CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > Clustering (Security Gateway HA and ClusterXL)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-12-07
Junior Member
 
Join Date: 2006-04-05
Location: VAN
Posts: 24
Rep Power: 0
_d3nx has an average reputation (10+)
Default ClusterXL Problem on Sun Solaris

Hi All,

We have two SUN SPARC firewall modules working on clusterXL in Load sharing unicast mode. All firewall module versions are NGX HFA04. Behind of the firewall modules, there are two F5 (loadbalancer) working as active-passive (HA) mode. Two F5 work as single loadbalancer like as CheckPoint ClusterXL HA mode did. Each F5 has unique IP address and they are sharing one virtual IP address. MAC address of virtual IP address of F5 is MAC address of active F5 device. Firewall cluster internal interfaces and F5 external interfaces are in the same L2 VLAN.

We are experiencing problem, when the active F5 become passive, although pivot mode of firewall cluster could update its arp table for virtual IP address of F5’s for new MAC, member of firewall cluster couldn’t. Since all the routing is defined to this virtual IP, all connections coming through member node could not be established. When we clear arp table manually on firewall member node with arp –d, everything is starting to work.

are there anybody faced with this problem?
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 12:08.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0