Check Point offers a hotfix for this issue for R77.30 Security Management Server running on Gaia OS and on IPSO OS.
Important Note: This hotfix was already integrated into R77.30 Security Management Server running on SecurePlatform OS, Linux OS and Windows OS, effective May 27, 2015. For details, refer to R77.30 Home Page.
Click Here to Show Entire Article
Installation instructions
-
-
Hotfix package for R77.30 - Gaia OS (manual installation in Command Line)
In order to download this package you will need to have a Software Subscription or Active Support plan.
Procedure:
- Hotfix has to be installed on R77.30 Security Management Server / Multi-Domain Security Management Server running Gaia OS.
- Download the relevant hotfix package from the table below, transfer the hotfix package to the machine and unpack it:
[Expert@HostName]# tar -zxvf Check_Point_Hotfix_R77.30_Gaia_sk106196.tgz
- Install the hotfix:
[Expert@HostName]# ./UnixInstallScript
Note: The script will stop all of Check Point services ('cpstop') - read the output on the screen.
- Start Check Point services:
[Expert@HostName]# cpstart
Notes:
- Make sure to take a snapshot of your Check Point machine before installing this hotfix.
- In Management HA environment, this procedure must be performed on both Management Servers.
-
Hotfix package for R77.30 - IPSO OS (manual installation in Command Line)
In order to download this package you will need to have a Software Subscription or Active Support plan.
Procedure:
- Hotfix has to be installed on R77.30 Security Management Server running on IPSO OS.
- Download the relevant hotfix package from the table below, transfer the hotfix package to the machine and unpack it:
[admin]# tar -zxvf Check_Point_Hotfix_R77.30_IPSO_sk106196.tgz
- Install the hotfix:
[admin]# ./UnixInstallScript
Note: The script will stop all of Check Point services ('cpstop') - read the output on the screen.
- Start Check Point services:
[admin]# cpstart
Notes:
- In Management HA environment, this procedure must be performed on both Management Servers.
Uninstall instructions
-
On Gaia OS using CPUSE (Check Point Update Service Engine)
- Connect to the Gaia Portal on R77.30 Security Management Server / Multi-Domain Security Management Server and navigate to Upgrades (CPUSE) pane - click on Status and Actions.
- Select Installed in the menu near the Help icon.
- Select the hotfix package R77.30 Hotfix for sk106196 (Policy installation fails with "ERROR: stab identifier for host redefined") - click on More button on the toolbar - click on Uninstall.
Example:
- When the hotfix uninstall completes, log in to Expert mode and start Check Point services with "cpstart" command.
Notes:
-
On Gaia OS and IPSO OS (manual uninstall in Command Line)
- Download and unpack the hotfix package (refer to the "Installation instructions" (manual installation in Command Line) above) on R77.30 Security Management Server / Multi-Domain Security Management Server.
- Run the installation script with "-u" flag:
# ./UnixInstallScript -u
- Start Check Point services:
# cpstart
Notes:
- In Management HA environment, this procedure must be performed on both Management Servers.
Workaround instructions
If you do not wish to install the hotfix, then the following workaround is available:
- In SmartDashboard, open the object of Security Gateway "GW_2" (refer to the example in "Symptoms" section).
- Enable the "IPSec VPN" blade and click on OK.
- Install policy on "GW_2".
Applies To:
- 01678465 , 01951764 , 01709620 , 01678185