Check Point Security Gateway is not able to establish VPN tunnel correctly with Edge cluster after failover
||IPSec VPN, Security Gateway, ClusterXL, Cluster - 3rd party, VSX, Edge, SmartProvisioning / LSM
||R77, R77.10, R77.20
|Platform / Model
Check Point Security Gateway is not able to establish VPN tunnel correctly with Edge cluster after failover if Edge devices are managed by SmartProvisioning.
In kernel table "crypt_resolver_DB" on Security Gateway, the primary link for the Edge cluster is mixed up.
In kernel table "cluster_active_robo" (shows active member of Edge cluster) on Security Gateway, the Primary Edge cluster member is incorrect.
An erroneous entry in the kernel table "Robo_allowed_ranges" on Check Point Security Gateway.
Note: To view this solution you need to