<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CG IaaS HA | Manage azure Public IPs associated to VMs, whithin CheckPoint in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/CG-IaaS-HA-Manage-azure-Public-IPs-associated-to-VMs-whithin/m-p/83166#M2297</link>
    <description>What precise results are you getting?&lt;BR /&gt;What are you seeing in the logs?&lt;BR /&gt;Have you confirmed the traffic even reaches the gateway?&lt;BR /&gt;What version/JHF level?</description>
    <pubDate>Sun, 26 Apr 2020 01:57:17 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2020-04-26T01:57:17Z</dc:date>
    <item>
      <title>CG IaaS HA | Manage azure Public IPs associated to VMs, whithin CheckPoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CG-IaaS-HA-Manage-azure-Public-IPs-associated-to-VMs-whithin/m-p/82834#M2296</link>
      <description>&lt;DIV&gt;&lt;DIV&gt;Hello all,&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;We're implementing a Cloud Guard IaaS solution on Microsoft Azure.&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Currently our Virtual Machines are published directly to the Internet using their corresponding Public IP address and ACL's are configured using Network Security Groups.&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;We're routing this outbound traffic to Check Point gateway using an Azure Route Table and it works fine.&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Now we're trying to configure Inbound NAT to these same virtual machines through Check Point but it's not working.&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;What we've done until now:&lt;BR /&gt;1 - Configured a static route in both Check Point gateways destined to source Virtual Machine's network through Check Point's backend interface;&lt;BR /&gt;2 - Associated Virtual Machines' Public IP address to Check Point's frontend Load Balancer object in Azure;&lt;BR /&gt;3 - In Check Point, created a firewall policy destined to Check Point cluster object and allowing our traffic;&lt;BR /&gt;4 - Created an Inbound NAT rule in Check Point to translate traffic destined to Check Point cluster object to be translated into Virtual Machine object.&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Thanks for your help!&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Best regards,&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Dmitry&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2020 15:28:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CG-IaaS-HA-Manage-azure-Public-IPs-associated-to-VMs-whithin/m-p/82834#M2296</guid>
      <dc:creator>Dmitry_Kolt</dc:creator>
      <dc:date>2020-04-23T15:28:19Z</dc:date>
    </item>
    <item>
      <title>Re: CG IaaS HA | Manage azure Public IPs associated to VMs, whithin CheckPoint</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CG-IaaS-HA-Manage-azure-Public-IPs-associated-to-VMs-whithin/m-p/83166#M2297</link>
      <description>What precise results are you getting?&lt;BR /&gt;What are you seeing in the logs?&lt;BR /&gt;Have you confirmed the traffic even reaches the gateway?&lt;BR /&gt;What version/JHF level?</description>
      <pubDate>Sun, 26 Apr 2020 01:57:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CG-IaaS-HA-Manage-azure-Public-IPs-associated-to-VMs-whithin/m-p/83166#M2297</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-26T01:57:17Z</dc:date>
    </item>
  </channel>
</rss>

