<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity awareness does not work, routing problem. How to be in such a situation? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135514#M20428</link>
    <description>&lt;P&gt;I don’t understand, you can learn more?&lt;/P&gt;</description>
    <pubDate>Sat, 04 Dec 2021 13:54:10 GMT</pubDate>
    <dc:creator>Andrew25</dc:creator>
    <dc:date>2021-12-04T13:54:10Z</dc:date>
    <item>
      <title>Identity awareness does not work, routing problem. What are the options for solving the problem?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135509#M20424</link>
      <description>&lt;P&gt;&lt;EM&gt;We plan to use authentication on the FW-B for Internet access and Mobile Access connections&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Description of the problem&lt;/P&gt;&lt;P&gt;FW-B uses an external IP (2.2.2.2) address for requests (Identity Avareaness) to DC-1. DC-1 sends a response in the wrong direction, according to routing&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Identity.jpg" style="width: 792px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14458i3548D354551F4BCB/image-size/large?v=v2&amp;amp;px=999" role="button" title="Identity.jpg" alt="Identity.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Is it possible to configure the FW-B so that it sends requests (Identity Avareaness) using its local IP address as the source interface?&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 16:25:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135509#M20424</guid>
      <dc:creator>Andrew25</dc:creator>
      <dc:date>2021-12-04T16:25:45Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135510#M20425</link>
      <description>&lt;P&gt;What do you see if you issue ip route get and then IP of the DC1? just run ip r g 192.168.0.1 on expert mode of firewall B.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 13:05:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135510#M20425</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-12-04T13:05:15Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135512#M20426</link>
      <description>&lt;P&gt;192.168.0.1 via 2.2.2.1 dev eth1 src 2.2.2.2&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 13:47:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135512#M20426</guid>
      <dc:creator>Andrew25</dc:creator>
      <dc:date>2021-12-04T13:47:21Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135513#M20427</link>
      <description>&lt;P&gt;Well, if you want it to take different path, just change the route to reflect different interface. It seems at this point its using 2.2.2.2 interface IP with gateway of 2.2.2.1.&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 13:50:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135513#M20427</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-12-04T13:50:54Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135514#M20428</link>
      <description>&lt;P&gt;I don’t understand, you can learn more?&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 13:54:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135514#M20428</guid>
      <dc:creator>Andrew25</dc:creator>
      <dc:date>2021-12-04T13:54:10Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135515#M20429</link>
      <description>&lt;P&gt;What Im saying is, it does not sound logical to use external interface to access something internal from the firewall itself. Just change it to reflect internal interface of the firewall, as long as topology is right.&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 14:03:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135515#M20429</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-12-04T14:03:52Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135516#M20430</link>
      <description>&lt;P&gt;Yes, it is not logical, I agree.&amp;nbsp;How to &lt;SPAN&gt;change it to reflect internal interface of the firewall?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 14:07:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135516#M20430</guid>
      <dc:creator>Andrew25</dc:creator>
      <dc:date>2021-12-04T14:07:46Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. How to be in such a situation?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135518#M20432</link>
      <description>&lt;P&gt;From web UI or clish. Just change it via web UI in the browser, it takes 15 seconds literally.&lt;/P&gt;</description>
      <pubDate>Sat, 04 Dec 2021 18:56:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135518#M20432</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-12-04T18:56:53Z</dc:date>
    </item>
    <item>
      <title>Re: Identity awareness does not work, routing problem. What are the options for solving the problem?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135856#M20515</link>
      <description>&lt;P&gt;You could do a hide NAT on the traffic from FW-B when it passes through FW-A to go to the DC-1&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Dec 2021 17:47:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Identity-awareness-does-not-work-routing-problem-What-are-the/m-p/135856#M20515</guid>
      <dc:creator>Andrew25</dc:creator>
      <dc:date>2021-12-08T17:47:13Z</dc:date>
    </item>
  </channel>
</rss>

