> Source: [sk184380](https://support.checkpoint.com/results/sk/sk184380)

# sk184380 - Connection from Standby VS to Active VS Fails in VSX Cluster

| Property | Value |
|----------|-------|
| Solution ID | sk184380 |
| Date Created | 2026-01-10 |
| Last Modified | 2026-01-12 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81.20 |

## Symptoms

- * Traffic from a standby Virtual System (VS) on member A to an active VS on member B fails to establish a connection.
* Identity Sharing (Identity Awareness) fails between Virtual Systems (VSs) on VSX when the VSs are not all active on the same cluster member.
* Standby Virtual System in a VSX High Availability cluster cannot perform DNS, ICMP, and HTTP queries to network resources.
* Threat Emulation updates fail on the standby VS.

## Cause

When SecureXL operates in UPPAK mode (an acceleration mode that bypasses certain kernel processing), VSX internal routing logic misroutes packets.  
The packet is sent with correct source and destination, but the receiving member forwards it to the wrong Virtual Switch (VSW) port (for example, wrp512 instead of wrp513).  
This results in packet drop and connection failure.

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing it.  
For faster resolution and verification, collect these files:

1. [CPinfo](https://support.checkpoint.com/results/sk/sk92739) file from the Management Server involved in the case.
2. [CPinfo](https://support.checkpoint.com/results/sk/sk92739) file from the Security Gateway / each Cluster Member / Security Group involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://support.checkpoint.com/results/sk/sk168597).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
