- Products
- Learn
- Local User Groups
- Partners
- More
Scaling Check Point Automation with Arodonata
7 October @ 5pm CET / 11am EDT
AI Security Masters
LGTM: Bypassing an LLM Build Gate
When Prompt Injection Fails
What's New in Check Point SASE
The State of Ransomware Q2 2026:
This Quarter's Trends, and Their Impact on Your Defenses
CheckMates Go:
Half is Not Enough
Dear All,
We have being trying to do an R80.20 Standalone cluster migration to a Distributed environment without success. We have followed the below SK without any success
Also, is there a script/way to migrate the rules, objects and NATs since the above does not work.
Any help will be appreciated. Thank you.
George
If by Standalone Cluster, you mean Full HA (where management is on both cluster members), the procedure in sk179444 is not supported.
This is noted in the Limitations section.
Your only option is something like the following: https://community.checkpoint.com/t5/API-CLI-Discussion/Python-tool-for-exporting-importing-a-policy-...
You can run this tool against the primary system to export much of the Access Policy and Threat Prevention configuration and import it into a newly installed management server.
You will have to create several objects manually, but it’s far easier than recreating the entire configuration from scratch.
Where did you fail? It is hard to help you without knowing more details.
If by Standalone Cluster, you mean Full HA (where management is on both cluster members), the procedure in sk179444 is not supported.
This is noted in the Limitations section.
Your only option is something like the following: https://community.checkpoint.com/t5/API-CLI-Discussion/Python-tool-for-exporting-importing-a-policy-...
You can run this tool against the primary system to export much of the Access Policy and Threat Prevention configuration and import it into a newly installed management server.
You will have to create several objects manually, but it’s far easier than recreating the entire configuration from scratch.
Hi Val and PhoneBoy,
Thank you both for the replies. Yes, it's a Full HA and we saw the limitation on SK. So, the only way is to try the python script. We will do so and hopefully we will be able to export most of the access policy. Thank you again.
See here for a working solution Migrate R80.40 Full HA to distributed Management
Hi and thank you for the reply. Will this work on a Full HA R80.20 also?
That may well be - but i would try to upgrade to R80.40 first, R80.20 is unsupported since last September...
Thank you, we will try that.
Hi again,
We followed the procedure with both R80.40 and R81.10 with the same issue, we can not promote the Management
[Expert@CPMGT:0]# $FWDIR/bin/promote_util
Binding to localhost...Done
Opening database...Done
Promote failed.
Please make sure all clients are disconnected
Any ideas are welcomed. Thank you.
Maybe TAC can help with this step. It is from sk114933 - so this step is supported.
Hi again,
We have a case with the TAC since day one, unfortunately not much help there. Thank you anyway.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 33 | |
| 8 | |
| 6 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 4 | |
| 3 |
Thu 01 Oct 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point WAF | Preventing minus-zero-day attacksTue 06 Oct 2026 @ 12:00 PM (ACDT)
Rethinking Network Security for the AI Era : Session 2 - From User, to Branch and Campus APACTue 06 Oct 2026 @ 03:00 PM (CEST)
Rethinking Network Security for the AI Era : Session 2 - From User, to Branch and Campus EMEAThu 01 Oct 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point WAF | Preventing minus-zero-day attacksTue 06 Oct 2026 @ 12:00 PM (ACDT)
Rethinking Network Security for the AI Era : Session 2 - From User, to Branch and Campus APACTue 06 Oct 2026 @ 03:00 PM (CEST)
Rethinking Network Security for the AI Era : Session 2 - From User, to Branch and Campus EMEATue 06 Oct 2026 @ 02:00 PM (EDT)
Rethinking Network Security for the AI Era : Session 2 - From User, to Branch and Campus AMERAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY