<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Routing for VPN community in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111658#M15441</link>
    <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I dont ever recall having to this by default, but is there any manual config you would have to do as far as routing through the VPN tunnel once community is configured on CP? I believe all this is inherited based on the community settings and there is no need to add any routes manually via web GUI, but I could be wrong.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;tx&lt;/P&gt;</description>
    <pubDate>Tue, 23 Feb 2021 20:02:21 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2021-02-23T20:02:21Z</dc:date>
    <item>
      <title>Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111658#M15441</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I dont ever recall having to this by default, but is there any manual config you would have to do as far as routing through the VPN tunnel once community is configured on CP? I believe all this is inherited based on the community settings and there is no need to add any routes manually via web GUI, but I could be wrong.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;tx&lt;/P&gt;</description>
      <pubDate>Tue, 23 Feb 2021 20:02:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111658#M15441</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-23T20:02:21Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111694#M15446</link>
      <description>&lt;P&gt;No, not usually.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Traffic should route over the VPN without you manually adding routes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sounds like the remote end isnt presenting all of its subnets if traffic isnt routing correctly.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 09:39:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111694#M15446</guid>
      <dc:creator>JackPrendergast</dc:creator>
      <dc:date>2021-02-24T09:39:18Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111721#M15450</link>
      <description>&lt;P&gt;Thats what I thought...I know sometimes they may need to be added manually for RA stuff, but otherwise, no. Thanks for confirming!&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 13:44:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111721#M15450</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-24T13:44:09Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111749#M15455</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I assume this is a policy based VPN, in that case it should match the encryption domain. Are you getting any encrypt logs from smart console?&lt;/P&gt;&lt;P&gt;You can also run 'vpn tu tlist' on the gateway to check the SAs and TSs&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 21:18:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111749#M15455</guid>
      <dc:creator>Kurt_Abela</dc:creator>
      <dc:date>2021-02-24T21:18:58Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111754#M15457</link>
      <description>&lt;P&gt;Yes, correct, its policy based.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 21:36:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111754#M15457</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-24T21:36:56Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111755#M15458</link>
      <description>&lt;P&gt;So there is no need for routes to be defined as long as the encryption domain is correct.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kurt&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 21:38:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111755#M15458</guid>
      <dc:creator>Kurt_Abela</dc:creator>
      <dc:date>2021-02-24T21:38:43Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111756#M15459</link>
      <description>&lt;P&gt;Thats what I&amp;nbsp; thought.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 21:43:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111756#M15459</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-24T21:43:45Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111757#M15460</link>
      <description>&lt;P&gt;Are you having issues?&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 21:49:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111757#M15460</guid>
      <dc:creator>JackPrendergast</dc:creator>
      <dc:date>2021-02-24T21:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111759#M15461</link>
      <description>&lt;P&gt;Not at the moment...it was something on remote side. Thanks everyone for your input, really appreciate it.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 24 Feb 2021 22:42:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/111759#M15461</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-24T22:42:42Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/112022#M15525</link>
      <description>&lt;P&gt;There is a vpn_route.conf file.&lt;BR /&gt;Believe it applies only when using SmartLSM but it could apply in other situations also.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk69726&amp;amp;partition=Basic&amp;amp;product=SmartProvisioning" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk69726&amp;amp;partition=Basic&amp;amp;product=SmartProvisioning&lt;/A&gt;,&lt;/P&gt;</description>
      <pubDate>Sun, 28 Feb 2021 18:47:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/112022#M15525</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-28T18:47:03Z</dc:date>
    </item>
    <item>
      <title>Re: Routing for VPN community</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/112025#M15526</link>
      <description>&lt;P&gt;I believe (if I am not mistaken)&amp;nbsp;&lt;SPAN&gt;years ago at a customers environment we often used vpn_route.conf without SmartLSM.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;We had a VPN to their hub cluster and at used vpn_route.conf to route between their spoke gateways and our gateway.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Worked fine.&lt;/P&gt;</description>
      <pubDate>Sun, 28 Feb 2021 21:16:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-for-VPN-community/m-p/112025#M15526</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2021-02-28T21:16:53Z</dc:date>
    </item>
  </channel>
</rss>

