<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN - Two Gateways with Two Interoperable Devices (at Vendor) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Two-Gateways-with-Two-Interoperable-Devices-at-Vendor/m-p/169197#M30622</link>
    <description>&lt;P&gt;Thanks for sharing!&lt;/P&gt;</description>
    <pubDate>Thu, 26 Jan 2023 01:31:13 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-01-26T01:31:13Z</dc:date>
    <item>
      <title>VPN - Two Gateways with Two Interoperable Devices (at Vendor)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Two-Gateways-with-Two-Interoperable-Devices-at-Vendor/m-p/168818#M30534</link>
      <description>&lt;P&gt;This is not a question, just a statement on how our setup is working....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Two checkpoint gateways and two interoperable devices, a total of four tunnels.&amp;nbsp; Vendor setup is as four individual tunnels (not route based, called Domain or Policy Based). Trying with individual communities didn't work (as you need to create duplicate objects, support said it's a no no).&amp;nbsp; Support had us create a star community with MEP selected.&amp;nbsp; The vendor with the devices required us to be responder only, not initiator.&amp;nbsp; Found in a post to turn off "Permanent Tunnels" under "Tunnel Management".&amp;nbsp; Only two of the four tunnels came up.&amp;nbsp; So we switched our star setup with center and satellite gateways and all four tunnels came up.&amp;nbsp; I'll lay out the main items for the working setup....&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Star Community&lt;/P&gt;&lt;P&gt;Interoperable devices were placed as Center Gateways&lt;/P&gt;&lt;P&gt;Checkpoint gateways were placed as Satellite Gateway&lt;/P&gt;&lt;P&gt;MEP was turned off&lt;/P&gt;&lt;P&gt;"Permanent Tunnels" was turned off&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There can be other ways to do this but we can only play so much with a vendor.&amp;nbsp; Hope this helps others.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Jan 2023 23:09:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Two-Gateways-with-Two-Interoperable-Devices-at-Vendor/m-p/168818#M30534</guid>
      <dc:creator>kinghl</dc:creator>
      <dc:date>2023-01-23T23:09:22Z</dc:date>
    </item>
    <item>
      <title>Re: VPN - Two Gateways with Two Interoperable Devices (at Vendor)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Two-Gateways-with-Two-Interoperable-Devices-at-Vendor/m-p/169197#M30622</link>
      <description>&lt;P&gt;Thanks for sharing!&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jan 2023 01:31:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Two-Gateways-with-Two-Interoperable-Devices-at-Vendor/m-p/169197#M30622</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-26T01:31:13Z</dc:date>
    </item>
  </channel>
</rss>

