- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
ClusterXL Failover.
Hello,
Is there any "practical" way to validate the reason "why" our ClusterXL did a failover?
We want to rule out that it was a CPU problem and / or equipment configuration.
The cphaprob state, shows the following.
Is there any other documentation to check in these "situations"?
Greetings.
Andy,
I found this, with the command you recommended.
I have the impression, and I am almost sure, that it was a manual "shutdown" of the equipment, either it was disconnected from the mains, or something similar.
By the way, in your command grep -i DOWN /var/log/messages* ... how can you filter the date only for today, 06September?
Cheers, 🙂
Yes, there are ways to tell...
Btw, I would NOT be using routable IPs for sync, as 3.3.3.x is Amazon range...I always tell customers to use 169.254.x.x range
Anyway, having said that, I would run below and look for messages in proper date/time span
from expert -> grep -i DOWN /var/log/messages*
Andy
Andy,
I found this, with the command you recommended.
I have the impression, and I am almost sure, that it was a manual "shutdown" of the equipment, either it was disconnected from the mains, or something similar.
By the way, in your command grep -i DOWN /var/log/messages* ... how can you filter the date only for today, 06September?
Cheers, 🙂
There ya go bro, thats your answer : - )
Not sure if you can filter for specific date, will check.
Andy
cphaprob show_failover
This shows a log of up to 20 failovers going back to the last time services were restarted. It doesn't always give a lot of detail. It also doesn't contain state changes which did not result in a failover (like standby to down).
Thanks for that, totally forgot about the command.
Andy
Hello,
This is a bit of a silly question, but when you apply the command, like:
cphaprob show_failover, the result says something like.
"member2 -> member1"
It's silly the doubt, but by "member2" do you mean, the same computer, where at that moment, I'm running the command?
Greetings.
It would show you exact same output on both, but no matter the context, it would look at member 2 as current standby and member 1 as active.
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 24 | |
| 20 | |
| 8 | |
| 7 | |
| 6 | |
| 5 | |
| 5 | |
| 5 | |
| 4 | |
| 4 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY