<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Configuring DynamicID to use Internal SMTP server in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275599#M104976</link>
    <description>&lt;P&gt;Thanks for your response. 10.45.10.3 is the physical IP address. I will check for traffic coming from the VIP and come back, thanks.'&lt;/P&gt;</description>
    <pubDate>Thu, 16 Apr 2026 10:03:11 GMT</pubDate>
    <dc:creator>chuka01</dc:creator>
    <dc:date>2026-04-16T10:03:11Z</dc:date>
    <item>
      <title>Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275593#M104972</link>
      <description>&lt;P&gt;We are currently configuring dynamicID on a&amp;nbsp;remote access gateway. I have tested with cloud SMTP servers (Sendgrid and AWS SES), and the OTPs were delivering on the R80.40 gateway.&lt;/P&gt;&lt;P&gt;However, we have an internal SMTP relay, and we want to use that instead. We have tested, and the error says "dynamicId sending failure, press r to retry".&lt;/P&gt;&lt;P&gt;The logs show that SMTP traffic was sent to the Internal relay and we have whitelisted the IPs of the gateway, but no OTPs are being delivered. Our network topology is Checkpoint Security gateways on the perimeter, and Palo Alto firewalls to filter internal traffic.&lt;/P&gt;&lt;P&gt;No traffic logs show traffic from the checkpoint gateway to the SMTP relay on Palo Alto either. A major reason for using the internal SMTP relay is because our ISPs here block SMTP traffic over port 587, and so we cannot ideally use the cloud SMTP servers.&lt;/P&gt;&lt;P&gt;Thanks for reading through, and for your assistance. I can provide any more information as needed. Thanks.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 09:16:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275593#M104972</guid>
      <dc:creator>chuka01</dc:creator>
      <dc:date>2026-04-16T09:16:40Z</dc:date>
    </item>
    <item>
      <title>Re: Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275595#M104973</link>
      <description>&lt;P&gt;To be honest I never tested id but you should configure the SMTP in the Dynamic ID Settings section within the VPN CLients -&amp;gt; Authentication.&lt;/P&gt;
&lt;P&gt;See attached screenshots.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 09:36:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275595#M104973</guid>
      <dc:creator>simonemantovani</dc:creator>
      <dc:date>2026-04-16T09:36:57Z</dc:date>
    </item>
    <item>
      <title>Re: Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275596#M104974</link>
      <description>&lt;P&gt;Hello Simone, thanks for responding. I have done this and tested with some cloud SMTP servers (Sendgrid and AWS SES). However&amp;nbsp; I am trying to integrate with our internal SMTP relay, is where i am getting the issue from. The traffic is leaving checkpoint on the eth2 interface (10.45.10.3) and is showing accepted in logs, but this traffic never gets to the SMTP relay, or shows up in our Palo Alto internal firewall logs.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 09:43:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275596#M104974</guid>
      <dc:creator>chuka01</dc:creator>
      <dc:date>2026-04-16T09:43:37Z</dc:date>
    </item>
    <item>
      <title>Re: Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275597#M104975</link>
      <description>&lt;P&gt;Well, if the traffic leaves the Check Point, the issue is outside the firewall; 10.45.10.3 is the VIP address or the IP address of the physical interface?&lt;/P&gt;
&lt;P&gt;If it's not the VIP, then you should check traffic coming from the VIP address on your SMTP server and PAN firewall.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 09:46:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275597#M104975</guid>
      <dc:creator>simonemantovani</dc:creator>
      <dc:date>2026-04-16T09:46:18Z</dc:date>
    </item>
    <item>
      <title>Re: Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275599#M104976</link>
      <description>&lt;P&gt;Thanks for your response. 10.45.10.3 is the physical IP address. I will check for traffic coming from the VIP and come back, thanks.'&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 10:03:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275599#M104976</guid>
      <dc:creator>chuka01</dc:creator>
      <dc:date>2026-04-16T10:03:11Z</dc:date>
    </item>
    <item>
      <title>Re: Configuring DynamicID to use Internal SMTP server</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275634#M104980</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/79070"&gt;@simonemantovani&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;SPAN&gt;10.45.10.3 was the physical IP. searching by the VIP resolved the issue, so i created a rule allowing traffic from that IP. Now i just have to troubleshoot why the SMTP server is not sending the OTP, thank you.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Apr 2026 15:50:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Configuring-DynamicID-to-use-Internal-SMTP-server/m-p/275634#M104980</guid>
      <dc:creator>chuka01</dc:creator>
      <dc:date>2026-04-16T15:50:29Z</dc:date>
    </item>
  </channel>
</rss>

