<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.40 Custom VPN Domain not working as expected in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/96989#M10414</link>
    <description>&lt;P&gt;I noticed some weirdness with this as well. I was hoping this would be a more elegant solution for user.def changes, but sadly it doesn't appear to work this way.&lt;/P&gt;</description>
    <pubDate>Fri, 18 Sep 2020 07:09:54 GMT</pubDate>
    <dc:creator>Nik_Bloemers</dc:creator>
    <dc:date>2020-09-18T07:09:54Z</dc:date>
    <item>
      <title>R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/96985#M10413</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;running R80.40 latest T78 and yesterday had an issue with a new VPN site.&lt;/P&gt;&lt;P&gt;I'm using the newly introduced custom VPN Domains, which allows for only specific encryption domain advertisements to the partner site, so I thought.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Setup:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Network: 172.16.0.0/16&lt;/P&gt;&lt;P&gt;Default VPN Domain: Multitude of networks, including 172.16.0.0/17 not including 172.16.100.0/24&lt;/P&gt;&lt;P&gt;Custom VPN Domain configured: 172.16.100.0/24 as a network object. This object is standalone and not used anywhere else.&lt;/P&gt;&lt;P&gt;The default VPN Domain does not include the network 172.16.100.0/24 object.&lt;/P&gt;&lt;P&gt;VPN tunnel sharing is set to: by subnet&lt;/P&gt;&lt;P&gt;Q2 proposal fails: We are offering 172.16.0.0/17, if a hosts from our side initiates the tunnel. Expected behavior, imho would be to have 172.16.100.0/24 proposed as our encryption domain.&lt;/P&gt;&lt;P&gt;Adding&amp;nbsp;172.16.100.0/24 to the default VPN domain fixes this issue.&lt;/P&gt;&lt;P&gt;So just to be clear, this custom VPN domain is only a "filter" and not an explicit "setting", or am I missing something?&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Christoph&lt;/P&gt;&lt;P&gt;Edit: Formating&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 12:39:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/96985#M10413</guid>
      <dc:creator>Christoph</dc:creator>
      <dc:date>2020-09-18T12:39:04Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/96989#M10414</link>
      <description>&lt;P&gt;I noticed some weirdness with this as well. I was hoping this would be a more elegant solution for user.def changes, but sadly it doesn't appear to work this way.&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 07:09:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/96989#M10414</guid>
      <dc:creator>Nik_Bloemers</dc:creator>
      <dc:date>2020-09-18T07:09:54Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97013#M10415</link>
      <description>&lt;P&gt;Could someone from Check Point&amp;nbsp;shed some light on this issue?&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 12:22:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97013#M10415</guid>
      <dc:creator>Andreas_Aust</dc:creator>
      <dc:date>2020-09-18T12:22:48Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97115#M10416</link>
      <description>&lt;P&gt;This sounds like a bug and the TAC should be involved.&lt;BR /&gt;Are the gateways also R80.40 as well in this case?&lt;/P&gt;</description>
      <pubDate>Sun, 20 Sep 2020 21:59:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97115#M10416</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-09-20T21:59:21Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97139#M10417</link>
      <description>&lt;P&gt;Yes, everything is R80.40 Take78. This is a migration project. There are other observations concerning this issue, with three working tunnels, where the custom VPN domain looked like it worked, there were no complains, maybe it wasn't used. Hard to tell now, as we put the faulting net in the default vpn domain.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2020 06:15:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97139#M10417</guid>
      <dc:creator>Christoph</dc:creator>
      <dc:date>2020-09-21T06:15:33Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 Custom VPN Domain not working as expected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97164#M10418</link>
      <description>&lt;P&gt;Does it work if you configure it according to sk108600 scenario 1?&lt;BR /&gt;&lt;BR /&gt;&lt;EM&gt;Do you see any output if you run"fw tab -t subnet_for_range_and_peer&lt;/EM&gt;" in expert mode?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2020 09:26:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-Custom-VPN-Domain-not-working-as-expected/m-p/97164#M10418</guid>
      <dc:creator>Benedikt_Weissl</dc:creator>
      <dc:date>2020-09-21T09:26:19Z</dc:date>
    </item>
  </channel>
</rss>

