<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Behind Router Using NAT in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146500#M23268</link>
    <description>&lt;P&gt;Therefore, following sk32664 would require no configuration change to the Link selection?&lt;/P&gt;</description>
    <pubDate>Tue, 19 Apr 2022 15:08:34 GMT</pubDate>
    <dc:creator>JoSec</dc:creator>
    <dc:date>2022-04-19T15:08:34Z</dc:date>
    <item>
      <title>VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146487#M23266</link>
      <description>&lt;P&gt;I have a situation where it would be easier if I can establish a Site to Site VPN from Checkpoint gateways (R80.40) behind an on-premise router doing NAT to two Availability Zones in AWS using a Palo Alto active passive cluster in each AZ functioning as active passive environments using BGP. My questions listed below.&lt;/P&gt;&lt;P&gt;1. Can I establish a site to site VPN behind the Router doing NAT? Is just as easy as changing the Link Selection to Statically Nated IP and using the public IP the router would use for NAT? If this is correct, any other configuration options.&lt;/P&gt;&lt;P&gt;2. If yes to above, any issue with doing this with Palo Alto gateways as the peer?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 13:56:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146487#M23266</guid>
      <dc:creator>JoSec</dc:creator>
      <dc:date>2022-04-19T13:56:23Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146499#M23267</link>
      <description>&lt;P&gt;1. Possible to be established using NAT-T (UDP 4500) from CP GW to peer or peer to CP (&lt;SPAN&gt;sk32664).&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 15:01:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146499#M23267</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-04-19T15:01:47Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146500#M23268</link>
      <description>&lt;P&gt;Therefore, following sk32664 would require no configuration change to the Link selection?&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 15:08:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146500#M23268</guid>
      <dc:creator>JoSec</dc:creator>
      <dc:date>2022-04-19T15:08:34Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146511#M23269</link>
      <description>&lt;P&gt;You can try or ask TAC - i would assume no. This only concerns IKE proposals, so not so much difference to usual IKE.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 16:46:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146511#M23269</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-04-19T16:46:49Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146512#M23275</link>
      <description>&lt;P&gt;I had done this before and you dont need to do anything with link selection.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 19 Apr 2022 16:57:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146512#M23275</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-04-19T16:57:27Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146607#M23291</link>
      <description>&lt;P&gt;Thanks for the responses. I'll be setting this up in the next few weeks and will update this thread.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2022 14:52:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146607#M23291</guid>
      <dc:creator>JoSec</dc:creator>
      <dc:date>2022-04-20T14:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Behind Router Using NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146610#M23292</link>
      <description>&lt;P&gt;Definitely let us know the results mate.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2022 15:16:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Behind-Router-Using-NAT/m-p/146610#M23292</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-04-20T15:16:07Z</dc:date>
    </item>
  </channel>
</rss>

