> Source: [sk168157](https://support.checkpoint.com/results/sk/sk168157)

# sk168157 - Wrong cluster state during MVC upgrade of ClusterXL from R77.30 when multiple clusters are on the same network segment 

| Property | Value |
|----------|-------|
| Solution ID | sk168157 |
| Date Created | 2020-07-20 |
| Last Modified | 2020-07-23 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * During upgrade from R77.30 to R80.40 with Multi Version Clustering enabled, after forcing the fail-over (cpstop of the second member) from the not updated R77.30 cluster member to the updated R80.40 cluster member, this member switched to ACTIVE but after a short time it switched to DOWN and the state of the stopped member switches to STANDBY.

* A forced failover from the not upgraded member to the already upgraded member now results in an unwanted state:


  ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1595254715310/image01202007201625241.png)
* After turning off Multi-Version Cluster (MVC) on the upgraded member both members are in the expected state ACTIVE(!) and LOST instead of DOWN and STANDBY:


  ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1595254715310/image02202007201628562.png)
* Related but not causing the issue:  

  CCP Encryption is automatically turned off even after trying to enable it.
  Even when the not upgraded member is stopped with cpstop, there are "Received clear CCP from older version, turning off CCP encryption during upgrade." logs in /var/log/messages.

## Cause

There are multiple clusters in the same network segment (same VLAN, same switch) and for some reason the internal "*cluster_id*" is identical. This can happen if a domain is cloned (exported and re-imported in a new domain) for example.

**Note:** This "cluster_id" should **not** mixed up with "MAC Magic" or "Cluster_Global_ID" that is configured in*fwkern.conf* or via commands "*cphaprob mmagic* " or "*cphaconf cluster_id set\|get*".

<br />

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
