Table of Contents
This hotfix has been integrated. It is included in:
Note: CloudGuard Controller is already included in R80.10 GA and above. To review existing features, go to the R80.10 CloudGuard Controller Administration Guide
We recommend installing this hotfix, only if:
- You need one of the issues listed in the "What's New" section below.
- You cannot upgrade to R80.20.
 |
For more information on R80.10 vSEC Controller Hotfix v1, refer to:
You can also visit our Cloud (vSEC) forum, or any other CHECKMATES forum to ask questions and get answers from technical peers and Support experts. |
What's New
- Integration with Google Cloud Platform
- Integration with Cisco ISE
- Integration with Nuage Networks VSP
- Automatic license management with the vSEC Central Licensing utility
- Starting with Jumbo Hotfix Accumulator Take 20, support for R76SP.50 60000/40000 Security Platforms
- Integration of monitoring capabilities into SmartView
Resolved Issues
Note: For Known Limitations, refer to sk121129 - R80.10 vSEC Controller Hotfix v1 Known Limitations and sk110519 - Check Point R80.10 Known Limitations.
ID |
Symptoms |
vSEC Controller |
|
vSEC Controller does not support VSX Virtual System Load Sharing (VSLS).
|
vSEC Controller Server |
02413226 |
'Data Center Object' names should not contain the following characters in their name:
- "{" - opening curly bracket
- "}" - closing curly bracket
- "[" - opening square bracket
- "]" - closing square bracket
- "<" - less than
- ">" - greater than
(If an object name contains one of the above characters, enforcement will not work.) |
Public Cloud |
|
Imported Data Center Tag Object ("Key" or "Value") that is not associated with any instance will be marked as "Object is inaccessible / deleted on Data Center Server" in the SmartConsole. The object will remain in this state until re-imported into the policy. Policy enforcement will resume once instances are associated with the Tag.
|
Installation Instructions
-
Install R80.10 vSEC Controller Hotfix v1:
- Using JHF take 70:
-
Install Take_421 of Check Point R80.10 and then Take_70 of R80.10 Jumbo Hotfix Accumulator, or install Take_462 of Check Point R80.10 and then Take_70 of R80.10 Jumbo Hotfix Accumulator.
-
Install R80.10 vSEC Controller Hotfix v1 on R80.10 Security Management Server / Multi-Domain Security Management Server:
-
Install R80.10 SmartConsole for R80.10 vSEC Controller hotfix v1:
- Using JHF take 154:
-
Install Take_421 of Check Point R80.10 and then Take_154 of R80.10 Jumbo Hotfix Accumulator, or install Take_462 of Check Point R80.10 and then Take_154 of R80.10 Jumbo Hotfix Accumulator, or install Take_479 of Check Point R80.10 and then Take_154 of R80.10 Jumbo Hotfix Accumulator
-
Then, install R80.10 vSEC Controller Hotfix v1 on R80.10 Security Management Server / Multi-Domain Security Management Server:
-
Install R80.10 SmartConsole for R80.10 vSEC Controller hotfix v1:
-
Install Security Gateway and R80.10 vSEC Controller v1 Enforcer Hotfix:
-
On an R80.10 Security Gateway, there is no need to install the Enforcer Hotfix.
-
Install R80.10 vSEC Controller v1 Enforcer Hotfix on Security Gateway R77.20 / R77.30:
- On R77.30 Security Gateway with R77.30 Jumbo Hotfix Accumulator Take_309 and above, there is no need to install the Enforcer Hotfix.
Show / Hide the Notes
- This package of R80.10 vSEC Controller v1 Enforcer Hotfix for Security Gateway R77.30 can be installed:
- either on top of R77.30 GA,
- or on top of Take_185 (and above) of R77.30 Jumbo Hotfix Accumulator
(otherwise, the installation of the R80.10 vSEC Controller v1 Enforcer Hotfix will fail)
- This package of R80.10 vSEC Controller v1 Enforcer Hotfix for Security Gateway R77.20 can be installed:
- on top of R77.20 GA,
- or on top of Take_99 (and above) of R77.20 Jumbo Hotfix Accumulator
(otherwise, the installation of the R80.10 vSEC Controller v1 Enforcer Hotfix will fail)
- For CPUSE Online installation instructions, refer to sk92449 - sections (4-A-a) / (4-A-b) and (4-B-a).
- Before installing this package using CPUSE on an offline machine, it is required to manually install the latest build of CPUSE Agent from sk92499.
- For CPUSE Offline installation instructions, refer to sk92449 - sections (4-A-c) / (4-A-d) and (4-B-a).
- Legacy CLI installation instructions:
- Transfer the hotfix package to the machine (into some directory, e.g., /some_path_to_fix/).
- Unpack and install the hotfix package:
[Expert@HostName:0]# cd /some_path_to_fix/
[Expert@HostName:0]# tar -zxvf Check_Point_<Version>_vSEC_Controller_Enforcer_Hotfix_Gaia_ sk115772.tgz
[Expert@HostName:0]# ./fw1_wrapper_<HOTFIX_NAME>
Note: The script will stop all of Check Point services (cpstop) - read the output on the screen.
- Reboot the machine.
- On Security Gateway R77.20, only Legacy CLI installation is supported.
Documentation
Product |
Link |
R80.10 vSEC Controller v1 |
|
vSEC for NSX |
|
vSEC for Amazon Web Services |
|
vSEC for Microsoft Azure |
|
Revision History