> Source: [sk31336](https://support.checkpoint.com/results/sk/sk31336)

# sk31336 - Using Monitor Interface Link State feature to improve ClusterXL interface-failure-detection ability

| Property | Value |
|----------|-------|
| Solution ID | sk31336 |
| Date Created | 2005-11-20 |
| Last Modified | 2020-07-13 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- ClusterXL is unable to conclusively detect and determine the cluster member that is associated with the failure of a monitored interface (either a cluster interface, a Sync interface, or a monitored private interface). The cluster state presents as Active Attention/Down. But the "down" cluster member might actually be the member with the interface that remains connected.

## Cause

Inconclusive ClusterXL detection is associated with the following scenario: A monitored interface in a two-member ClusterXL cluster is connected to a subnet. This subnet contains no other, directly connected network devices that can reply to ICMP Requests (Ping), as used by ClusterXL in its probing. There is also no other traffic from any other subnets transferring through these cluster members. The monitored interface fails. As a result of the disconnected interface, the cluster members cannot receive CCP packets from each other on that network. Furthermore, no other device on the subnet replies to any cluster member's ICMP probing. These conditions result in the cluster's inability to conclusively determine the cluster member associated with the failed interface.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
