<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Amazon AWS &amp;quot;Auto Scale Group - Existing Centralized VPC for Transit Gateway&amp;quot; without NAT gateways in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Amazon-AWS-quot-Auto-Scale-Group-Existing-Centralized-VPC-for/m-p/240909#M5223</link>
    <description>&lt;P&gt;Greetings,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im trying to deploy a Check Point Network Security (IaaS) Auto Scaling Group in Amazon AWS, its getting deployed within a inspection VPC, and its going to be east-west (within AWS) inspection only, and the customer already has a Transit Gateway and GWLB deployed.&lt;/P&gt;
&lt;P&gt;Management has already been moved from on-premise VMWare ESXi to AWS, its currently running on a r6i.xlarge instance, same with the dedicated log server/smart event, has also been moved and is running on a r6i.xlarge instance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Facing some issues when attempting to deploy this auto-scaling group, the "Auto Scale Group - Existing Centralized VPC for Transit Gateway", aka "tgw-gwlb.yaml" cloud formation template enforces the creation of new NAT Gateways and GWLB, and I cant seem to find any way aroud this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could anyone give me any pointers here? Cant seem to locate any cloud formation or any other AWS templates that would allow me to simply create a Auto-Scaling group and have it attached to existing Transit Gateway and GWLB?&lt;/P&gt;
&lt;P&gt;Would the easiest way to just have let the template create a TGW and NAT GWs, and simply delete them afterwards? Why are NAT GWs a requirement? Why would those be needed unless you want the auto-scaling group to do north-south traffic?&lt;/P&gt;</description>
    <pubDate>Tue, 11 Feb 2025 14:48:38 GMT</pubDate>
    <dc:creator>RamGuy239</dc:creator>
    <dc:date>2025-02-11T14:48:38Z</dc:date>
    <item>
      <title>Amazon AWS "Auto Scale Group - Existing Centralized VPC for Transit Gateway" without NAT gateways</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Amazon-AWS-quot-Auto-Scale-Group-Existing-Centralized-VPC-for/m-p/240909#M5223</link>
      <description>&lt;P&gt;Greetings,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im trying to deploy a Check Point Network Security (IaaS) Auto Scaling Group in Amazon AWS, its getting deployed within a inspection VPC, and its going to be east-west (within AWS) inspection only, and the customer already has a Transit Gateway and GWLB deployed.&lt;/P&gt;
&lt;P&gt;Management has already been moved from on-premise VMWare ESXi to AWS, its currently running on a r6i.xlarge instance, same with the dedicated log server/smart event, has also been moved and is running on a r6i.xlarge instance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Facing some issues when attempting to deploy this auto-scaling group, the "Auto Scale Group - Existing Centralized VPC for Transit Gateway", aka "tgw-gwlb.yaml" cloud formation template enforces the creation of new NAT Gateways and GWLB, and I cant seem to find any way aroud this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could anyone give me any pointers here? Cant seem to locate any cloud formation or any other AWS templates that would allow me to simply create a Auto-Scaling group and have it attached to existing Transit Gateway and GWLB?&lt;/P&gt;
&lt;P&gt;Would the easiest way to just have let the template create a TGW and NAT GWs, and simply delete them afterwards? Why are NAT GWs a requirement? Why would those be needed unless you want the auto-scaling group to do north-south traffic?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 14:48:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Amazon-AWS-quot-Auto-Scale-Group-Existing-Centralized-VPC-for/m-p/240909#M5223</guid>
      <dc:creator>RamGuy239</dc:creator>
      <dc:date>2025-02-11T14:48:38Z</dc:date>
    </item>
    <item>
      <title>Re: Amazon AWS "Auto Scale Group - Existing Centralized VPC for Transit Gateway" without N</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Amazon-AWS-quot-Auto-Scale-Group-Existing-Centralized-VPC-for/m-p/240954#M5224</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Speaking from experience, the best way is to deploy the template as it is and then remove the components you don't need like NAT GW's , Internet GW's etc.&lt;/P&gt;
&lt;P&gt;NAT GW's are not a must but they are within our templates for simple deployments.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 20:29:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Amazon-AWS-quot-Auto-Scale-Group-Existing-Centralized-VPC-for/m-p/240954#M5224</guid>
      <dc:creator>Nir_Shamir</dc:creator>
      <dc:date>2025-02-11T20:29:50Z</dc:date>
    </item>
  </channel>
</rss>

