<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: checkpoint unnnumbered vti tunnel in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124618#M17981</link>
    <description>&lt;P&gt;Not clear what the requirement is here.&lt;BR /&gt;Do you want to initiate the VPN from either IP or a specific IP.&lt;BR /&gt;In any case, it's the Link Selection setting in the gateway object that will control what the VPN is initiated with.&lt;/P&gt;</description>
    <pubDate>Wed, 21 Jul 2021 22:32:01 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-07-21T22:32:01Z</dc:date>
    <item>
      <title>checkpoint unnnumbered vti tunnel</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124343#M17932</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have clusterX with 2 ISP peers with BGP&lt;/P&gt;&lt;P&gt;network between cluster and ISP1 : 31.154.10.0/29&lt;/P&gt;&lt;P&gt;network between cluster and ISP2 : 31.154.11.0/29&lt;/P&gt;&lt;P&gt;we have 2 bgp peers to each ISP and we redistitbute the following network 31.154.12.0/27 (no physical nic related to that network only NAT to DMZ devices) from both&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have ipsec to customer from ISP1 with his physical address, and now we want to enable option to create the peer also from the ISP2 nic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can we use&amp;nbsp;unnembered vti tunnel with loopback address from 31.154.12.0/27 and create the peer with the customer with that ip address ?&lt;/P&gt;&lt;P&gt;then its will be managed from BGP and peer will be able to establish from both nic with 1 IP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i didnt find explained documents&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Jul 2021 15:33:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124343#M17932</guid>
      <dc:creator>asher</dc:creator>
      <dc:date>2021-07-19T15:33:59Z</dc:date>
    </item>
    <item>
      <title>Re: checkpoint unnnumbered vti tunnel</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124618#M17981</link>
      <description>&lt;P&gt;Not clear what the requirement is here.&lt;BR /&gt;Do you want to initiate the VPN from either IP or a specific IP.&lt;BR /&gt;In any case, it's the Link Selection setting in the gateway object that will control what the VPN is initiated with.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Jul 2021 22:32:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124618#M17981</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-07-21T22:32:01Z</dc:date>
    </item>
    <item>
      <title>Re: checkpoint unnnumbered vti tunnel</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124650#M17986</link>
      <description>&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i want to initiate the tunnel from loopback address that will be available from BGP from 2 ISP&amp;nbsp;peers,&lt;/P&gt;&lt;P&gt;the tunnel is with 3rd party device.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Jul 2021 08:22:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124650#M17986</guid>
      <dc:creator>asher</dc:creator>
      <dc:date>2021-07-22T08:22:11Z</dc:date>
    </item>
    <item>
      <title>Re: checkpoint unnnumbered vti tunnel</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124725#M18000</link>
      <description>&lt;P&gt;As I said, this is controlled by the VPN Link Selection setting in the gateway/cluster object.&lt;BR /&gt;You specify the relevant IP there.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Jul 2021 22:38:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/124725#M18000</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-07-22T22:38:33Z</dc:date>
    </item>
    <item>
      <title>Re: checkpoint unnnumbered vti tunnel</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/126757#M18347</link>
      <description>&lt;P&gt;Hi again&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the link selection is useful only when peers is manage locally,&lt;/P&gt;&lt;P&gt;in my scenario its 3rd party , i follow all the articles and its looks that vti is the best choice for that,&lt;/P&gt;&lt;P&gt;so there is any detailed guide for the following scenario:&lt;/P&gt;&lt;P&gt;1. ISP use only 1 public ip&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. we use 2 available public ip with&amp;nbsp; primary/backup tunnel&lt;/P&gt;&lt;P&gt;3. when we create tunnel interface on our side we create only 1 vti ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;4. in the 3rd party side need to create 2 vti ? one for each our public ip ?&lt;/P&gt;&lt;P&gt;5. our default route 0.0.0.0 is from BGP from both ISP peers&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Aug 2021 14:37:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/checkpoint-unnnumbered-vti-tunnel/m-p/126757#M18347</guid>
      <dc:creator>asher</dc:creator>
      <dc:date>2021-08-12T14:37:26Z</dc:date>
    </item>
  </channel>
</rss>

