Dear all,

Just want to share my experience on creating a firewall cluster (hope you all don't mind). I had encountered a problem which stop me to complete the creation of firewall cluster recently. When I trying to add one of firewall into a cluster object, it gave me an error message : "The gateway cannot be added to this cluster since it's used in places where cluster members are not allowed". According to Check Point SecureKnowledge Solution ID: #sk19872, Gateways objects cannot be added to a cluster member if they have reference from another object. At first (as I read Check Point solutions #sk16188) I look for the gateway object from the "Installation Targets" list, but there's no gateway object are selected. There also is no gateway stated on my "Install On" column in my rule base.

I keep searching and thinking (until I'm almost gave up), then finally found the 'culprit' which it has references to the firewall object. These two objects are my LAN objects which stated "Install on Gateway" -> my firewall gateway instead of "All" option (under their NAT section). At last, I'm able to complete my firewall cluster smoothly.

Hmm... Configuring firewall cluster in Check Point is quite tricky though.

Peace and cheers.

Regards,

Al

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to