> Source: [sk185030](https://support.checkpoint.com/results/sk/sk185030)

# sk185030 - Anti-Bot and Anti-Virus updates on a cluster fail with "failed to copy amw_db_v8_pkg.tar" error when manual update mode is enabled

| Property | Value |
|----------|-------|
| Solution ID | sk185030 |
| Date Created | 2026-06-17 |
| Last Modified | 2026-06-21 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * Anti-Bot and Anti-Virus updates on a cluster fail with "*Update failed. failed to copy /tmp/Anti-Bot/amw_db_v8_pkg.tar to /opt/CPsuite-R8x.x/fw1/amw/update/shared/amw_db_v8_pkg.tar* " error when manual update mode is enabled. 
  Anti-Bot and Anti-Virus database versions display as `Unknown`.

* The issue persists after rebooting both cluster members and installing policy.

* The *$FWDIR/amw/update/next_update* file keeps updating with retry times, indicating repeated failed attempts.

* Firewall debug logs show that during the update process, the system tries to copy a file locally, but fails because the source file is missing:   

  `... ciu_srv_fetch_local: source file /tmp/Anti-Bot/amw_db_v8_pkg.tar does not exist ...`

## Cause

The Security Gateway is in `manual_update` mode because of the presence of this file:   
`$FWDIR/amw/update/manual_update`

In this mode:

* The Security Gateway does not download updates from Check Point servers.
* The Security Gateway expects update packages in `/tmp/Anti-Bot`.
* If no package exists, the update fails.

This mode is typically enabled during offline or manual update operations and remains active until the file is removed.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
