<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec VPN to AWS - DPD responder in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPSec-VPN-to-AWS-DPD-responder/m-p/189788#M34973</link>
    <description>&lt;P&gt;This should be safe to do.&lt;BR /&gt;If one of your VPN peers requires responder mode, this can be forced per-peer through Guidbedit.&lt;/P&gt;</description>
    <pubDate>Thu, 17 Aug 2023 15:19:03 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-08-17T15:19:03Z</dc:date>
    <item>
      <title>IPSec VPN to AWS - DPD responder</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPSec-VPN-to-AWS-DPD-responder/m-p/189783#M34969</link>
      <description>&lt;P&gt;sk108600 VPN Site-to-Site with 3rd party - Scenario 5&lt;/P&gt;&lt;P&gt;AWS side has DPD enabled. They report issues where two tunnels come up, one initiator and one as responder. The tunnel works fine until it locks up. The remote side has to reset their side to bring back up.&lt;/P&gt;&lt;P&gt;I am looking at "Passive DPD Responder Mode". This is a registry edit on my Check Point firewalls.&lt;/P&gt;&lt;P&gt;If I understand correctly, the would allow the Check Point to respond to the AWS side's probing.&lt;/P&gt;&lt;P&gt;Question: Is this generally safe to enable this registry setting on my gateway without impacting the other IPSec tunnels I have? (which are working)&lt;/P&gt;&lt;P&gt;I am aware of enabling permanent tunnel and modifying the interoperable device with GuiDBEdit; however that apparently allows my gateway to initiate tunnels to AWS which is the problem I'm trying to solve.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 14:59:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPSec-VPN-to-AWS-DPD-responder/m-p/189783#M34969</guid>
      <dc:creator>SecNetEng</dc:creator>
      <dc:date>2023-08-17T14:59:13Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN to AWS - DPD responder</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPSec-VPN-to-AWS-DPD-responder/m-p/189788#M34973</link>
      <description>&lt;P&gt;This should be safe to do.&lt;BR /&gt;If one of your VPN peers requires responder mode, this can be forced per-peer through Guidbedit.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 15:19:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPSec-VPN-to-AWS-DPD-responder/m-p/189788#M34973</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-08-17T15:19:03Z</dc:date>
    </item>
  </channel>
</rss>

