Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Mighty_Lux_15
Explorer
Jump to solution

VLAN Monitoring on BOND for specific VLAN interface

Hello, 

I'm planing to change the monitored VLAN on CLusterXL. 

Platform : Check Point 6700
R81.10 take 335



I'm following this sk92784=> https://support.checkpoint.com/results/sk/sk92784#

 

According to the SK, it is needed to modify the following file $FWDIR/conf/cpha_specific_vlan_data.conf as below :

NAME_OF_PHYSICAL_INTERFACE_1	VLAN_ID_to_be_MONITORED
NAME_OF_PHYSICAL_INTERFACE_2	VLAN_ID_to_be_MONITORED
NAME_OF_PHYSICAL_INTERFACE_3	VLAN_ID_to_be_MONITORED

Example - monitor VLAN 2 on eth3, and VLAN 7 on eth5:

eth3	2
eth5	7

 

The thing is that i'm using 2 bonds (802.3ad) with 2 interfaces :
bond 1 : eth1-01 & eth1-02       
bond 2:  eth1-03  & eth1-04 


The documentation does not mention anything about bond. 

I would like to monitor VLAN 40 on the bond 1 and VLAN 50 on bond 2
I am wondering if the following lines would do the trick or if I should put the name of the bond instead : 

eth1-01	40
eth1-02	40
eth1-03 50
eth1-04 50


Your help / confirmation would be greatly appreciated.

Regards,
ML15

0 Kudos
1 Solution

Accepted Solutions
emmap
Employee
Employee

Yes, you add each VLAN you wish to monitor as a separate line as you have there.

View solution in original post

0 Kudos
6 Replies
PhoneBoy
Admin
Admin

I believe you specify the bond interface in this case.

Mighty_Lux_15
Explorer

Hello, 

Thank you for your input. 

As sugested, I'll try the following :

bond1	40
bond2	50

I'll let you know the outcome. 

Regards,
ML15

0 Kudos
Bob_Zimmerman
Authority
Authority

This is correct. When using bonding, the raw Ethernet interfaces won't have IPs (or even subinterfaces for the various VLANs), so they won't be able to talk to each other via CCP.

0 Kudos
ajsingh
Explorer

Hi,

Hope all is well. I have similar question but little different requirement :
I have 2 vlans on one Physical interface. Will the enteries be looking like this then : 
eth2 20

eth2 30

I am just confused on syntax for interfaces with more than 1 VLAN on it. 

Thank you

0 Kudos
emmap
Employee
Employee

Yes, you add each VLAN you wish to monitor as a separate line as you have there.

0 Kudos
ajsingh
Explorer

Awesome thank you 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 08:00 AM (CDT)

    South US: HTTPS Inspection Best Practices

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Tue 23 Apr 2024 @ 08:00 AM (CDT)

    South US: HTTPS Inspection Best Practices

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events