> Source: [sk169512](https://support.checkpoint.com/results/sk/sk169512)

# sk169512 - Security Gateway is in "Down" state in a Maestro Dual Site environment 

| Property | Value |
|----------|-------|
| Solution ID | sk169512 |
| Date Created | 2020-09-21 |
| Last Modified | 2020-12-02 |
| Technical Level | Advanced |
| Products | Scalable Platforms |
| Versions | R82.20, R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * Security Gateway is in "Down" state in a Maestro Dual Site environment.
* The output of the *Cphaprob list* command shows that the reason for the Security Gateway's being down is due to either a "Full Sync" pnote or another pnote, which denotes a connectivity issue between the two sites.
* The inter-site link between the First Orchestrator on Site 1 and the First Orchestrator on Site 2 is down. However, the inter-site link between the Second Orchestrator on Site 1 and the Second Orchestrator on Site 2 is still up.
* The status of the *eth1-Sync* interface is `down`; the output of *ifconfig eth1-Sync* does not show that the interface is `UP`.
* The status of the *eth2-Sync* interface is not `down`; the output of *ifconfig eth2-Sync* shows that the interface is `UP`.
* One Security Gateway is configured on each Site.<br />

## Cause

If the link between the First Orchestrator on Site 1 and the First Orchestrator on Site 2 is down, the *eth1-Sync* link goes down on the Security Gateway on Site 1 as well as on the Security Gateway on Site 2. The Security Gateways communicate through *eth2-Sync* .  

In this scenario, *eth1-Sync* is down on the Security Gateway on Site 1, but up on the Security Gateway on Site 2. This causes the Security Gateway on Site 2 to try to communicate with the Security Gateway on Site 1 via the *eth1-Sync* interface. The pull configuration process fails during the boot of the Security Gateway on Site 2, and as a result it remains down.

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
