<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure Site-to-Site VPn fail in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/49741#M23031</link>
    <description>&lt;P&gt;Did you anyone figure out what parameters are outdated ?&lt;/P&gt;</description>
    <pubDate>Wed, 03 Apr 2019 19:15:18 GMT</pubDate>
    <dc:creator>Amir_Rehman</dc:creator>
    <dc:date>2019-04-03T19:15:18Z</dc:date>
    <item>
      <title>Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16102#M23025</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have been trying to establish the IP sec vpn with Azure site. I have followed the&amp;nbsp;sk101275 for the same but was not able to establish the VPN. Does anybody&amp;nbsp; successfully done it and it would be great if the configuration can be shared.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sagar Manandhar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Dec 2017 04:58:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16102#M23025</guid>
      <dc:creator>Sagar_Manandhar</dc:creator>
      <dc:date>2017-12-04T04:58:42Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16103#M23026</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'd start with basic troubleshooting, as described here:&amp;nbsp;&lt;A class="link-titled" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600"&gt;VPN Site-to-Site with 3rd party&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note that most of this is generic to "third parties" (i.e. not a Check Point gateway you control) and should also apply to Azure.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Dec 2017 05:55:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16103#M23026</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2017-12-05T05:55:03Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16104#M23027</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;we have finally configure the VPN. we got to know that the parameter given in the checkpoint doc for Azure VPN is outdated and we have replace it with the new parameter given by the azure team and now its working fine&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Jan 2018 04:14:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16104#M23027</guid>
      <dc:creator>Sagar_Manandhar</dc:creator>
      <dc:date>2018-01-23T04:14:08Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16105#M23028</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So that we can update our docs, can you share what the incorrect parameters&amp;nbsp;are and what we should replace them with?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Jan 2018 06:04:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16105#M23028</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-01-23T06:04:10Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16106#M23029</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Change MTU of interface: 1350 (1500 default)&lt;BR /&gt;Encryption Method: IKEv2 only&lt;BR /&gt;Custom Encryption suite:&lt;BR /&gt; &lt;STRONG&gt;IKE Security Association (Phase 1)&lt;/STRONG&gt;&lt;BR /&gt; -Encryption Algorithm: AES-256&lt;BR /&gt; -Data Integrity: SHA1&lt;BR /&gt; -Diffie-Hellman group : Group 2 (1024bit)&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;IKE Security Association (Phase 2)&lt;/STRONG&gt;&lt;BR /&gt; -Encryption Algorithm: AES-256&lt;BR /&gt; -Data Integrity: SHA1&lt;/P&gt;&lt;P&gt;&lt;BR /&gt; &lt;STRONG&gt;VPN Tunnel Sharing&lt;/STRONG&gt;&lt;BR /&gt; -Select One VPN Tunnel per Gateway Pair&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;IKE(phase1)&lt;/STRONG&gt;&lt;BR /&gt; -Renegotiate IKE security associations every (min): 480&lt;BR /&gt; &lt;STRONG&gt;IPsec(phase2)&lt;/STRONG&gt;&lt;BR /&gt; -Renegotiate IPsec security associations every(sec):27000&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Jan 2018 06:50:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16106#M23029</guid>
      <dc:creator>Sagar_Manandhar</dc:creator>
      <dc:date>2018-01-23T06:50:16Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16107#M23030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/migrated-users/46661"&gt;Sagar Manandhar&lt;/A&gt;‌ can you please elaborate what was incorrect in the SK that caused VPN not work, so we will update the SK? I see different SA lifetimes, it should not cause issue to establish the tunnel.. Of course still SK should be updated, but I wonder if there are some other parameters to be fixed..&lt;BR /&gt;Thank you in advance!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Aug 2018 08:09:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/16107#M23030</guid>
      <dc:creator>Igor_Roytman</dc:creator>
      <dc:date>2018-08-06T08:09:36Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/49741#M23031</link>
      <description>&lt;P&gt;Did you anyone figure out what parameters are outdated ?&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 19:15:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/49741#M23031</guid>
      <dc:creator>Amir_Rehman</dc:creator>
      <dc:date>2019-04-03T19:15:18Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/49783#M23032</link>
      <description>&lt;P&gt;We have also established tunnel checkpoint gateway to AWS successfully but it sometimes disconnect the connection and we have to reset the tunnel every time to establish flow again.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2019 10:44:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/49783#M23032</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2019-04-04T10:44:33Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/64895#M23033</link>
      <description>&lt;P&gt;It worked for me!&lt;/P&gt;&lt;P&gt;Thanks dude&lt;/P&gt;</description>
      <pubDate>Sun, 13 Oct 2019 14:41:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/64895#M23033</guid>
      <dc:creator>Henrique_Sauer_</dc:creator>
      <dc:date>2019-10-13T14:41:46Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/148223#M23661</link>
      <description>&lt;P&gt;Can someone please post what the settings should be or a link to the documentation for a Check Point site-to-site VPN between a on-prem cluster to a single to Azure GW? I have have a TAC case open and even they are having trouble. We use Smart-1 to manage both GW's and I suspect that may be causing the issue.&lt;/P&gt;</description>
      <pubDate>Mon, 09 May 2022 14:45:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/148223#M23661</guid>
      <dc:creator>John_Richards</dc:creator>
      <dc:date>2022-05-09T14:45:03Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/157885#M27446</link>
      <description>&lt;P&gt;Hi John&lt;/P&gt;&lt;P&gt;Do you were successful in being able to create the vpn between the 2 checkpoint fw, managed by the same management.?&lt;/P&gt;&lt;P&gt;In one case, with TAC apply the&amp;nbsp;sk21156, where disable the CRL.&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Fri, 23 Sep 2022 00:34:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/157885#M27446</guid>
      <dc:creator>fllangari</dc:creator>
      <dc:date>2022-09-23T00:34:09Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Site-to-Site VPn fail</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/157924#M27476</link>
      <description>&lt;P&gt;I believe it came down to the settings in the topology for the MAAS tunnel on the GW. Once we corrected the topo the tunnel worked.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Sep 2022 15:32:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-Site-to-Site-VPn-fail/m-p/157924#M27476</guid>
      <dc:creator>John_Richards</dc:creator>
      <dc:date>2022-09-23T15:32:48Z</dc:date>
    </item>
  </channel>
</rss>

