<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Weird VPN TU/Smart view monitor behavior during policy installation in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121653#M17361</link>
    <description>&lt;P&gt;The SK pointed to by&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/5874"&gt;@KennyManrique&lt;/a&gt;&amp;nbsp;suggests this is a bug and you should request a portfix from TAC.&lt;/P&gt;</description>
    <pubDate>Mon, 21 Jun 2021 00:35:04 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-06-21T00:35:04Z</dc:date>
    <item>
      <title>Weird VPN TU/Smart view monitor behavior during policy installation</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121563#M17319</link>
      <description>&lt;P&gt;Hey Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have been working with a customer running R80.40. While it's weird, I haven't had any specific explanation to the behavior.&lt;/P&gt;&lt;P&gt;The gateway is catering to several site to site VPNs which are up and running and we can verify the same via vpn tu or smartview monitor (tunnels per gateway/community).&lt;/P&gt;&lt;P&gt;Whenever we install policy, these entries just vanishes. VPN TU doesn't show a single entry though there are 6 to 7 tunnels. Smartview with "tunnels on gateway" shows "no data". Interestingly traffic through the VPN tunnel continues to work without any issues, VPN peers based on tcpdump/fwmonitor concludes that they continue to communicate with each other.&lt;/P&gt;&lt;P&gt;Sometimes the IKE SA entries come back automatically, sometimes only when the tunnel go through a manual or auto reset. (attached screenshots from the test bed)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In order confirm the behavior, I created a test bed with R80.10, R80.40 and R81.&lt;/P&gt;&lt;P&gt;R80.10 - Did not see this happening throughout the policy installation. IKE entries are always seen&lt;/P&gt;&lt;P&gt;R80.40 and R81 - IKE entries from VPN and Smartview monitor vanishes&lt;/P&gt;&lt;P&gt;Installed the latest R80.40 hotfix which did not make any difference, though I did not really find anything relevant in the hotfix notes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has anyone seen this or is this expected to happen, because this can deem risky if we are troubleshooting a VPN problem and we are to install such a policy!!&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jun 2021 16:32:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121563#M17319</guid>
      <dc:creator>dumbhead123</dc:creator>
      <dc:date>2021-06-18T16:32:19Z</dc:date>
    </item>
    <item>
      <title>Re: Weird VPN TU/Smart view monitor behavior during policy installation</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121650#M17359</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Same behavior here on R80.40 T118, for me its broken at least since T91 (as far I can remember) , because it worked ok at first.&lt;/P&gt;
&lt;P&gt;The following SK was the most related to the issue I was able to get:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk171985" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk171985&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jun 2021 00:35:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121650#M17359</guid>
      <dc:creator>KennyManrique</dc:creator>
      <dc:date>2021-06-21T00:35:24Z</dc:date>
    </item>
    <item>
      <title>Re: Weird VPN TU/Smart view monitor behavior during policy installation</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121653#M17361</link>
      <description>&lt;P&gt;The SK pointed to by&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/5874"&gt;@KennyManrique&lt;/a&gt;&amp;nbsp;suggests this is a bug and you should request a portfix from TAC.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jun 2021 00:35:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Weird-VPN-TU-Smart-view-monitor-behavior-during-policy/m-p/121653#M17361</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-06-21T00:35:04Z</dc:date>
    </item>
  </channel>
</rss>

