<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic R80.20 Supernetting per community in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56627#M12560</link>
    <description>&lt;P&gt;Just an FYI per lessons learned today. We upgraded our gateways from R77.30 to R80.20 and one of our VPN Communities would not work. Error was Invalid ID for P2.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Following SK108600 it says to make sure the Global settings in GUIDBedit are True for&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;EM&gt;&lt;STRONG&gt;ike_enable_supernet&lt;/STRONG&gt;,&amp;nbsp;&lt;/EM&gt;then per community change the&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;ike_p2_enable_supernet_from_R80.20&lt;/EM&gt;&amp;nbsp;&lt;/STRONG&gt;parameter from "by_global" to "false.&lt;/P&gt;&lt;P&gt;Well My settings for this community didn't show anything for the enable supernet. I was told by my SE to just make a change to the comment section of the community object for this in DashBoard and publish.&lt;/P&gt;&lt;P&gt;By doing this it added the&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;ike_p2_enable_supernet_from_R80.20&lt;/EM&gt;&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;and set it to False by global.&lt;/P&gt;&lt;P&gt;So all I had to do was push policy.&lt;/P&gt;</description>
    <pubDate>Tue, 25 Jun 2019 15:52:21 GMT</pubDate>
    <dc:creator>Dave_Taylor1</dc:creator>
    <dc:date>2019-06-25T15:52:21Z</dc:date>
    <item>
      <title>R80.20 Supernetting per community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56627#M12560</link>
      <description>&lt;P&gt;Just an FYI per lessons learned today. We upgraded our gateways from R77.30 to R80.20 and one of our VPN Communities would not work. Error was Invalid ID for P2.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Following SK108600 it says to make sure the Global settings in GUIDBedit are True for&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;EM&gt;&lt;STRONG&gt;ike_enable_supernet&lt;/STRONG&gt;,&amp;nbsp;&lt;/EM&gt;then per community change the&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;ike_p2_enable_supernet_from_R80.20&lt;/EM&gt;&amp;nbsp;&lt;/STRONG&gt;parameter from "by_global" to "false.&lt;/P&gt;&lt;P&gt;Well My settings for this community didn't show anything for the enable supernet. I was told by my SE to just make a change to the comment section of the community object for this in DashBoard and publish.&lt;/P&gt;&lt;P&gt;By doing this it added the&amp;nbsp;&lt;STRONG&gt;&lt;EM&gt;ike_p2_enable_supernet_from_R80.20&lt;/EM&gt;&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;and set it to False by global.&lt;/P&gt;&lt;P&gt;So all I had to do was push policy.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jun 2019 15:52:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56627#M12560</guid>
      <dc:creator>Dave_Taylor1</dc:creator>
      <dc:date>2019-06-25T15:52:21Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 Supernetting per community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56773#M12561</link>
      <description>Was it as simple as adding ike_p2_enable_supernet_from_R80.20 to the comment field of the relevant community object?</description>
      <pubDate>Thu, 27 Jun 2019 02:50:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56773#M12561</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-06-27T02:50:37Z</dc:date>
    </item>
    <item>
      <title>Re: R80.20 Supernetting per community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56776#M12562</link>
      <description>&lt;P&gt;I just added the name of the object in the comments. Once I published it added it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;According to our Check Point SE there was a previous SR regarding this same issue and that was the recommendation solution.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;There is a script that is supposed to run during upgrade that adds that field to the database. If it is not there it defaults to false. Making any change to the community and publishing forces the script which &amp;nbsp;adds the field.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jun 2019 02:57:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-20-Supernetting-per-community/m-p/56776#M12562</guid>
      <dc:creator>Dave_Taylor1</dc:creator>
      <dc:date>2019-06-27T02:57:26Z</dc:date>
    </item>
  </channel>
</rss>

