<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN/SSH connection disconnected during data transfer in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72945#M11728</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We are using Checkpoint Firewall 5400 in our Network.&lt;/P&gt;&lt;P&gt;when connecting to Global protect client VPN, we can successfully establish a session/connection. We can connect to the server and access our Server resources, available at the client-side.&lt;BR /&gt;We have verified with Client that all restrictions on the firewall have been removed for VPN IP(whatever IP, VPN client is getting after connecting the VPN).&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Issue: After connecting to VPN, when we initiate a WinSCP connection to the same server and try to transfer any file, VPN and server connections get disconnected in the Company's private network. The same issue has been tested on a different network (mobile hotspot using USB tethering) and did not face any issues.&lt;/P&gt;&lt;P&gt;tried below steps:&lt;BR /&gt;1. Allowed communication to Client Public IP&lt;BR /&gt;2. Allowed communication through Separate public IP&lt;BR /&gt;3. Checked the Global VPN clients logs; attaching logs.&lt;BR /&gt;4. Checked Checkpoint Firewall logs; HTTPS(443) &amp;amp; UDP(4501) traffic is passing from internal LAN to Public IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 22 Jan 2020 05:45:51 GMT</pubDate>
    <dc:creator>thevvk</dc:creator>
    <dc:date>2020-01-22T05:45:51Z</dc:date>
    <item>
      <title>VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72678#M11726</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we are using Global VPN to connect with one of our clients to access their servers but when we are trying to transfer data through Winscp application; the SSH and global VPN getting this connected as we checked, there is no restriction from client side.&lt;/P&gt;&lt;P&gt;The same data transfer is working with mobile hotspot taghering but we are having a problem when we are using our company network.&lt;/P&gt;&lt;P&gt;In our company, we using checkpoint Firewall(5400) and we have enabled communication to client public IP in our check point access rule.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 07:21:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72678#M11726</guid>
      <dc:creator>thevvk</dc:creator>
      <dc:date>2020-01-20T07:21:33Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72884#M11727</link>
      <description>What version/JHF is the gateway running?&lt;BR /&gt;What precise troubleshooting steps have you taken so far with the results of said steps?&lt;BR /&gt;What do the logs on the gateway say when you attempt this communication?&lt;BR /&gt;Have you done any tcpdumps to verify the traffic is entering and leaving the gateway?</description>
      <pubDate>Tue, 21 Jan 2020 16:40:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72884#M11727</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-21T16:40:09Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72945#M11728</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We are using Checkpoint Firewall 5400 in our Network.&lt;/P&gt;&lt;P&gt;when connecting to Global protect client VPN, we can successfully establish a session/connection. We can connect to the server and access our Server resources, available at the client-side.&lt;BR /&gt;We have verified with Client that all restrictions on the firewall have been removed for VPN IP(whatever IP, VPN client is getting after connecting the VPN).&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Issue: After connecting to VPN, when we initiate a WinSCP connection to the same server and try to transfer any file, VPN and server connections get disconnected in the Company's private network. The same issue has been tested on a different network (mobile hotspot using USB tethering) and did not face any issues.&lt;/P&gt;&lt;P&gt;tried below steps:&lt;BR /&gt;1. Allowed communication to Client Public IP&lt;BR /&gt;2. Allowed communication through Separate public IP&lt;BR /&gt;3. Checked the Global VPN clients logs; attaching logs.&lt;BR /&gt;4. Checked Checkpoint Firewall logs; HTTPS(443) &amp;amp; UDP(4501) traffic is passing from internal LAN to Public IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2020 05:45:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/72945#M11728</guid>
      <dc:creator>thevvk</dc:creator>
      <dc:date>2020-01-22T05:45:51Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73027#M11729</link>
      <description>I'm not understanding what your environment looks like, which makes it very difficult to suggest where to begin troubleshooting.&lt;BR /&gt;You're mentioning the Global Protect VPN client, which I believe is a product by Palo Alto Networks.&lt;BR /&gt;&lt;BR /&gt;Please provide a network diagram of the environment in question and list software versions/JHF levels of all gateways involved including client VPN software.&lt;BR /&gt;You might also engage with the TAC.</description>
      <pubDate>Wed, 22 Jan 2020 16:55:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73027#M11729</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-22T16:55:17Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73034#M11730</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are using Global protect VPN to connect client servers which behind the client Firewall Palo alto; we are able to connect VPN also and servers are also accessible.&lt;/P&gt;&lt;P&gt;The problem is when we are trying to transfer data through WinSCP from our private network; global protect VPN is getting disconnected but the same data transfer we are able to do with VPN connected through Mobile hotspot(other networks).&lt;/P&gt;&lt;P&gt;We are using checkpoint in our private network with Gaia version 80.10&lt;/P&gt;&lt;P&gt;let me know if you need more info.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2020 17:20:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73034#M11730</guid>
      <dc:creator>thevvk</dc:creator>
      <dc:date>2020-01-22T17:20:52Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73039#M11731</link>
      <description>R80.10 at what JHF level?&lt;BR /&gt;&lt;BR /&gt;Have you done any packet captures on your gateway (ingress and egress) to see what the traffic looks like as it traverses the gateway?&lt;BR /&gt;It may or may not be related to the Check Point gateway at all.&lt;BR /&gt;Also, it might be worth engaging with PAN's support on this to see what is causing the Global Protect client to disconnect.</description>
      <pubDate>Wed, 22 Jan 2020 17:44:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73039#M11731</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-22T17:44:06Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73042#M11732</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;I checked the logs in our gateway; 443 and 4501 ports traffic is passing.&lt;/P&gt;&lt;P&gt;yes, might be it's not related to Checkpoint gateway but we are facing this issue only with our network, with other networks, it's is working fine.&lt;/P&gt;&lt;P&gt;as we checked with the Palo alto team(client), there is no restriction for the VPN IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2020 18:10:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73042#M11732</guid>
      <dc:creator>thevvk</dc:creator>
      <dc:date>2020-01-22T18:10:29Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73046#M11733</link>
      <description>MTU mismatch somewhere ?</description>
      <pubDate>Wed, 22 Jan 2020 19:37:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73046#M11733</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2020-01-22T19:37:24Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73074#M11734</link>
      <description>Right, which is why I'm suggesting packet captures with tcpdump, fw monitor, or some other mechanism.&lt;BR /&gt;If it's an MTU issue like Jerry says, packet captures will bear that out.</description>
      <pubDate>Wed, 22 Jan 2020 22:50:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73074#M11734</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-22T22:50:01Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73084#M11735</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have captured the packet, only 443 and 4501 traffic is showing there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Jan 2020 04:52:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73084#M11735</guid>
      <dc:creator>thevvk</dc:creator>
      <dc:date>2020-01-23T04:52:24Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73095#M11736</link>
      <description>it doesn't really matter what tcp or udp port traffic you capture just show us something or analyze yourself what's wrong with the flow &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; &lt;BR /&gt;&lt;BR /&gt;little hint:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://forums.clavister.com/viewtopic.php?t=11915" target="_blank"&gt;https://forums.clavister.com/viewtopic.php?t=11915&lt;/A&gt;</description>
      <pubDate>Thu, 23 Jan 2020 07:47:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73095#M11736</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2020-01-23T07:47:04Z</dc:date>
    </item>
    <item>
      <title>Re: VPN/SSH connection disconnected during data transfer</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73171#M11737</link>
      <description>Precisely how did you capture the traffic?&lt;BR /&gt;Did you do packet captures on both the ingress and egress of the gateway?&lt;BR /&gt;Did you compare them to see that they're the same?&lt;BR /&gt;If they're the same, the problem may be upstream of your gateway.</description>
      <pubDate>Thu, 23 Jan 2020 19:41:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-SSH-connection-disconnected-during-data-transfer/m-p/73171#M11737</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-23T19:41:23Z</dc:date>
    </item>
  </channel>
</rss>

