<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Azure Internal Load Balancer after checkpoint in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103407#M1879</link>
    <description>&lt;P&gt;Hello team ,&lt;/P&gt;&lt;P&gt;We have a customer where we will be using checkpoint HA in Azure for north-south traffic .&lt;/P&gt;&lt;P&gt;There is an Azure external LB before Checkpoint .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now there is another Internet Juniper VSRX Standalone FW where all the VPN tunnels(from on prem) will be terminating.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question is can we use a common Internal Load Balancer for both these Firewalls .?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We want all the outbound traffic to go via Checkpoint&amp;nbsp;&lt;/P&gt;&lt;P&gt;and all the on-prem specific traffic go via vSRX&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is a plan to have a F5 WAF after the Internal Load Balancer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So can we have a common Internal Load Balancer to serve as a backend for both Checkppoint and Juniper&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 26 Nov 2020 11:38:15 GMT</pubDate>
    <dc:creator>a_security</dc:creator>
    <dc:date>2020-11-26T11:38:15Z</dc:date>
    <item>
      <title>Azure Internal Load Balancer after checkpoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103407#M1879</link>
      <description>&lt;P&gt;Hello team ,&lt;/P&gt;&lt;P&gt;We have a customer where we will be using checkpoint HA in Azure for north-south traffic .&lt;/P&gt;&lt;P&gt;There is an Azure external LB before Checkpoint .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now there is another Internet Juniper VSRX Standalone FW where all the VPN tunnels(from on prem) will be terminating.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question is can we use a common Internal Load Balancer for both these Firewalls .?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We want all the outbound traffic to go via Checkpoint&amp;nbsp;&lt;/P&gt;&lt;P&gt;and all the on-prem specific traffic go via vSRX&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is a plan to have a F5 WAF after the Internal Load Balancer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So can we have a common Internal Load Balancer to serve as a backend for both Checkppoint and Juniper&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Nov 2020 11:38:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103407#M1879</guid>
      <dc:creator>a_security</dc:creator>
      <dc:date>2020-11-26T11:38:15Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Internal Load Balancer after checkpoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103563#M1880</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone please ?&lt;/P&gt;</description>
      <pubDate>Fri, 27 Nov 2020 20:21:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103563#M1880</guid>
      <dc:creator>a_security</dc:creator>
      <dc:date>2020-11-27T20:21:49Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Internal Load Balancer after checkpoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103572#M1881</link>
      <description>&lt;P&gt;As far as I know, load balancers don’t support IPSec traffic at all.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Nov 2020 02:54:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/103572#M1881</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-11-28T02:54:44Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Internal Load Balancer after checkpoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/104452#M1882</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I would use UDRs (User defined Routes) to direct the OnPrem networks to the Juniper SRX&lt;/P&gt;
&lt;P&gt;Could be both ways, depending on where (subnet) you deploy your UDRs:&lt;/P&gt;
&lt;P&gt;1. OnPrem &amp;lt;-&amp;gt; SRX &amp;lt;-&amp;gt; CP &amp;lt;-&amp;gt; Azure&lt;/P&gt;
&lt;P&gt;2. OnPrem &amp;lt;-&amp;gt; SRX &amp;lt;-&amp;gt; Azure&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Matthias&lt;/P&gt;</description>
      <pubDate>Mon, 07 Dec 2020 07:47:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Internal-Load-Balancer-after-checkpoint/m-p/104452#M1882</guid>
      <dc:creator>Matthias_Haas</dc:creator>
      <dc:date>2020-12-07T07:47:09Z</dc:date>
    </item>
  </channel>
</rss>

