> Source: [sk115142](https://support.checkpoint.com/results/sk/sk115142)

# sk115142 - Switch drops Check Point CCP packets when CCP is working in multicast mode

| Property | Value |
|----------|-------|
| Solution ID | sk115142 |
| Date Created | 2017-01-03 |
| Last Modified | 2018-07-16 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * Output of "`cphaprob state`" command shows that Cluster state of members is "`Active Attention`" and "`Down`".

* Output of "`cphaprob -a if`" command shows that specific interfaces are "`Down`".

* Traffic capture of CCP packets (UDP port 8116) on the problematic interfaces shows that CCP packets are not received from peer members.

* Changing the CCP mode from Multicast to Broadcast per [sk20576](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk20576) resolves the issue.

## Cause

Check Point CCP packets are not able to pass through the switch when CCP is working in multicast mode (by default, the destination IP address of CCP packets is broadcast IP address for the relevant subnet).

Some switches (e.g., Nexus 7000) do not allow traffic that is sent with multicast MAC address, but non-multicast IP address (224.0.0.0 - 239.255.255.255).

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
