<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Tunnel to Cisco ASA doesn't work in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/177379#M32499</link>
    <description>&lt;P&gt;Glad it helped you mate. As my good friend would say, we are after all brothers from different mothers helping each other out : - ). Its not Oscar Wilde, more IT geek type of poetry lol&lt;/P&gt;
&lt;P&gt;Anyway, happy it all got sorted out.&lt;/P&gt;
&lt;P&gt;Cheers and dont hesitate to reach out directly if any issues down the road.&lt;/P&gt;
&lt;P&gt;Andy&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="BobAnakshieGIF (2).gif" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20410i57F89F103AE632DC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="BobAnakshieGIF (2).gif" alt="BobAnakshieGIF (2).gif" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Wed, 05 Apr 2023 12:51:52 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-04-05T12:51:52Z</dc:date>
    <item>
      <title>VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176567#M32327</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We’ve setup a VPN tunnel from our Check Point DC firewall to a Cisco ASA firewall in Australia but it doesn’t work. In logs (and IKEView), we see: &lt;EM&gt;&lt;STRONG&gt;Auth exchange: Received notification from peer: Traffic selectors unacceptable MyTSi: &amp;lt;IPv4 Universal Range&amp;gt; MyTSr: &amp;lt;My Peer's public IP&amp;gt;.&lt;/STRONG&gt; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We’ve tried what is proposed in sk157473 but no luck.&lt;/P&gt;&lt;P&gt;IKEView (legacy_ikev2.xmll), during authentication, Check Point proposes &lt;EM&gt;&lt;STRONG&gt;"IPv4 Universal Range"&lt;/STRONG&gt;&lt;/EM&gt; as its own traffic selector and the IP of the peer as TS for the peer but ASA refuses this in its response. Why doesn't Check Point propose its own public IP as TS ?&lt;BR /&gt;Can you help us find the issue?&lt;/P&gt;&lt;P&gt;Thanks in advance for your help.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 12:22:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176567#M32327</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-29T12:22:43Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176568#M32328</link>
      <description>&lt;P&gt;Tried &lt;A class="cp_link sc_ellipsis" style="max-width: 840px;" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;sk108600: &lt;STRONG&gt;VPN&lt;/STRONG&gt; Site-to-Site with &lt;STRONG&gt;3rd&lt;/STRONG&gt; &lt;STRONG&gt;party&lt;/STRONG&gt;&lt;/A&gt; yet ?&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 12:37:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176568#M32328</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-03-29T12:37:49Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176570#M32329</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;. Yes I already had a look at sk108600 but I don't see any scenario similar to my issue.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 12:41:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176570#M32329</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-29T12:41:48Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176571#M32330</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/78646"&gt;@Leader_Kiongi&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;See if you can do changes I proposed in below link to Rich. Let us know if that helps.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Site-to-site-Disconnects-amp-Questions/m-p/175758#M32093" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/Site-to-site-Disconnects-amp-Questions/m-p/175758#M32093&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 12:45:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176571#M32330</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-29T12:45:10Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176576#M32331</link>
      <description>&lt;P&gt;Better contact TAC to get this resolved asap !&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 13:11:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176576#M32331</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-03-29T13:11:01Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176583#M32333</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp; for your feedback. I could only change &lt;SPAN&gt;ike_p2_enable_supernet_from_R80.20, which can be changed on community basis.&amp;nbsp;ike_enable_supernet and&amp;nbsp;ike_use_largest_possible_subnets are global properties and changing those would have a huge impact on the VPN tunnels that are already working. The thing is that we have many other working tunnels with 3rd parties (Cisco, Fortinet etc...) with those settings set to true. Really don't understand.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks !&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Alain&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 13:37:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176583#M32333</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-29T13:37:16Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176584#M32334</link>
      <description>&lt;P&gt;Yes already opened a ticket with our partner, we don't have direct support with Check Point. But no feedback from them yet.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 13:38:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176584#M32334</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-29T13:38:44Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176585#M32335</link>
      <description>&lt;P&gt;No worries, I understand. I will tell you I had people change those many times before without any issues. Btw, those values should be set to FALSE to begin with. But, keep us posted on what TAC says.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 13:41:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176585#M32335</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-29T13:41:52Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176807#M32376</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I made the changes, pushed policy and reset the tunnel but still the same error. Something curious is that the tunnel shows as up in SmartView Monitor but ping doesn't work and in SmartConsole and IKEView I see the error "&lt;STRONG&gt;&lt;EM&gt;Traffic selectors unacceptable"&lt;/EM&gt;&lt;/STRONG&gt;. Check Point still proposes &lt;STRONG&gt;&lt;EM&gt;"IPv4 Universal Range"&lt;/EM&gt;&lt;/STRONG&gt; as Traffic Selector, which is rejected by the ASA.&lt;/P&gt;&lt;P&gt;Any idea ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks !&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain IKULA&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 19:13:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176807#M32376</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-30T19:13:03Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176808#M32377</link>
      <description>&lt;P&gt;How do you have tunnel management tab configured inside vpn community on CP side? Can you send a screenshot please? That message tells me it does not like something about phase 2 config.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 19:19:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176808#M32377</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-30T19:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176811#M32379</link>
      <description>&lt;P&gt;Apologies mate, forgot to attach a screenshot. This is what I was referring to.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20335i7ECDAF7BE87E5AAE/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 19:34:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176811#M32379</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-30T19:34:24Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176812#M32380</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;Andy is on the right way. The problem looks like related to tunnel management settings. Check your settings (subnet pair or gateway pair or host pair) The same must be defined on the Cisco ASA site, this is a common mistake.&lt;BR /&gt;Have a look at&amp;nbsp;&lt;A title="Site to Site using IKEv2 fails with &amp;quot;None of the traffic selectors match the conection" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk157473" target="_self"&gt;Site to Site using IKEv2 fails with "None of the traffic selectors match the conection&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is the ASA object configured as interoperable device ?&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 19:49:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176812#M32380</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2023-03-30T19:49:02Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176814#M32381</link>
      <description>&lt;P&gt;Thats honestly the only thing left that makes sense to me.&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/78646"&gt;@Leader_Kiongi&lt;/a&gt;&amp;nbsp;, here is the best Cisco vpn debug commands I got while back from the guy who used to work in Cisco TAC. If you can have them run this, should give better insight as well.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;debug vpn:&lt;/P&gt;
&lt;P&gt;debug crypto condition peer x.x.x.x&lt;/P&gt;
&lt;P&gt;debug crypto ikev1 200&lt;/P&gt;
&lt;P&gt;debug crypto ipsec 200&lt;/P&gt;
&lt;P&gt;to cancel all debugs-&amp;gt; undebug all&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 19:55:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176814#M32381</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-30T19:55:42Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176860#M32399</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1447"&gt;@Wolfgang&lt;/a&gt;&amp;nbsp;@ . Unfortunately, I already tried all tunnel management options (host pair, network pair and gateway pair) but still the same result. Check Point keeps proposing&amp;nbsp;"IPv4 Universal Range"&amp;nbsp;as Traffic Selector, but ASA refuses it. Yes I already had a look at sk157473 and yes Cisco ASA is configured as interoperable device&lt;BR /&gt;Thanks !&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 08:39:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176860#M32399</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-31T08:39:59Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176866#M32401</link>
      <description>&lt;P&gt;Now i am not sure which steps you already have taken or what Check Point version you are running but&lt;/P&gt;&lt;P&gt;there are some things i would try in an effort to rule out some issues.&lt;/P&gt;&lt;P&gt;IKE Version, are running v1 or v2 in the community ? Possible to switch and test ?&lt;/P&gt;&lt;P&gt;IPv4 summarization, Check Point fw is going to try to summarize the networks in the encryption domain which will cause issues if the other end has 2 /24's for example and Check Point is presenting a /23.&lt;/P&gt;&lt;P&gt;Are there more VPN tunnels to this Check Point endpoint ? Have you considered trying to use "Encryption Domain per Community"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 09:26:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176866#M32401</guid>
      <dc:creator>nooni</dc:creator>
      <dc:date>2023-03-31T09:26:32Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176871#M32404</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/69604"&gt;@nooni&lt;/a&gt;&amp;nbsp;. We're using IKEv2. Already tested with IKEv1 but same issue. What's curious is that same settings are being used&amp;nbsp; with another Check Point in Azure and it works. The only difference here is that my encryption domain is a test encryption domain with three /32 networks.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;IPv4 summarization has been disabled by switching those 3 settings to FALSE using GUIDBedit:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;ike_enable_supernet&lt;/P&gt;&lt;P&gt;ike_p2_enable_supernet_from_R80.20&lt;/P&gt;&lt;P&gt;ike_use_largest_possible_subnets&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm hopeless. No feedback yet from TAC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks !&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 09:52:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176871#M32404</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-31T09:52:19Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176916#M32412</link>
      <description>&lt;P&gt;How is tunnel management configured? Can you send a screenshot please? I referenced to it yesterday : - )&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 15:05:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176916#M32412</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-31T15:05:38Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176921#M32415</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;. Here you are:&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Tunnel_Management.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20351iC9FDD5BB24C3BB6F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Tunnel_Management.PNG" alt="Tunnel_Management.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Since around 01.00 PM, tunnel is up, though ping still doesn't work. My colleagues in Australia need to check if they see my incoming ping and maybe firewall rule is missing but traffic is now successfully encrypted in the tunnel. I think the change you proposed here&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Site-to-site-Disconnects-amp-Questions/m-p/175758#M32093" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/Site-to-site-Disconnects-amp-Questions/m-p/175758#M32093&lt;/A&gt;&amp;nbsp;made the trick. We still have to confirm with colleagues in Australia&amp;nbsp; on Monday. I'll keep you posted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot guys for your support. This community is incredible&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 15:21:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176921#M32415</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-31T15:21:34Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176922#M32416</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/78646"&gt;@Leader_Kiongi&lt;/a&gt;&amp;nbsp;Glad we can help mate, its always team effort on here! Funny story...one time, I was on the phone with TAC guy and the customer (customer I know very well personally) and TAC guy sends us a link and he goes "Here is the link I found, this is the guy called rock on community and I think he knows lots of stuff" and customer says to him "Hm, yea, I always wonder who that dude is" and it took support guy few minutes to figure out it was me HAHAHA&lt;/P&gt;
&lt;P&gt;We all laughed about it later, it was sort of funny lol&lt;/P&gt;
&lt;P&gt;Though as I said in the post you referenced, I had been know to fix some issues here and there in last 15 years, but nothing like community legend&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 15:30:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176922#M32416</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-03-31T15:30:44Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Tunnel to Cisco ASA doesn't work</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176925#M32417</link>
      <description>&lt;P&gt;This is really funny. I'll mark as solution if our Australian colleagues confirm on Monday.&lt;/P&gt;&lt;P&gt;Have a nice week-end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2023 15:47:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Tunnel-to-Cisco-ASA-doesn-t-work/m-p/176925#M32417</guid>
      <dc:creator>Leader_Kiongi</dc:creator>
      <dc:date>2023-03-31T15:47:10Z</dc:date>
    </item>
  </channel>
</rss>

