<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic VPN link selection use 3main address in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179248#M32847</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we have 3ISP topology as external. One ISP link we have configure for vpn site to site.Already running 8 vpn tunnels.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;link selection we have manually selected that particular ISP from interface ip link. &amp;nbsp;&lt;/P&gt;&lt;P&gt;we have need to create new vpn with tunnel using another external ISP connection. We are not enabled isp redundancy. If we selected new interface in link selection existing vpns will down.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can anyone advice what will happen if we select vpn link selection Main Address? Any issues if configured 2ISP with these method?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 26 Apr 2023 15:45:41 GMT</pubDate>
    <dc:creator>sanoj</dc:creator>
    <dc:date>2023-04-26T15:45:41Z</dc:date>
    <item>
      <title>VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179248#M32847</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we have 3ISP topology as external. One ISP link we have configure for vpn site to site.Already running 8 vpn tunnels.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;link selection we have manually selected that particular ISP from interface ip link. &amp;nbsp;&lt;/P&gt;&lt;P&gt;we have need to create new vpn with tunnel using another external ISP connection. We are not enabled isp redundancy. If we selected new interface in link selection existing vpns will down.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can anyone advice what will happen if we select vpn link selection Main Address? Any issues if configured 2ISP with these method?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Apr 2023 15:45:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179248#M32847</guid>
      <dc:creator>sanoj</dc:creator>
      <dc:date>2023-04-26T15:45:41Z</dc:date>
    </item>
    <item>
      <title>Re: VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179278#M32857</link>
      <description>&lt;P&gt;Main Address will always use the object IP for the VPN.&lt;BR /&gt;If you want the IP to change based on ISP used, ISP Redundancy must be enabled.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2023 00:22:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179278#M32857</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-27T00:22:34Z</dc:date>
    </item>
    <item>
      <title>Re: VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179284#M32859</link>
      <description>&lt;P&gt;There is no issue doing it the way you said...Im sure thats how 99% of people do it, BUT, as Phoneboy said, if you want this to change based on ISP itself, then you have to use ISP redundancy. Important note, keep in mind that even IF you use ISPR, thats no guarantee if there is a failover, vpn tunnels will work, as other ends would need to know about the new external IP on CP side, so thats also something to keep in mind.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2023 00:53:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179284#M32859</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-04-27T00:53:16Z</dc:date>
    </item>
    <item>
      <title>Re: VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179307#M32861</link>
      <description>&lt;P&gt;Hi PhoneBoy,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I remember got one scenario with some issues, where setup as&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;Multiple Router&amp;gt; - &amp;lt;Link Controller/Load Balancer&amp;gt; -Transit Link / Internal IP- &amp;lt;Check Point Gateway&amp;gt;&lt;/P&gt;&lt;P&gt;Where Check Point will only have one Link Selection option for NATed Public IP Address selection, if have multiple Public IP Address, we got any options to include multiple Public IP Address?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2023 08:31:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179307#M32861</guid>
      <dc:creator>garrod</dc:creator>
      <dc:date>2023-04-27T08:31:17Z</dc:date>
    </item>
    <item>
      <title>Re: VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179353#M32863</link>
      <description>&lt;P&gt;Unfortunately, you can only specify one IP in Link Selection currently.&lt;BR /&gt;This is something I believe we will address in an upcoming release.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2023 13:33:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179353#M32863</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-27T13:33:45Z</dc:date>
    </item>
    <item>
      <title>Re: VPN link selection use 3main address</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179361#M32864</link>
      <description>&lt;P&gt;I think that would be HUGE improvement, if it happens.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Apr 2023 13:55:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-link-selection-use-3main-address/m-p/179361#M32864</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-04-27T13:55:49Z</dc:date>
    </item>
  </channel>
</rss>

