- Products
- Learn
- Local User Groups
- Partners
- More
Introduction to Lakera:
Securing the AI Frontier!
Quantum Spark Management Unleashed!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
Dear CheckMates,
I have running a VSX Cluster with VSLS with some bond interfaces in version R80.20. A couple of VLANs were added to bond1 and in each of my VS systems one of this bond1 VLAN interfaces is used.
Now, the bond1 needs to be remove.
Therefore, I have deleted the bond1 VLAN interface in every VS and installed the policy within that VS.
A "show configuration" still shows the configuration for all the bond1 VLAN interfaces.
"vsx_utill show_interfaces" did't show them.
How to remove the configuration for the bond1 interface completly?
Best regards,
Christian
Did you select to remove Bond1 from Physical Interfaces on the actual VSX Cluster Object and then install the Policy to the VSX Cluster itself.
I believe that afterwards will have to SSH to the box
set vsx off
delete bonding group bond1
set vsx on
Make Sure install policies afterwards
Should remove the bond1 from the VSX Cluster and then remove the bond from the VSX box.
I have installed the policy. It tooks me some time, as I have done this in about 9 different Domains / for 9 different gateways....
This steps, as requested, I will do the next time, when I am at the customer.
set vsx off
delete bonding group bond1
set vsx on
Thanks to all for your help,
Christian
Hi folks,
Sorry for not updating this post earlier.
I run the command "set vsx off" and tried to delete the bond, but it still fails with the error-message "This interface is used by the Dynamic Routing Protocol: Static Routes. Cannot delete the selected interface."
Any ideas?
Best regards,
Christian
Hi Maarten,
in the screenshot you can see in the background, the IP for bond1.4031 is deleted, but I still can't delete the VLAN interface itself.
Best regards,
Christian
How are you trying to delete the vlan interface?
I ask as the WebUI which I am guessing is being run AFTER running the set vsx off as VSX doesn't have the WebUI enabled is showing interfaces with IP from the VSX Network.
You won't be able to delete the bond1 until all of those sub-interfaces are removed.
I would expect that they are deleted in the SmartConsole for the VS that they are created in and then after the topology updates then says to install the security policy.
You said that did this but is contradicted by seeing the vlan interfaces exist in the WebUI which to access would need to have the VSX turned off.
I get the same error when deleting the vlan by webui and cli, did they manage to fix it?
Check your config very carefully.
I would use at least:
clish -c "show configuration" | grep bond
It might show you some leftovers you need to take care of.
Did you also remove the bond interface from the Physical Interfaces tab of the VSX Cluster Properties? If there are no VLANs left on this bond group, you don't want it listed here.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
12 | |
11 | |
7 | |
6 | |
6 | |
6 | |
5 | |
4 | |
4 | |
4 |
Tue 07 Oct 2025 @ 10:00 AM (CEST)
Cloud Architect Series: AI-Powered API Security with CloudGuard WAFThu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Thu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Wed 22 Oct 2025 @ 11:00 AM (EDT)
Firewall Uptime, Reimagined: How AIOps Simplifies Operations and Prevents OutagesAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY