<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Site to site VPN - Not using ID_IPV4_ADDR as IKE ID in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114080#M15927</link>
    <description>&lt;P&gt;When I was on a Checkpoint training the instructor said it's possible to use fqdn and ip based s2s vpn and you have to ask the support how to do it. This was 5 years ago and I don't remember if there is an sk how to do it by your own, so open a case and ask the support.&lt;/P&gt;</description>
    <pubDate>Fri, 19 Mar 2021 12:46:23 GMT</pubDate>
    <dc:creator>MartinTzvetanov</dc:creator>
    <dc:date>2021-03-19T12:46:23Z</dc:date>
    <item>
      <title>Site to site VPN - Not using ID_IPV4_ADDR as IKE ID</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114000#M15912</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;Is it possible on a Checkpoint Security Gateway to use something else besides an IP address is the IKE ID?&lt;/P&gt;&lt;P&gt;We are partnering with a 3rd Party that use a Sonic Firewall. For there configuration options it is select the IKE ID for Phase 1 as IP address, but also a domain or and email address format.&lt;/P&gt;&lt;P&gt;Under the Link Selection options, all we have is various options that can be used to determine what IP Address to select as the IKE ID.&lt;/P&gt;&lt;P&gt;There are reasons to do with failover between two Site to Site VPN tunnels, that cause us to now want to use the local public IP address. Each IPsec connection from our sites to the partner should use the same IKE ID, for the failover to be automatic on their end.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 17:16:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114000#M15912</guid>
      <dc:creator>Michael_Horne</dc:creator>
      <dc:date>2021-03-18T17:16:04Z</dc:date>
    </item>
    <item>
      <title>Re: Site to site VPN - Not using ID_IPV4_ADDR as IKE ID</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114019#M15915</link>
      <description>&lt;P&gt;You can use FQDN.&lt;BR /&gt;See option 2 here:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600&amp;amp;partition=Advanced&amp;amp;product=IPSec&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 20:13:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114019#M15915</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-03-18T20:13:08Z</dc:date>
    </item>
    <item>
      <title>Re: Site to site VPN - Not using ID_IPV4_ADDR as IKE ID</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114068#M15925</link>
      <description>&lt;P&gt;Thank you very much for the information. I forgot this SK exists!&amp;nbsp;&lt;/P&gt;&lt;P&gt;Since we are setting environment variables, this would affect all VPN tunnels on the security gateway, correct?&lt;/P&gt;&lt;P&gt;Many thanks,&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;</description>
      <pubDate>Fri, 19 Mar 2021 10:13:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114068#M15925</guid>
      <dc:creator>Michael_Horne</dc:creator>
      <dc:date>2021-03-19T10:13:27Z</dc:date>
    </item>
    <item>
      <title>Re: Site to site VPN - Not using ID_IPV4_ADDR as IKE ID</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114080#M15927</link>
      <description>&lt;P&gt;When I was on a Checkpoint training the instructor said it's possible to use fqdn and ip based s2s vpn and you have to ask the support how to do it. This was 5 years ago and I don't remember if there is an sk how to do it by your own, so open a case and ask the support.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Mar 2021 12:46:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114080#M15927</guid>
      <dc:creator>MartinTzvetanov</dc:creator>
      <dc:date>2021-03-19T12:46:23Z</dc:date>
    </item>
    <item>
      <title>Re: Site to site VPN - Not using ID_IPV4_ADDR as IKE ID</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114132#M15943</link>
      <description>&lt;P&gt;Believe so, yes.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 20 Mar 2021 06:39:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-site-VPN-Not-using-ID-IPV4-ADDR-as-IKE-ID/m-p/114132#M15943</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-03-20T06:39:39Z</dc:date>
    </item>
  </channel>
</rss>

