- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi,
I was deleting an interface yesterday on our ClusterXL pair of 7000's. The process caused a failover between the two units after I changed the interface from 'Cluster' to 'Private' in SmartConsole. After this the two units failed over. Our site-to-site VPNs we have that terminate on this ClusterXL pair then stopped working. The VPN is a VTI type from what I understand. From the remote side, our third party told us they could see the VPN's were down, but from our side they appeared to be up, SmartView Monitor showed them as up, and we could see Phase1 and Phase 2 SA's using vpn tu. However, what we then noticed was that the BGP peers relationships which run through these VPN tunnels had stopped working. Nothing we did would bring them back up. It was only once we failed the units back over to the original gateway that was active before starting, the BGP peer relationships came back up and VPN's came back up.
We didn't know why the BGP peer relationships and VPNs failed when we failed over to the other cluster member. Has anyone seen this before or how to troubleshoot this?
Is your router-id a VIP?
Yes, the BGP router-id is a VIP.
What's the router-id configured as and do you use graceful restart?
Hi Chris, how do you normally check if we use graceful restart? Our router-id is configured as one of the cluster IP address VIPs.
Graceful restart is not enabled.
What is the remote end?
Generally it is recommend to enable graceful restart for clustered configurations.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 19 | |
| 17 | |
| 13 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsThu 08 Jan 2026 @ 05:00 PM (CET)
AI Security Masters Session 1: How AI is Reshaping Our WorldAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY