<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Can Loopback be Used as a VPN Source on VSX? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143526#M22297</link>
    <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;We have a VSX cluster currently running on version R80.30. We have a requirement to migrate the external IP range to a new subnet (within a different part of the same larger IP address block so we have full control over routing within that block etc). However, we have multiple VPNs terminating on some of the virtual firewalls. I notice that in R81.10, Loopback interfaces are supported on VSX for Dynamic Routing over VPNs, however does anybody know if these could be used (and it is a supported configuration) as the source interface of a standard policy based site to site VPN? (Obviously we would need to add /32 routes externally for the old external address that was then migrated to the loopback).&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;John M&lt;/P&gt;</description>
    <pubDate>Fri, 11 Mar 2022 15:46:34 GMT</pubDate>
    <dc:creator>manny799</dc:creator>
    <dc:date>2022-03-11T15:46:34Z</dc:date>
    <item>
      <title>Can Loopback be Used as a VPN Source on VSX?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143526#M22297</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;We have a VSX cluster currently running on version R80.30. We have a requirement to migrate the external IP range to a new subnet (within a different part of the same larger IP address block so we have full control over routing within that block etc). However, we have multiple VPNs terminating on some of the virtual firewalls. I notice that in R81.10, Loopback interfaces are supported on VSX for Dynamic Routing over VPNs, however does anybody know if these could be used (and it is a supported configuration) as the source interface of a standard policy based site to site VPN? (Obviously we would need to add /32 routes externally for the old external address that was then migrated to the loopback).&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;John M&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2022 15:46:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143526#M22297</guid>
      <dc:creator>manny799</dc:creator>
      <dc:date>2022-03-11T15:46:34Z</dc:date>
    </item>
    <item>
      <title>Re: Can Loopback be Used as a VPN Source on VSX?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143538#M22301</link>
      <description>&lt;P&gt;Wow, thats super interesting question...I would be curious to know as well. Personally, I never heard of something like that being supported.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2022 18:43:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143538#M22301</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-03-11T18:43:38Z</dc:date>
    </item>
    <item>
      <title>Re: Can Loopback be Used as a VPN Source on VSX?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143565#M22310</link>
      <description>&lt;P&gt;I've seen dummy DMZ interfaces used for similar in the past, but not tested this approach as yet myself.&lt;/P&gt;
&lt;P&gt;Suggest requesting a formal answer via TAC or your SE.&lt;/P&gt;</description>
      <pubDate>Sat, 12 Mar 2022 02:12:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143565#M22310</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-03-12T02:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: Can Loopback be Used as a VPN Source on VSX?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143592#M22318</link>
      <description>&lt;P&gt;What matters is the IP address you configure for Link Selection, which I assume could be that loopback address.&lt;/P&gt;</description>
      <pubDate>Sun, 13 Mar 2022 13:38:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-Loopback-be-Used-as-a-VPN-Source-on-VSX/m-p/143592#M22318</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-03-13T13:38:25Z</dc:date>
    </item>
  </channel>
</rss>

