> Source: [sk183597](https://support.checkpoint.com/results/sk/sk183597)

# sk183597 - Boot loop after enabling IPv6 on a Maestro Security Group

| Property | Value |
|----------|-------|
| Solution ID | sk183597 |
| Date Created | 2025-07-14 |
| Last Modified | 2025-07-15 |
| Technical Level | General |
| Products | Scalable Platforms |
| Versions | R82, R81.20, R81.10 (EOS) |

## Symptoms

- * A boot loop occurs after enabling IPv6 on a Maestro Security Group and rebooting one Security Group Member. The applicable Security Group Member enters a continuous reboot cycle.

* The `/var/log/reboot.log` file contains this message:  

  `Reason: reboot_with_log : Rebooting local blade (global context database was modified, refer to /var/log/configuration_reboot_reason.log) Type: configuration.`  

* The `/var/log/configuration_reboot_reason.log` file contains this message:  

  `Reboot was performed due to configuration mismatch:`  

  `- /opt/CPsuite-R81.20/fw1/conf/fwaccel6_dos_rate_on_install`

## Cause

After you enable or disable IPv6 on a Maestro Security Group, you must reboot all the Security Group Members at the same time. For more information, refer to the Gaia Administration Guide ([R81.10](https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_Gaia_AdminGuide/Topics-GAG/System-Configuration.htm?TocPath=System%20Management%7C_____11) / [R81.20](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Gaia_AdminGuide/Content/Topics-GAG/System-Configuration.htm?tocpath=System%20Management%7C_____12) /[R82](https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_Gaia_AdminGuide/Content/Topics-GAG/System-Configuration.htm?tocpath=System%20Management%7C_____12)).

## Solution

1. Connect to the command line on the Single Management Object.   

   1. If your default shell is the Expert mode, then go to Gaia gClish:  

      `gclish`  

   2. Disable IPv6 support.  

      `set ipv6-state off`  

   3. The reboot loop should stop after the problematic Security Group Member pulls the configuration during the next reboot.  

2. Re-enable IPv6 support during a maintenance window and reboot all Security Group Members at the same time. Make sure all Security Group Members are `Active` before performing the change in gClish.

<!-- -->

1.
   1. Connect to the command line on the Single Management Object.  

   2. If your default shell is the Expert mode, then go to Gaia `gClish`:  

      `gclish`  

   3. Enable IPv6 support.  

      `set ipv6-state on`  

   4. Reboot all Security Group Members at the same time  

      `reboot -b all`

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
