so 4 Cables/Ports used on the Cisco and 2 each on each Check Point Member
You cannot bond interfaces or split a bond on the Cisco across 2 Cluster Members.
You can if your switches can handle it split a Port Channel across 2 Switches and then use a Bond on the Check Point so basically the opposite way to what you trying to do currently. Again would be 4 Cables/Ports in the Cisco and 2 ports on each Check Point.
Thanks for the reply,
So the cisco switch does not need to be a "no switchport" in order to route the traffic? I can apply the IP to the vlan and do an ip route 0.0.0.0 0.0.0.0 "VLAN IP". is this correct ?
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 20 | |
| 19 | |
| 18 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY