> Source: [sk138893](https://support.checkpoint.com/results/sk/sk138893)

# sk138893 - How to create a centrally managed cluster for Embedded Gaia SMB gateways

| Property | Value |
|----------|-------|
| Solution ID | sk138893 |
| Date Created | 2018-10-25 |
| Last Modified | 2023-07-19 |
| Technical Level | General |
| Platform | 20, 400, 110 |

## Solution

**This solution applies only to appliances running version R77.20. For version R81.10.X, refer to the [R81.10.X Centrally Managed Administration Guide](https://sc1.checkpoint.com/documents/SMB_R81.10.X/AdminGuides_Centrally_Managed/EN/Default.htm).**

This article explains how to configure a centrally managed cluster for Gaia Embedded gateways. To configure a locally managed cluster for an SMB Gateway, refer to **[sk121096](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk121096)** *.*

### Procedure

1. Configure two SMB Gateway interfaces as a mirror of one another.  
   Meaning, if Interface\<A\> is configured in Member1, have Interface\<A\> configured as well in the same subnet in member2.  

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster1_11810250435.png)

   <br />

2. When the 2 members are configured properly, configure the cluster object in the Security Management Server.  
   In this example, we will use R80.10 Security Management Server.   

   In R80.10 SmartConsole, configure the new SMB Cluster:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1540466416979/cluster11810250426.png)

1. In this example, we will choose to configure it through "Classic mode". ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster21810250427.png)

2. Choose the correct product hardware and the relevant firmware.

   Add the two New Cluster members from the Option Window (New / Existing)

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster31810250428.png)

3. For each cluster member, define the properties:

   * Name
   * IPv4
   * SIC
   * (Comment...)

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster41810250428.png)
4. SMB Cluster (running Gaia Embedded), can be used only in HA mode. Load Sharing is not supported.

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster51810250429.png)

   <br />

5. Define the Topology (Interfaces configured + Sync + Cluster VIPs).

   Before:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster61810250430.png)

   After:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster71810250431.png)
6. Install the Security policy.

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster81810250433.png)

   <br />

   Wait for the policy installation to complete.

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster91810250434.png)

   <br />

7. When the policy installation completes, open the WebUI -\> Device -\>High Availability.

   Each SMB gateway should show who is the Active / Standby:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster101810250437.png)

   And in the second cluster member:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk138893/cluster111810250438.png)

**Important notes:**

* When configuring a cluster, you cannot use a wireless interface as the Sync interface.
* Configuring Bridge/Switch on network interfaces is not supported in Cluster High Availability mode.
* Adjusting a cluster through*cpconfig* is not supported.
* Running *fullsync* is not supported.
* In Classic Mode, the configuration of two nodes is supported.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
