<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Routes not visible in Gaia in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141649#M21877</link>
    <description>&lt;P&gt;Then you will not find them in the routing table. You can try with the following command in the Expert mode:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;fw tab -f -t vpn_routing -u&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Feb 2022 12:38:09 GMT</pubDate>
    <dc:creator>mk1</dc:creator>
    <dc:date>2022-02-16T12:38:09Z</dc:date>
    <item>
      <title>VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141588#M21863</link>
      <description>&lt;P&gt;Hello Mates,&lt;/P&gt;&lt;P&gt;have here a R81.10 T22 with a S2S VPN to 3rd Party but I cannot see the route to the target encryption domain in the route table of the OS or in Gaia. The VPN works fine though.&lt;/P&gt;&lt;P&gt;Is this by design or do I miss an option?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;David&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 20:37:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141588#M21863</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2022-02-15T20:37:52Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141617#M21870</link>
      <description>&lt;P&gt;Is this a route based or policy based VPN?&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 08:40:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141617#M21870</guid>
      <dc:creator>mk1</dc:creator>
      <dc:date>2022-02-16T08:40:29Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141637#M21874</link>
      <description>&lt;P&gt;We define in the VPN communities the encryption domains for each site so i guess it's domain based.&lt;BR /&gt;I haven't found a quick answer about the difference of each types (route based, policy based, domain based) &lt;span class="lia-unicode-emoji" title=":grinning_face_with_sweat:"&gt;😅&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 11:15:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141637#M21874</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2022-02-16T11:15:12Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141649#M21877</link>
      <description>&lt;P&gt;Then you will not find them in the routing table. You can try with the following command in the Expert mode:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;fw tab -f -t vpn_routing -u&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 12:38:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141649#M21877</guid>
      <dc:creator>mk1</dc:creator>
      <dc:date>2022-02-16T12:38:09Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141651#M21878</link>
      <description>&lt;P&gt;ah yes there i see it...&lt;BR /&gt;Any ideas how i can use this route now to redistribute it via OSPF?&lt;BR /&gt;I mean it works when I manually add an static-route for the neeeded route and add it to a route-map but this is an equal ugly solution as the output from "&lt;EM&gt;&lt;STRONG&gt;fw tab -f -t vpn_routing -u&lt;/STRONG&gt;&lt;/EM&gt;" &lt;span class="lia-unicode-emoji" title=":sad_but_relieved_face:"&gt;😥&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 12:59:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141651#M21878</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2022-02-16T12:59:19Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141653#M21879</link>
      <description>&lt;P&gt;In my opinion, after you need dynamic routing the best way would be to convert to route based VPNs. As you said, it's not possible to advertise a route which doesn't exist in your routing table. The other option is the proposed from you, to add static route pointing to your gateway through the proper outgoing interface for instance and then advertise it via OSPF.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 13:18:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141653#M21879</guid>
      <dc:creator>mk1</dc:creator>
      <dc:date>2022-02-16T13:18:39Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141656#M21881</link>
      <description>&lt;P&gt;Those are not OS system level routes, those are VPN routes.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 13:30:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141656#M21881</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-02-16T13:30:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141664#M21884</link>
      <description>&lt;P&gt;I checked now the situation on another CP Gateway (r80.40) where we have other domain based VPNs and there I see the kernel Routes. BUT only the routes from the star communities.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Tried now to reconfigure my Mesh-Community to Star to check if the Routes will show up but no &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 14:22:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141664#M21884</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2022-02-16T14:22:20Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141666#M21885</link>
      <description>&lt;P&gt;You can't redistribute that directly since routes in the vpn_routing table are not "real" routes that exist in the Gaia OS that OSPF can see.&lt;/P&gt;
&lt;P&gt;If you are using at least R81, check out NAT Pools which should allow redistribution.&amp;nbsp; Here is the relevant page from my Gaia 3.10 Immersion self-guided video series:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="natpools2.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15421i732F9F547F07C8FC/image-size/large?v=v2&amp;amp;px=999" role="button" title="natpools2.png" alt="natpools2.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 14:24:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141666#M21885</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2022-02-16T14:24:14Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routes not visible in Gaia</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141870#M21938</link>
      <description>&lt;P&gt;Cool! Thanks I can work with that handy solution!&lt;/P&gt;</description>
      <pubDate>Fri, 18 Feb 2022 10:30:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routes-not-visible-in-Gaia/m-p/141870#M21938</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2022-02-18T10:30:05Z</dc:date>
    </item>
  </channel>
</rss>

