<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Quantum SD-WAN Installation for Beginners: A Step-by-Step Guide from Zero to First Traffic Steering in SD-WAN</title>
    <link>https://community.checkpoint.com/t5/SD-WAN/Quantum-SD-WAN-Installation-for-Beginners-A-Step-by-Step-Guide/m-p/270309#M317</link>
    <description>&lt;P&gt;Below is a step-by-step guide from scratch (beginner-friendly) to install and enable Check Point Quantum SD-WAN on firewalls/clusters, with validation checkpoints at each stage.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Assumptions (adjust to your environment):&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Gateway/Cluster running Gaia (appliance or open server).&lt;/LI&gt;&lt;LI&gt;Management via SmartConsole (Smart-1 Cloud or on-prem).&lt;/LI&gt;&lt;LI&gt;SD-WAN managed through the Infinity Portal.&lt;/LI&gt;&lt;LI&gt;You have at least two WAN/ISP links (SD-WAN makes the most sense in this setup).&lt;/LI&gt;&lt;LI&gt;Initial goal: Local Breakout (the simplest). We’ll expand later to Overlay/Backhaul.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_0-1770809162316.png" style="width: 659px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33148i3DA8CC6A1AA4B924/image-dimensions/659x440?v=v2" width="659" height="440" role="button" title="WiliRGasparetto_0-1770809162316.png" alt="WiliRGasparetto_0-1770809162316.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;0) Prerequisites (before changing anything)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;0.1 Licensing and Version&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm that your gateway/cluster has compatible licensing and that the software version is supported (R81.10, R81.10.X, R81.20, R82, R82.10). For more details, refer to sk180605.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm you have access to the Infinity Portal and the required permissions for SD-WAN.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_1-1770809162317.png" style="width: 592px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33146iD2297D779D3AA1E0/image-dimensions/592x330?v=v2" width="592" height="330" role="button" title="WiliRGasparetto_1-1770809162317.png" alt="WiliRGasparetto_1-1770809162317.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1) Prepare the Gateway/Cluster (Gaia) — from basics to SD-WAN&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1.1 Configure WAN and LAN interfaces&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In Gaia (WebUI/CLI):&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Configure the IP address, subnet mask, and VLAN (if needed).&lt;/LI&gt;&lt;LI&gt;Use clear, consistent interface names (e.g., &lt;STRONG&gt;WAN_ISP1&lt;/STRONG&gt;, &lt;STRONG&gt;WAN_ISP2&lt;/STRONG&gt;, &lt;STRONG&gt;LAN_USERS&lt;/STRONG&gt;).&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;Gaia interfaces.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1.2 Configure routing (without SD-WAN yet)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;The goal here is to ensure each ISP link is fully operational &lt;STRONG&gt;before&lt;/STRONG&gt; enabling SD-WAN.&lt;/P&gt;&lt;P&gt;Common options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Two default routes with different metrics (primary/secondary)&lt;/LI&gt;&lt;LI&gt;Or a temporary simple policy-based route to test each link independently&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Validation&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Run ping and traceroute to a public IP via each WAN interface.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm DNS resolution is working.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Ensure there are no upstream blocks (ISP/edge restrictions).&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;Gaia routes + connectivity tests.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2) Install and validate SD-WAN components (Nano Agent and services)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Quantum SD-WAN, the Nano Agent is the foundation of the control plane: it connects the gateway to the cloud control layer and manages the Nano Services (orchestration / SD-WAN / logger / metrics).&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.1 Onboard the Gateway to the Infinity Portal&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In the Infinity Portal:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Navigate to the SD-WAN section / Gateways area.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_2-1770809162323.png" style="width: 662px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33147iF54E47059AC5C6CB/image-dimensions/662x306?v=v2" width="662" height="306" role="button" title="WiliRGasparetto_2-1770809162323.png" alt="WiliRGasparetto_2-1770809162323.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Select the gateway (or create/import it, depending on your environment).&lt;/LI&gt;&lt;LI&gt;Generate the Nano Agent installation command/script.&lt;/LI&gt;&lt;LI&gt;In the middle section, click &lt;STRONG&gt;Profiles&lt;/STRONG&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_3-1770809162326.png" style="width: 876px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33149iCDA528DA973767C6/image-dimensions/876x298?v=v2" width="876" height="298" role="button" title="WiliRGasparetto_3-1770809162326.png" alt="WiliRGasparetto_3-1770809162326.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Click &lt;STRONG&gt;Quantum Profile&lt;/STRONG&gt; to open it.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; The SD-WAN application automatically creates this Quantum Profile in the following cases:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;You connect your on-premises management server to the Infinity Portal and configure &lt;STRONG&gt;Object Sharing&lt;/STRONG&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Follow the instructions in the &lt;STRONG&gt;Download and Deployment&lt;/STRONG&gt; section to install the Agent on the Security Gateway.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_4-1770809162329.png" style="width: 511px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33150i5AB110832AED7DC1/image-dimensions/511x395?v=v2" width="511" height="395" role="button" title="WiliRGasparetto_4-1770809162329.png" alt="WiliRGasparetto_4-1770809162329.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.2 Install the Nano Agent on the Gateway/Cluster Member&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;On the gateway (and on each cluster member, if applicable):&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_5-1770809162378.png" style="width: 559px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33151iCC9F1B3067E7E990/image-dimensions/559x169?v=v2" width="559" height="169" role="button" title="WiliRGasparetto_5-1770809162378.png" alt="WiliRGasparetto_5-1770809162378.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Run the installation command provided by the portal.&lt;BR /&gt;&lt;EM&gt;Command execution and successful completion.&lt;/EM&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;2.3 Validate the Nano Agent and Nano Services&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;On the gateway, run:&lt;/P&gt;&lt;P&gt;cpnano -s&lt;/P&gt;&lt;P&gt;You should see:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;The agent is &lt;STRONG&gt;registered/connected&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;Relevant services are &lt;STRONG&gt;Running&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;A reasonable &lt;STRONG&gt;last update&lt;/STRONG&gt; timestamp&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;No communication errors&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;Output of cpnano -s.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;If the Nano Agent does not connect, fix the following &lt;STRONG&gt;before&lt;/STRONG&gt; proceeding: &lt;STRONG&gt;DNS&lt;/STRONG&gt;, &lt;STRONG&gt;outbound routing&lt;/STRONG&gt;, &lt;STRONG&gt;proxy&lt;/STRONG&gt;, and/or &lt;STRONG&gt;SSL inspection&lt;/STRONG&gt; on the gateway’s outbound path.&lt;/P&gt;&lt;P&gt;In &lt;STRONG&gt;Infinity Portal &amp;gt; SD-WAN &amp;gt; Network &amp;gt; Agents&lt;/STRONG&gt;, you can review the connected Security Gateway.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_6-1770809162383.png" style="width: 591px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33153iDAA317AD4F945A78/image-dimensions/591x107?v=v2" width="591" height="107" role="button" title="WiliRGasparetto_6-1770809162383.png" alt="WiliRGasparetto_6-1770809162383.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3) Prepare management (SmartConsole) — without this, SD-WAN won’t apply&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3.1 Ensure the Security Policy allows the traffic&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Critical point for beginners: SD-WAN only &lt;EM&gt;steers&lt;/EM&gt; traffic that is allowed by the Security Policy.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In SmartConsole, verify you have rules that allow:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;LAN → Internet (for the traffic you want to test, e.g., HTTPS/DNS)&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Appropriate NAT (typically Hide NAT for Internet browsing)&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;Access Control rule + NAT rule (if applicable).&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3.2 Publish and install the policy on the gateway/cluster&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Publish in SmartConsole&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Install Policy on the gateway/cluster&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4) Configurar SD-WAN no Infinity Portal — do zero (Local Breakout)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4.1 In Infinity portal &amp;gt;&amp;nbsp;SD-WAN&amp;nbsp;application,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;From the left navigation panel, click&amp;nbsp;Network.&lt;/P&gt;&lt;P&gt;In the middle panel, click&amp;nbsp;Getting Started.&lt;/P&gt;&lt;P&gt;In the&amp;nbsp;Configure SD-WAN&amp;nbsp;section, click&amp;nbsp;Open Wizard.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_7-1770809162391.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33154i236D8AB6E7E198C5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_7-1770809162391.png" alt="WiliRGasparetto_7-1770809162391.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Step&amp;nbsp;(1) Environment, click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_8-1770809162397.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33152i80DD9E5CA0460E82/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_8-1770809162397.png" alt="WiliRGasparetto_8-1770809162397.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Step&amp;nbsp;(2) Uses Cases:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;&amp;nbsp;&lt;SPAN&gt;In this case, for example, select the option “Use only Internet use cases, but no overlay use cases.”&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;However, you should choose the option that best matches your environment and requirements.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_9-1770809162407.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33157i762A744FD627D626/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_9-1770809162407.png" alt="WiliRGasparetto_9-1770809162407.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;Quantum Gateways:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Select the connected Security Gateway &amp;nbsp;the one where you previously installed the agent.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_10-1770809162413.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33156i46254F253B1C11D2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_10-1770809162413.png" alt="WiliRGasparetto_10-1770809162413.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;WAN Link Mapping:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Map to the following interfaces:&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_11-1770809162418.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33155i105E78EB424E9D33/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_11-1770809162418.png" alt="WiliRGasparetto_11-1770809162418.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;WAN 1 :&amp;nbsp;eth1&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;WAN 2 :&amp;nbsp;eth2&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/OL&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Summary:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Select the option : "Publish and Enforce the policy now".&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Done&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_12-1770809162424.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33158i1F087E8F8E59A54A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_12-1770809162424.png" alt="WiliRGasparetto_12-1770809162424.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;And that’s it—your initial SD-WAN setup is complete. From this point on, you’ll need to define your SD-WAN rules based on your environment’s requirements. For more information, refer to sk180605:&lt;BR /&gt;&lt;STRONG&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk180605" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk180605&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Fontes:&amp;nbsp;Quantum SD-WAN - Technical | eLearning &lt;A href="https://checkpointpartners.litmoseu.com/course/1588097" target="_blank"&gt;https://checkpointpartners.litmoseu.com/course/1588097&lt;/A&gt;&amp;nbsp;,&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Admin Guide:&lt;A href="https://support.checkpoint.com/results/sk/sk180605" target="_blank" rel="noopener"&gt;&amp;nbsp; https://support.checkpoint.com/results/sk/sk180605&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Demo Point: SD-WAN&amp;nbsp;&lt;A href="https://usercenter.checkpoint.com/ucapps/techpoint/demo-point" target="_blank"&gt;https://usercenter.checkpoint.com/ucapps/techpoint/demo-point&lt;/A&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 11 Feb 2026 13:05:02 GMT</pubDate>
    <dc:creator>WiliRGasparetto</dc:creator>
    <dc:date>2026-02-11T13:05:02Z</dc:date>
    <item>
      <title>Quantum SD-WAN Installation for Beginners: A Step-by-Step Guide from Zero to First Traffic Steering</title>
      <link>https://community.checkpoint.com/t5/SD-WAN/Quantum-SD-WAN-Installation-for-Beginners-A-Step-by-Step-Guide/m-p/270309#M317</link>
      <description>&lt;P&gt;Below is a step-by-step guide from scratch (beginner-friendly) to install and enable Check Point Quantum SD-WAN on firewalls/clusters, with validation checkpoints at each stage.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Assumptions (adjust to your environment):&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Gateway/Cluster running Gaia (appliance or open server).&lt;/LI&gt;&lt;LI&gt;Management via SmartConsole (Smart-1 Cloud or on-prem).&lt;/LI&gt;&lt;LI&gt;SD-WAN managed through the Infinity Portal.&lt;/LI&gt;&lt;LI&gt;You have at least two WAN/ISP links (SD-WAN makes the most sense in this setup).&lt;/LI&gt;&lt;LI&gt;Initial goal: Local Breakout (the simplest). We’ll expand later to Overlay/Backhaul.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_0-1770809162316.png" style="width: 659px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33148i3DA8CC6A1AA4B924/image-dimensions/659x440?v=v2" width="659" height="440" role="button" title="WiliRGasparetto_0-1770809162316.png" alt="WiliRGasparetto_0-1770809162316.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;0) Prerequisites (before changing anything)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;0.1 Licensing and Version&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm that your gateway/cluster has compatible licensing and that the software version is supported (R81.10, R81.10.X, R81.20, R82, R82.10). For more details, refer to sk180605.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm you have access to the Infinity Portal and the required permissions for SD-WAN.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_1-1770809162317.png" style="width: 592px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33146iD2297D779D3AA1E0/image-dimensions/592x330?v=v2" width="592" height="330" role="button" title="WiliRGasparetto_1-1770809162317.png" alt="WiliRGasparetto_1-1770809162317.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1) Prepare the Gateway/Cluster (Gaia) — from basics to SD-WAN&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1.1 Configure WAN and LAN interfaces&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In Gaia (WebUI/CLI):&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Configure the IP address, subnet mask, and VLAN (if needed).&lt;/LI&gt;&lt;LI&gt;Use clear, consistent interface names (e.g., &lt;STRONG&gt;WAN_ISP1&lt;/STRONG&gt;, &lt;STRONG&gt;WAN_ISP2&lt;/STRONG&gt;, &lt;STRONG&gt;LAN_USERS&lt;/STRONG&gt;).&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;Gaia interfaces.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1.2 Configure routing (without SD-WAN yet)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;The goal here is to ensure each ISP link is fully operational &lt;STRONG&gt;before&lt;/STRONG&gt; enabling SD-WAN.&lt;/P&gt;&lt;P&gt;Common options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Two default routes with different metrics (primary/secondary)&lt;/LI&gt;&lt;LI&gt;Or a temporary simple policy-based route to test each link independently&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Validation&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Run ping and traceroute to a public IP via each WAN interface.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Confirm DNS resolution is working.&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Ensure there are no upstream blocks (ISP/edge restrictions).&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;Gaia routes + connectivity tests.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2) Install and validate SD-WAN components (Nano Agent and services)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Quantum SD-WAN, the Nano Agent is the foundation of the control plane: it connects the gateway to the cloud control layer and manages the Nano Services (orchestration / SD-WAN / logger / metrics).&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.1 Onboard the Gateway to the Infinity Portal&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In the Infinity Portal:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Navigate to the SD-WAN section / Gateways area.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_2-1770809162323.png" style="width: 662px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33147iF54E47059AC5C6CB/image-dimensions/662x306?v=v2" width="662" height="306" role="button" title="WiliRGasparetto_2-1770809162323.png" alt="WiliRGasparetto_2-1770809162323.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Select the gateway (or create/import it, depending on your environment).&lt;/LI&gt;&lt;LI&gt;Generate the Nano Agent installation command/script.&lt;/LI&gt;&lt;LI&gt;In the middle section, click &lt;STRONG&gt;Profiles&lt;/STRONG&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_3-1770809162326.png" style="width: 876px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33149iCDA528DA973767C6/image-dimensions/876x298?v=v2" width="876" height="298" role="button" title="WiliRGasparetto_3-1770809162326.png" alt="WiliRGasparetto_3-1770809162326.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Click &lt;STRONG&gt;Quantum Profile&lt;/STRONG&gt; to open it.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; The SD-WAN application automatically creates this Quantum Profile in the following cases:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;You connect your on-premises management server to the Infinity Portal and configure &lt;STRONG&gt;Object Sharing&lt;/STRONG&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Follow the instructions in the &lt;STRONG&gt;Download and Deployment&lt;/STRONG&gt; section to install the Agent on the Security Gateway.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_4-1770809162329.png" style="width: 511px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33150i5AB110832AED7DC1/image-dimensions/511x395?v=v2" width="511" height="395" role="button" title="WiliRGasparetto_4-1770809162329.png" alt="WiliRGasparetto_4-1770809162329.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.2 Install the Nano Agent on the Gateway/Cluster Member&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;On the gateway (and on each cluster member, if applicable):&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_5-1770809162378.png" style="width: 559px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33151iCC9F1B3067E7E990/image-dimensions/559x169?v=v2" width="559" height="169" role="button" title="WiliRGasparetto_5-1770809162378.png" alt="WiliRGasparetto_5-1770809162378.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Run the installation command provided by the portal.&lt;BR /&gt;&lt;EM&gt;Command execution and successful completion.&lt;/EM&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;2.3 Validate the Nano Agent and Nano Services&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;On the gateway, run:&lt;/P&gt;&lt;P&gt;cpnano -s&lt;/P&gt;&lt;P&gt;You should see:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;The agent is &lt;STRONG&gt;registered/connected&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;Relevant services are &lt;STRONG&gt;Running&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;A reasonable &lt;STRONG&gt;last update&lt;/STRONG&gt; timestamp&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;No communication errors&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;Output of cpnano -s.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;If the Nano Agent does not connect, fix the following &lt;STRONG&gt;before&lt;/STRONG&gt; proceeding: &lt;STRONG&gt;DNS&lt;/STRONG&gt;, &lt;STRONG&gt;outbound routing&lt;/STRONG&gt;, &lt;STRONG&gt;proxy&lt;/STRONG&gt;, and/or &lt;STRONG&gt;SSL inspection&lt;/STRONG&gt; on the gateway’s outbound path.&lt;/P&gt;&lt;P&gt;In &lt;STRONG&gt;Infinity Portal &amp;gt; SD-WAN &amp;gt; Network &amp;gt; Agents&lt;/STRONG&gt;, you can review the connected Security Gateway.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_6-1770809162383.png" style="width: 591px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33153iDAA317AD4F945A78/image-dimensions/591x107?v=v2" width="591" height="107" role="button" title="WiliRGasparetto_6-1770809162383.png" alt="WiliRGasparetto_6-1770809162383.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3) Prepare management (SmartConsole) — without this, SD-WAN won’t apply&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3.1 Ensure the Security Policy allows the traffic&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Critical point for beginners: SD-WAN only &lt;EM&gt;steers&lt;/EM&gt; traffic that is allowed by the Security Policy.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In SmartConsole, verify you have rules that allow:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;LAN → Internet (for the traffic you want to test, e.g., HTTPS/DNS)&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Appropriate NAT (typically Hide NAT for Internet browsing)&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;Access Control rule + NAT rule (if applicable).&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3.2 Publish and install the policy on the gateway/cluster&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;Publish in SmartConsole&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Install Policy on the gateway/cluster&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4) Configurar SD-WAN no Infinity Portal — do zero (Local Breakout)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4.1 In Infinity portal &amp;gt;&amp;nbsp;SD-WAN&amp;nbsp;application,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;From the left navigation panel, click&amp;nbsp;Network.&lt;/P&gt;&lt;P&gt;In the middle panel, click&amp;nbsp;Getting Started.&lt;/P&gt;&lt;P&gt;In the&amp;nbsp;Configure SD-WAN&amp;nbsp;section, click&amp;nbsp;Open Wizard.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_7-1770809162391.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33154i236D8AB6E7E198C5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_7-1770809162391.png" alt="WiliRGasparetto_7-1770809162391.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Step&amp;nbsp;(1) Environment, click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_8-1770809162397.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33152i80DD9E5CA0460E82/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_8-1770809162397.png" alt="WiliRGasparetto_8-1770809162397.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;In Step&amp;nbsp;(2) Uses Cases:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;&amp;nbsp;&lt;SPAN&gt;In this case, for example, select the option “Use only Internet use cases, but no overlay use cases.”&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;However, you should choose the option that best matches your environment and requirements.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_9-1770809162407.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33157i762A744FD627D626/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_9-1770809162407.png" alt="WiliRGasparetto_9-1770809162407.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;Quantum Gateways:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Select the connected Security Gateway &amp;nbsp;the one where you previously installed the agent.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_10-1770809162413.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33156i46254F253B1C11D2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_10-1770809162413.png" alt="WiliRGasparetto_10-1770809162413.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;WAN Link Mapping:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Map to the following interfaces:&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_11-1770809162418.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33155i105E78EB424E9D33/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_11-1770809162418.png" alt="WiliRGasparetto_11-1770809162418.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;WAN 1 :&amp;nbsp;eth1&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;WAN 2 :&amp;nbsp;eth2&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/OL&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Next.&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Summary:&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Select the option : "Publish and Enforce the policy now".&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Click&amp;nbsp;Done&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="WiliRGasparetto_12-1770809162424.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/33158i1F087E8F8E59A54A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="WiliRGasparetto_12-1770809162424.png" alt="WiliRGasparetto_12-1770809162424.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;And that’s it—your initial SD-WAN setup is complete. From this point on, you’ll need to define your SD-WAN rules based on your environment’s requirements. For more information, refer to sk180605:&lt;BR /&gt;&lt;STRONG&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk180605" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk180605&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Fontes:&amp;nbsp;Quantum SD-WAN - Technical | eLearning &lt;A href="https://checkpointpartners.litmoseu.com/course/1588097" target="_blank"&gt;https://checkpointpartners.litmoseu.com/course/1588097&lt;/A&gt;&amp;nbsp;,&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Admin Guide:&lt;A href="https://support.checkpoint.com/results/sk/sk180605" target="_blank" rel="noopener"&gt;&amp;nbsp; https://support.checkpoint.com/results/sk/sk180605&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Demo Point: SD-WAN&amp;nbsp;&lt;A href="https://usercenter.checkpoint.com/ucapps/techpoint/demo-point" target="_blank"&gt;https://usercenter.checkpoint.com/ucapps/techpoint/demo-point&lt;/A&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Feb 2026 13:05:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SD-WAN/Quantum-SD-WAN-Installation-for-Beginners-A-Step-by-Step-Guide/m-p/270309#M317</guid>
      <dc:creator>WiliRGasparetto</dc:creator>
      <dc:date>2026-02-11T13:05:02Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum SD-WAN Installation for Beginners: A Step-by-Step Guide from Zero to First Traffic Steer</title>
      <link>https://community.checkpoint.com/t5/SD-WAN/Quantum-SD-WAN-Installation-for-Beginners-A-Step-by-Step-Guide/m-p/270313#M318</link>
      <description>&lt;P&gt;Very Good Wili!!&lt;/P&gt;</description>
      <pubDate>Wed, 11 Feb 2026 12:06:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SD-WAN/Quantum-SD-WAN-Installation-for-Beginners-A-Step-by-Step-Guide/m-p/270313#M318</guid>
      <dc:creator>israelfds95</dc:creator>
      <dc:date>2026-02-11T12:06:47Z</dc:date>
    </item>
  </channel>
</rss>

