<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: renewal ipsec vpn cert in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/renewal-ipsec-vpn-cert/m-p/188868#M34759</link>
    <description>&lt;P&gt;I wpuld suggest to install recommended JT 109 ! VPN / ICA cert renewal should be done automatically then: &lt;A href="https://community.checkpoint.com/t5/Security-Gateways/IKE-certificate-auto-renewal-failure/m-p/63183#M12291" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/IKE-certificate-auto-renewal-failure/m-p/63183#M12291&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 08 Aug 2023 07:38:12 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2023-08-08T07:38:12Z</dc:date>
    <item>
      <title>renewal ipsec vpn cert</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/renewal-ipsec-vpn-cert/m-p/188863#M34758</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;running R81.10 take 66.&lt;/P&gt;&lt;P&gt;I've got an ipsec cert renewal for our main vpn gateway upcoming.&amp;nbsp; The cert is requested from the Checkpoint internal ca (so it's the selfsigned defaultcert).&lt;/P&gt;&lt;P&gt;I believe i can just renew the certificate and perform a policy push on the main vpn gateway?&lt;/P&gt;&lt;P&gt;And a policy push is NOT needed on all the remote gateways since they will renegotiate the ipsec connection automatically?&lt;/P&gt;&lt;P&gt;Best to perform this after hours as the tunnels will shortly go down/up due to ike phase 1 en 2 renegotiation?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thx!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;__PRESENT&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;__PRESENT&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;__PRESENT&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Aug 2023 07:28:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/renewal-ipsec-vpn-cert/m-p/188863#M34758</guid>
      <dc:creator>pnobels</dc:creator>
      <dc:date>2023-08-08T07:28:26Z</dc:date>
    </item>
    <item>
      <title>Re: renewal ipsec vpn cert</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/renewal-ipsec-vpn-cert/m-p/188868#M34759</link>
      <description>&lt;P&gt;I wpuld suggest to install recommended JT 109 ! VPN / ICA cert renewal should be done automatically then: &lt;A href="https://community.checkpoint.com/t5/Security-Gateways/IKE-certificate-auto-renewal-failure/m-p/63183#M12291" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/IKE-certificate-auto-renewal-failure/m-p/63183#M12291&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Aug 2023 07:38:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/renewal-ipsec-vpn-cert/m-p/188868#M34759</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-08-08T07:38:12Z</dc:date>
    </item>
  </channel>
</rss>

