- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
We have Selected 'Policy Targets' as to install on for Cluster. Policy Targets contains the specific gateway cluster.
Now When I install policy on 'Cluster-1' with target set as 'Cluster-1' 0nly in the situation when I do Policy Install on 'Cluster -2' it still shows installed policy changes on Cluster-1 under 'View Chnages'.
I am not sure if I explained it well.
Thanks
Ravi
If you see attached files, Install on is set to 'Policy Targets' which are specific to cluster only. Now When I go to install policy it shows 419 changes which we made on other clusters not on 'P-cluster'. None of the change related to 'P-cluster' but still it shows under changes list while I do install on 'P-cluster'.
Lets assume the following:
This is correct, those changes had not been applied to Cluster_2 yet so they show as not finished, it is the same policy you made changes to.
I have deleted 1 Policy on 'Cluster_1' and its not used on 'Cluster_2' still it shows waiting install on 'Cluster_2'.
We have 15 cluster in our environment. So if I delete 1 policy on 'Cluster_1' it shows pending install on all rest of 14 clusters.
Just not I have deleted rule on another cluster and it shows the changes on 'Cluster_P'.
We have separate policy install package 'Target' used for each clusters. So each clusters are using different policies.
I mean to say Perimeter firewall will not have same policies as inside firewall. Still if I made any changes on Inside firewall its shows on Perim firewall in pending install.
Is this something known or same policy thing?
Regards,
Ravi
If each policy is only related to a specific cluster, do you have the installation target set? - Yes it set to specific cluster target only.
I have observed this thing in scenario where 'Object_X' is used only on 'Cluster_1' and I do changes on 'Object_X' it will set to install for all the clusters.
Though I need to try other possible way to fix.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY