> Source: [sk101287](https://support.checkpoint.com/results/sk/sk101287)

# sk101287 - Some connections are dropped as out of state after failover in ClusterXL HA mode on 21000 appliances with SAM card

| Property | Value |
|----------|-------|
| Solution ID | sk101287 |
| Date Created | 2014-06-25 |
| Last Modified | 2015-09-17 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * Some connections are dropped as out of state after failover in ClusterXL HA mode on 21000 appliances with SAM card.

* SecureXL SIM debug on new Active member shows:

  ```
  
  ;fwconn_cphwd_get_acct_timeout: returned expiration_time = 20 (time is ...);
  ;fwconn_ent_expire: SXL/FLOWS decision: delay, new timeout=0, new ttl=20;
  ;cphwd_notif_conn_deleted: trying to delete conn
  ```

## Cause

Check Point software implements a refresh mechanism on the accelerated connections when ClusterXL is configured in HA mode. This refresh mechanism ensures that the connections stay alive in both Active as well as Standby member. Refresh mechanism is active only on the Active cluster member and constantly (every 10 minutes) polls on a given connection to ensure there is activity on the connection. The response of this refresh request from accelerator device is periodically synchronized to Standby cluster member to make sure connection stays alive on Standby member as well.

Currently, upon failover, when a Standby member becomes Active, this refresh mechanism is not getting activated. As a result, the connections are getting deleted after a number of hours.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
