> Source: [sk101539](https://support.checkpoint.com/results/sk/sk101539)

# sk101539 - ClusterXL Load Sharing mode limitations and important notes

| Property | Value |
|----------|-------|
| Solution ID | sk101539 |
| Date Created | 2014-07-28 |
| Last Modified | 2024-12-11 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS), R81 (EOS) |

## Solution

Enter the string to filter this table:

|----------------------------------|----------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Category                         | Feature                                            | Limitation                                                                                                                                                          | Comments                                                                                                                                                                                                                                                             |
| **Networking**                   | NAT                                                |                                                                                                                                                                     | Allocation of NAT ports is divided between all cluster members (also applies to the High Availability mode)                                                                                                                                                          |
| **Networking**                   | IPv6                                               | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Networking**                   | Layer 2 Bridge mode                                | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Configuration**                | Full HA                                            | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Configuration**                | VSX mode                                           | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Software Blades and features** | Threat Extraction                                  | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Software Blades and features** | DLP UserCheck                                      | Not supported                                                                                                                                                       | <br />                                                                                                                                                                                                                                                               |
| **Software Blades and features** | DLP 'Ask User' action                              | Not supported                                                                                                                                                       |                                                                                                                                                                                                                                                                      |
| **Software Blades and features** | IPSec VPN with 3rd party IPsec peers               | Enables Sticky Decision Function, which *disables* SecureXL                                                                                                         | Applies only to clusters R80.10 and lower                                                                                                                                                                                                                            |
| **Software Blades and features** | IPSec VPN                                          | In versions from R80.20 to R81, Cluster Load Sharing mode is **not** supported with the IPsec VPN Software Blade This limitation does not apply to VSX in VSLS mode | Support for the IPsec VPN Software Blade is integrated starting in: * [Check Point R81.10](https://support.checkpoint.com/results/sk/sk170416) * [R81 Jumbo Hotfix Accumulator](https://support.checkpoint.com/results/sk/sk170114), Take 34 and higher (PMTR-63196) |
| **Software Blades and features** | Mobile Access * SNX clients * Visitor Mode support | Enables Sticky Decision Function, which *disables* SecureXL                                                                                                         | For example, refer to [sk105018](http://supportcontent.checkpoint.com/solutions?id=sk105018)                                                                                                                                                                         |
| **Software Blades and features** | Application Control                                |                                                                                                                                                                     | Application Control Limit is divided between all cluster members. *Example* : If the 10 Mb limit is configured in the Application Control rulebase on ClusterXL with two members, then each cluster member enforces the 5 Mb limit                                   |

{#Unique_IDTable}

**Note:** For support of ClusterXL Load Sharing mode in versions R80.20 and higher, refer to [sk162637](https://support.checkpoint.com/results/sk/sk162637).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
