> Source: [sk184820](https://support.checkpoint.com/results/sk/sk184820)

# sk184820 - Updatable Objects are not enforced on new auto-scaled Cloud Firewall Gateways in AWS GWLB deployments 

| Property | Value |
|----------|-------|
| Solution ID | sk184820 |
| Date Created | 2026-04-30 |
| Last Modified | 2026-05-06 |
| Technical Level | Advanced |
| Products | Cloud Firewall |
| Versions | R81.20 |
| OS | Gaia |
| Platform | AWS |

## Symptoms

- * Traffic that must match rules that use Updatable Objects (for example, Amazon Web Services or Google Services) is dropped by the cleanup rule.
* A policy install from CME on new auto-scaled Cloud Firewall Gateways shows "Success with warnings":   
  "Gateway uses default Updatable Objects package"  
  "Updatable Objects are not synchronized"

## Cause

When a new Cloud Firewall Gateway scales out, it installs policy before Updatable Objects finish initializing. As a result:

* The Cloud Firewall Gateway starts with a default, minimal Updatable Objects package.
* The Updatable Objects update runs asynchronously after provisioning completes.
* Rules that reference Updatable Objects are not enforced.
* Traffic falls through to the cleanup rule.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
