<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148296#M23679</link>
    <description>&lt;P&gt;You should rather refer to&amp;nbsp;&lt;SPAN&gt;Site to Site VPN R81.10 Administration Guide p.&lt;/SPAN&gt;&lt;SPAN&gt;41:&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;VPN with Interoperable Device for configuration,&amp;nbsp;sk108600 is for troubleshooting / debugging.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 10 May 2022 10:30:19 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2022-05-10T10:30:19Z</dc:date>
    <item>
      <title>Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148246#M23668</link>
      <description>&lt;P&gt;HI there,&amp;nbsp;&lt;/P&gt;&lt;P&gt;newbie here, trying to establish a IPSEC VPN to 3rd party Fortigate FW.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;below are the logs from Fortigate as i cant find anything much from CP debug IKE.ELG log.&lt;/P&gt;&lt;P&gt;Phase 1 passes except Phase 2(refer to pic or below).&lt;/P&gt;&lt;P&gt;peer proposal is : &lt;FONT color="#FF0000"&gt;peer:0:192.168.1.251-192.168.1.251:0&lt;/FONT&gt;, me:0:192.168.200.0-192.168.200.255:0&lt;/P&gt;&lt;P&gt;is the ip in red should be my lan&amp;nbsp;1&lt;FONT color="#339966"&gt;92.168.220.254&lt;/FONT&gt;&amp;nbsp;address to correct the issue?&lt;/P&gt;&lt;P&gt;tried many settings but still get there error. where should i config to get the correct peer proposal?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My info:&amp;nbsp;&lt;/P&gt;&lt;P&gt;External: 192.168.1.251, LAN: 192.168.220.254&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Peer info:&lt;/P&gt;&lt;P&gt;External: 192.168.0.253, LAN: 192.168.200.1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 03:59:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148246#M23668</guid>
      <dc:creator>kennyt</dc:creator>
      <dc:date>2022-05-10T03:59:39Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148259#M23669</link>
      <description>&lt;P&gt;Looks like the encryption domain on your gateway is blank (are you using route-based VPN's?) or is not matching what the FG expects.&lt;/P&gt;
&lt;P&gt;One option might be to use the Encryption Domain per Community functionality, and make your encryption domain for this community contain something like&amp;nbsp;&lt;SPAN&gt;192.168.220.0/24 (assuming that's what you have configured on the FG side) and then see what the FG debugs say.&amp;nbsp; Also try disabling NAT inside the community.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 09:46:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148259#M23669</guid>
      <dc:creator>Ruan_Kotze</dc:creator>
      <dc:date>2022-05-10T09:46:23Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148260#M23670</link>
      <description>&lt;P&gt;See&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;sk108600: &lt;STRONG&gt;VPN&lt;/STRONG&gt; Site-to-Site with &lt;STRONG&gt;3rd&lt;/STRONG&gt; &lt;STRONG&gt;party&lt;/STRONG&gt;&lt;/A&gt;&amp;nbsp;for basic issues in CP to 3rd party VPN. I would suggest capturing the traffic and analyze using wireshark - see&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk34467&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;sk34467: Debugging Site-to-Site &lt;STRONG&gt;VPN&lt;/STRONG&gt;&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 07:33:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148260#M23670</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-05-10T07:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148284#M23674</link>
      <description>&lt;P&gt;&lt;SPAN&gt;192.168.200.220.254 ???&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 08:51:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148284#M23674</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-05-10T08:51:11Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148286#M23677</link>
      <description>&lt;P&gt;HI,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm actually refer to sk108600 to setup these connection&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 09:18:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148286#M23677</guid>
      <dc:creator>kennyt</dc:creator>
      <dc:date>2022-05-10T09:18:08Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148287#M23678</link>
      <description>&lt;P&gt;Good catch, corrected.&amp;nbsp; OP's LAN IP.&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 09:28:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148287#M23678</guid>
      <dc:creator>Ruan_Kotze</dc:creator>
      <dc:date>2022-05-10T09:28:50Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148296#M23679</link>
      <description>&lt;P&gt;You should rather refer to&amp;nbsp;&lt;SPAN&gt;Site to Site VPN R81.10 Administration Guide p.&lt;/SPAN&gt;&lt;SPAN&gt;41:&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;VPN with Interoperable Device for configuration,&amp;nbsp;sk108600 is for troubleshooting / debugging.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 10:30:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148296#M23679</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-05-10T10:30:19Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148336#M23688</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i'm using domain-based VPN&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 14:36:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148336#M23688</guid>
      <dc:creator>kennyt</dc:creator>
      <dc:date>2022-05-10T14:36:57Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint v80.40 IPSEC VPN with 3rd party Fortigate Firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148337#M23689</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;Will lookup to it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2022 14:37:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-v80-40-IPSEC-VPN-with-3rd-party-Fortigate-Firewall/m-p/148337#M23689</guid>
      <dc:creator>kennyt</dc:creator>
      <dc:date>2022-05-10T14:37:41Z</dc:date>
    </item>
  </channel>
</rss>

