<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Advertise policy-based vpn route in OSPF in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132460#M19626</link>
    <description>&lt;P&gt;I usually create the prefix as a blackhole route and then redistribute it which sounds scary, but as long as you have more specific routes than 10.0.0.0/8 in your routing table your traffic will still work fine.&amp;nbsp; In R81+ you can just create a special "NAT Pool" entity in the Gaia OS instead, see here:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk165333&amp;amp;partition=Advanced&amp;amp;product=Quantum" target="_blank" rel="noopener"&gt;sk165333: How to Redistribute NAT Prefixes with BGP or OSPF&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 23 Oct 2021 00:19:58 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2021-10-23T00:19:58Z</dc:date>
    <item>
      <title>Advertise policy-based vpn route in OSPF</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132111#M19538</link>
      <description>&lt;P&gt;I have a policy-based site-to-site tunnel to Azure and my Azure networks will be in the 10.0.0.0/8 address space.&lt;/P&gt;&lt;P&gt;How do I advertise this route in OSPF?&lt;/P&gt;&lt;P&gt;Running 3600T/3800 on R80.40 Take 118&lt;/P&gt;</description>
      <pubDate>Thu, 21 Oct 2021 14:33:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132111#M19538</guid>
      <dc:creator>RickyDan</dc:creator>
      <dc:date>2021-10-21T14:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: Advertise policy-based vpn route in OSPF</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132413#M19610</link>
      <description>&lt;P&gt;You can only advertise a route that is configured somewhere (e.g. statically) and then redistribute that to OSPF.&lt;/P&gt;</description>
      <pubDate>Thu, 21 Oct 2021 23:02:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132413#M19610</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-21T23:02:59Z</dc:date>
    </item>
    <item>
      <title>Re: Advertise policy-based vpn route in OSPF</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132445#M19621</link>
      <description>&lt;P&gt;Yes so is there a static route I can create for this route and then advertise? Do I just put any random next-hop address or is there something specific I must do?&lt;/P&gt;</description>
      <pubDate>Fri, 22 Oct 2021 16:27:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132445#M19621</guid>
      <dc:creator>RickyDan</dc:creator>
      <dc:date>2021-10-22T16:27:20Z</dc:date>
    </item>
    <item>
      <title>Re: Advertise policy-based vpn route in OSPF</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132447#M19623</link>
      <description>&lt;P&gt;My inclination would be to configure the route to use whatever the next hop is for the default route.&lt;BR /&gt;But that's just a guess.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Oct 2021 17:40:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132447#M19623</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-22T17:40:19Z</dc:date>
    </item>
    <item>
      <title>Re: Advertise policy-based vpn route in OSPF</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132460#M19626</link>
      <description>&lt;P&gt;I usually create the prefix as a blackhole route and then redistribute it which sounds scary, but as long as you have more specific routes than 10.0.0.0/8 in your routing table your traffic will still work fine.&amp;nbsp; In R81+ you can just create a special "NAT Pool" entity in the Gaia OS instead, see here:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk165333&amp;amp;partition=Advanced&amp;amp;product=Quantum" target="_blank" rel="noopener"&gt;sk165333: How to Redistribute NAT Prefixes with BGP or OSPF&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 23 Oct 2021 00:19:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Advertise-policy-based-vpn-route-in-OSPF/m-p/132460#M19626</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-10-23T00:19:58Z</dc:date>
    </item>
  </channel>
</rss>

