> Source: [sk69642](https://support.checkpoint.com/results/sk/sk69642)

# sk69642 - IPSO-to-Gaia Upgrade Verifier Information and Warnings by IPSO Feature

| Property | Value |
|----------|-------|
| Solution ID | sk69642 |
| Date Created | 2012-03-27 |
| Last Modified | 2020-10-11 |
| Technical Level | General |
| OS | Gaia |

## Solution

The IPSO-to-Gaia Upgrade Verifier script (refer to [sk90400](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk90400)) generates output messages that identify, which IPSO features will be altered by the IPSO-to-Gaia Upgrade process, and which are not upgradeable at this time.

The Upgrade Verifier has 3 levels of severity:

* Critical Error (highest level)
* Warning (medium level)
* Information (lowest level)

In addition, review the Upgrade Verifier Limitations.

Below is the list of features at each level, along with suggestions for actions, which may be taken:

### Critical Errors - Upgrade Process will be stopped: {#Critical Errors}

|---|----------------------------------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------|
| # | Category                               | Description                                                                                                                                                                                                    | Next steps                                                                                                                                          |
| 1 | Flash-based IP Appliance               | A Flash-based IP Appliance is not supported by the Gaia versions *lower than R77.10*.                                                                                                                          | Flash based systems are supported since *R77.10*. Until that time, there is always the option to convert the flash-based Appliances to disk-based.  |
| 2 | Check Point Security Management Server | All configuration for Check Point Security Management Server is lost after upgrade.                                                                                                                            | Follow the procedure in [sk69643](http://supportcontent.checkpoint.com/solutions?id=sk69643) to upgrade the Check Point Security Management Server. |
| 3 | Multiple IP Addresses                  | Some logical interfaces have multiple IP addresses. Check Point FireWall on Gaia does not support multiple IP addresses on an interface. Details are in file "`./tmp/verify-IPSO-for-Gaia.interface-details`". | Remove all but one IP address from these logical interfaces.                                                                                        |
| 4 | ADP Card                               | System contains an ADP card.                                                                                                                                                                                   | Remove ADP card prior to performing the upgrade.                                                                                                    |

### Warnings: {#Warnings}

|---|---------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|-------------------------------------------------------------------------------------------------------------------------------------------|
| # | Category                  | Description                                                                                                                                                                                                                                                                                                                                                             | Next steps                                                                                                                                |
| 1 | Job Scheduler             | Some cron jobs have elements not supported. Details are in file "`./tmp/verify-IPSO-for-Gaia.cron-details`".                                                                                                                                                                                                                                                            | If you remove the unsupported job elements, the remaining will be upgraded.                                                               |
| 2 | Multiple Default Gateways | Multiple default gateways are not supported.                                                                                                                                                                                                                                                                                                                            | Remove all but one default gateway configuration.                                                                                         |
| 3 | NTP                       | The following are not supported after upgrade: * NTP Reference Clock configuration * NTP Autokey configuration * NTP Peer configuration Only 2 NTP Servers are supported after upgrade. Configuration for NTP Servers '`218.200.246.196`' and '`218.200.246.197`' will be removed. NTP Drift-file configuration will be replaced by a Gaia configuration after upgrade. | * Remove NTP reference clock configuration. * Remove NTP autokey configuration. * Remove all but two NTP servers. * Remove all NTP peers. |

### Informational Messages: {#Informational}

|----|----------------------------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| #  | Category                         | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| 1  | AAA                              | IPSO AAA configuration will be replaced by a Gaia AAA configuration after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| 2  | AAA RADIUS server configuration  | RADIUS server configuration is not used by Gaia AAA configuration.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| 3  | AAA TACACS+ server configuration | TACACS+ server configuration is not used by Gaia AAA configuration.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| 4  | Access Lists                     | IPSO Access Lists are not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| 5  | Advanced System Tuning           | The IPSO Advanced System Tuning parameters are not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| 6  | Aggregation Class                | Aggregation Class is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| 7  | ARP                              | The following are not supported after upgrade: * Accept Multicast ARP Replies. * ARP Mirroring for HA is not supported after upgrade. * Retry Limit is not supported after upgrade. * Proxy-ARP using an interface is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                             |
| 8  | System Failure Notification      | System Failure Notification is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| 9  | Backup and Restore               | The following are not supported after upgrade: * Manual Backup is not supported after upgrade. * Scheduled Backup is not supported after upgrade. **Next steps:** Gaia has image management capability, which is used for backing up and restoring the system. Please configure backups using the Gaia Portal.                                                                                                                                                                                                                                                                                                 |
| 10 | Custom Dashboard                 | The Voyager Custom Dashboard is not supported after upgrade. **Next steps:** The Gaia Portal's 'Overview' page is customizable. Set the 'OverView' to show the required information and widgets.                                                                                                                                                                                                                                                                                                                                                                                                               |
| 11 | DHCP Client                      | Gaia has DHCP Client capability, but the configuration from IPSO is not upgraded.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| 12 | DHCP Server                      | Gaia does support DHCP Servers, however there are many parameters in IPSO configurations, which are not supported: * Dynamic DNS for DHCP Server. * NTP Server for DHCP Subnet '9.1.1.0'. * SMTP Server for DHCP Subnet '9.1.1.0'. * Fixed-IP-Address Clients for DHCP Server. * Templates for DHCP Clients for DHCP Server.                                                                                                                                                                                                                                                                                   |
| 13 | DSCP-VLAN Priority:              | DSCP-VLAN Priority is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| 14 | Remote Core Dump Server          | Remote Core Dump Server is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| 15 | DVMRP                            | DVMRP is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| 16 | ECST                             | ECST is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| 17 | External Load Balancer Support   | External Load Balancer Support is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| 18 | FW Log                           | IPSO FW Log configuration will be replaced by a Gaia FW Log configuration after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| 19 | Disk Mirroring                   | Gaia supports Software or Hardware RAID (Depending on platform type). IPSO Disk Mirroring is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| 20 | HA Voyager Configuration         | HA Voyager Configuration is not supported after upgrade. Any VRRP configuration created via this feature is retained after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| 21 | Voyager Web Access               | IPSO Voyager Web Access configuration is not used after upgrade. It will be replaced by a Gaia Web Access configuration. Session Timeout is retained after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| 22 | Interface Names                  | Interface names are changed after upgrade. All bindings containing an interface name are altered.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| 23 | IGRP                             | IGRP is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| 24 | Network Access and Services      | Admin network login configuration is not used after upgrade. The following are not supported after upgrade: * Access service '`ftp`'. * Access service '`tftp`'. * Access service '`echo`'. * Access service '`chargen`'. * Access service '`daytime`'. * Access service '`time`'. * Access service '`discard`'. * COM2 login. * COM3 login. * COM4 (PCMCIA) login. * USB modem.                                                                                                                                                                                                                               |
| 25 | Interfaces                       | The following are not supported after upgrade: * DVMRP Tunnels. * GTP Tunnels. * IPSec Tunnels. * IPsec6 Tunnels. * GRE Tunnels. * Some physical and logical interface attributes. Details are in file "`./tmp/verify-IPSO-for-Gaia.interface-details`". Additional note about interfaces: If, on IPSO OS, any network interface cards are not configured with speed and duplex, then after upgrade to Gaia OS these interfaces use Gaia's defaults, which in some cases differ from IPSO's defaults. To work around this problem, configure speed and duplex on each interface before (or after) the upgrade. |
| 26 | IP Clustering                    | Gaia supports ClusterXL and VRRP as HA solutions. IPSO IP Clustering is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| 27 | Link Aggregation                 | These LAG attributes for group '10' will be removed: * Minimum Active Ports * LACP Mode * Port Priority * System Priority These LAG attributes for group '99' will be removed: * Minimum Active Ports * LAG speed * LAG duplex These LAG attributes for group '800' will be removed: * Minimum Active Ports * LAG speed * LAG duplex                                                                                                                                                                                                                                                                           |
| 28 | Link Redundancy                  | These LRG attributes for group '30' will be removed: * LRG speed * LRG duplex                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| 29 | Firewall Kernel Tuning           | Firewall Kernel Tuning is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| 30 | Maximum Number of VLANs Allowed  | Maximum Number of VLANs Allowed is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| 31 | Banner and MOTD                  | The default Banner, MOTD and FTP Welcome messages are changed. Custom Banner, MOTD and FTP Welcome messages are retained.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| 32 | Static Multicast Routes          | Static Multicast Routes is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| 33 | NAT for PIM                      | PIM NAT is not supported after upgrade. NAT on Gaia is supported in the Firewall.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| 34 | Netflow                          | Netflow is supported in Gaia OS, but is not upgraded from IPSO OS. After upgrade, follow [sk102041](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk102041).                                                                                                                                                                                                                                                                                                                                                                                       |
| 35 | IPv6 OSPFv3                      | IPv6 OSPFv3 is supported in Gaia OS, but is not upgraded from IPSO OS.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| 36 | Policy Based Routing             | Gaia OS provides Policy Based Routing support for a combination of Source address, Destination address and Interface. Configuration for IPSO Policy Based Routing is not upgraded in the Gaia GA Release.                                                                                                                                                                                                                                                                                                                                                                                                      |
| 37 | Performance Monitoring           | IPSO Performance Monitoring parameters are not supported by upgrade. Gaia has performance monitoring via CLI commands and SmartView Monitor.                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| 38 | Packages                         | IPSO Packages are not supported after upgrade. Check Point Packages are pre-installed.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| 39 | Queue Class                      | Queue Class is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| 40 | Routing Options                  | Next Hop Selection Algorithm will always be converted to "`Source/destination hash`".                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| 41 | SNMP                             | These SNMP Traps are not supported after upgrade: * frDLCIStatusChange Trap * VRRP Traps * Link Aggregation Traps * IPSO Clustering Traps * System Traps: * `systemTrapDiskMirrorSyncFailure` * `systemTrapDiskFailure` * `systemTrapDiskMirrorSyncSuccess` * `systemSnmpProcessShutdown` * `systemTrapDiskMirrorSetCreate` * `systemTrapNoDiskSpace` * `systemTrapConfigurationFileChange` * `systemTrapDiskMirrorSetDelete`                                                                                                                                                                                  |
| 42 | SSH                              | IPSO SSH configuration is not used after upgrade. It will be replaced by a Gaia SSH configuration.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| 43 | System Logging                   | "`Accept syslog messages from remote machines`" is not supported after upgrade. System logging to `/dev/console` is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| 44 | Time Zone DST Rules              | Time Zone DST Rules is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| 45 | User Home Directories            | Contents of users' Home directories are not retained after upgrade. User '`cadmin`' is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| 46 | VRRP                             | Monitor HDD State is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| 47 | VRRPv2                           | VRRPv2 is not supported after upgrade.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| 48 | Transparent Mode                 | IPSO Transparent Mode is not supported after upgrade. The Gaia alternative is Bridge Mode, but there are differences, which should be observed when setting up bridge mode. For example, packets passing through the Gaia bridge are not dropped when the VRRP member is in Standby mode.                                                                                                                                                                                                                                                                                                                      |
| 49 | IPv6                             | Gaia supports IPv6. IPSO IPv6 configuration parameters are not upgraded. All IPSO configuration for IPv6, including any interface, hosts and routing configuration, will be removed.                                                                                                                                                                                                                                                                                                                                                                                                                           |

### Upgrade Verifier Limitations {#Upgrade Verifier Limitations}

The following items, although configurable in IPSO, are not upgraded, and are not currently flagged by the Upgrade Verifier:

* UDLD
* SNMP trapPduAgent
* VRRP Active-Active mode
* Configured TCP MSS (MTU) size
* OSPF Graceful Restart
* ECMP algorithms greater than 1
* PIM Reverse Packet Forwarding
* BGP Global MED
* IP Directed Broadcast
* Failover on Bond interfaces

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
