- Products
- Learn
- Local User Groups
- Partners
- More
Secure Your AI Transformation
9 April @ 12pm SGT / 3pm CET / 2PM EDT
Check Point WAF TechTalk:
Introduction and New Features
AI Security Masters E6: When AI Goes Wrong -
Hallucinations, Jailbreaks, and the Curious Behavior of AI Agents
Ink Dragon: A Major Nation-State Campaign
Watch HereAI Security Masters E5:
Powering Prevention: The AI Driving Check Point’s ThreatCloud
CheckMates Go:
CheckMates Fest
Dear Community,
I would like to ask you or maybe confirm if the approach of migration will work.
We have an old environment running R77.30 ( Mgmt and GW ). Unfortunately we cannot proceed with migrate export process on the SMS. We rebuild the whole policy and objects ( dumping object and rules file with odumper into csv ) on R8.40 SMS. Next step is to swap from old to new SMS. Plan is to disconnect old SMS and re-establish SIC connection with new SMS.
Question. If this will work or can we expect some complications ? If so, what kind ?
That sounds right, just make sure routing is there, as obviously its needed for SIC to work with the gateway(s), unless its just one standalone machine.
Andy
yes, routing and connectivity both ways is open on all CPX required ports.
thanks 🙂
Then you should be okay.
Andy
Why are you not able to migrate export? Also what about directly upgrading the machine to R80.40 (and then even to a higher version like R81.20)?
If you do decide to use the newly built R80.40 Security Management Server consider doing it in stages. Establish SIC with just one Security Gateway and install policy.
If it works properly (including logs and statuses) and you do not encounter and issue over a predetermined time frame, continue with the next Security Gateway and install policy - first on the newer one and then on both.
Continue until you have moved all the Security Gateways.
Migrate export crashed already one node from the SMS HA. So no further risk to make it once again on that remaining member.
After we move the gateways under new SMS next upgrades to R81.x will be continued.
Thank you for your help !!
Thats my thinking as well.
Andy
Personally, I would still try open TAC case if needed, because you are upgrading to supported version, so if you do get stuck, they should be able to help you out. I get its upgrading from unsupported version, but dont believe that should be a stopper.
Andy
Sorry to say that - but even with a valid maintenance contract TAC did not helped in this case at all. 😞
Thats disappointing...maybe bring it up with your Sales person, see if they can push it further. I know any fw vendor will always help if you are going from unsupported to supported firmware/version.
Best,
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 13 | |
| 10 | |
| 8 | |
| 8 | |
| 6 | |
| 5 | |
| 5 | |
| 5 | |
| 4 | |
| 4 |
Tue 07 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Check Point WAF and IO River: Multi-CDN Security in ActionWed 08 Apr 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: The Cloud Firewall with near 100% Zero Day prevention - In 7 LanguagesWed 08 Apr 2026 @ 07:00 PM (CST)
ERM al Descubierto: Amenazas Ocultas que Pondrán a Prueba tu Empresa en 2026Tue 07 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Check Point WAF and IO River: Multi-CDN Security in ActionWed 08 Apr 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: The Cloud Firewall with near 100% Zero Day prevention - In 7 LanguagesWed 08 Apr 2026 @ 07:00 PM (CST)
ERM al Descubierto: Amenazas Ocultas que Pondrán a Prueba tu Empresa en 2026Tue 14 Apr 2026 @ 03:00 PM (PDT)
Renton, WA: Securing The AI Transformation and Exposure ManagementThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY