CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have sign-ups from twelve different countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 7/14, 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartCenter Server (Formerly Management Server)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2008-04-03
bill90039 bill90039 is offline
Junior Member
 
Join Date: 2008-04-02
Posts: 2
Rep Power: 0
bill90039 has an average reputation (10+)
Default Question on upgrade from R61 to R65

Running SecurePlatform (SPLAT) here.

I am going to be upgrading the SmartCenter server first from R61 to R65. I will upgrade my existing VPN-1 gateway server cluster at a later time. (I'm upgrading the SmartCenter server so that I can manage a new set of gateways which will be running R65.)

The upgrade instructions (patch add cd) says it will create a snapshot before the upgrade. It says that the snapshot will stop services (using cpstop).

I need to confirm that the snapshot/cpstop activity will only affect the SmartCenter server itself, and that the active gateways will not be affected.

While the SmartCenter is being upgraded, will the gateways queue up their logging entries locally for subsequent updating into the SmartTracker (on the SmartCenter server) or will I lose gateway logging activity while the SmartCenter is being upgraded?

Hope these questions make sense.

Thanks,
Bill
Reply With Quote
  #2 (permalink)  
Old 2008-04-03
melipla melipla is offline
Senior Member
 
Join Date: 2006-01-25
Posts: 724
Rep Power: 3
melipla has an average reputation (10+)
Default Re: Question on upgrade from R61 to R65

All very good questions.

The gateways will log locally to their $FWDIR/log directories. I think you have to "pull" them into the smartcenter afterwards if you want the logs to reside centrally, but I've only read about this [see "fw log" from CLI].

The snapshot will only affect services on the smartcenter. It will not stop services on other gateways. If you have any edge devices, be sure to push out a policy to them after you've upgraded the smartcenter server.

HTH
__________________
Its all in the documentation.
Reply With Quote
  #3 (permalink)  
Old 2008-04-04
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 129
Rep Power: 2
hotice_ has an average reputation (10+)
Default Re: Question on upgrade from R61 to R65

Logs are indeed stored locally as soon as it detects that it cannot send to the SCS.

It will attempt to "repush" the logs for a certain period of time (half hour?) and then just store it locally.

After you've recovered connectivity between the enforcement point and the SCS, you'll have to push the policy for it to start sending logs home again. To recover the gap in between in the logs, you'll have to fetch the logs from the SCS and then merge it to your current log files...
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 01:48.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0