<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic One VTI two(2) ISP and 3rd party remote peer with one(1) ISP in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190925#M35245</link>
    <description>&lt;P&gt;Currently in 81.10, we have a SG Cluster with 2 nodes (Active passive mode).&lt;/P&gt;&lt;P&gt;We also have 2 ISPs (ISP A with 10Mb and ISP B with 5 Mb bandwidth) in our location and would like to configure a VPN with a 3rd party &lt;SPAN&gt;Interoperable Device.&amp;nbsp;&lt;/SPAN&gt;The peer side has only one ISP and we need redundancy on this configuration. Also, on top of redundacy, and active active configuration to gain throughput.&lt;/P&gt;&lt;P&gt;With static routing, we need help to identify a way to enable the firewall to see only one VTI having two s2s tunnels underneath it. We see this concept on other vendors, but we have some difficulty finding out documentation that allows this kind of scenario.&lt;/P&gt;&lt;P&gt;Can you help identify the correct setup or configuration for this scenarion?&lt;BR /&gt;&lt;BR /&gt;Thanks guys.&lt;/P&gt;</description>
    <pubDate>Tue, 29 Aug 2023 15:20:55 GMT</pubDate>
    <dc:creator>le0costa</dc:creator>
    <dc:date>2023-08-29T15:20:55Z</dc:date>
    <item>
      <title>One VTI two(2) ISP and 3rd party remote peer with one(1) ISP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190925#M35245</link>
      <description>&lt;P&gt;Currently in 81.10, we have a SG Cluster with 2 nodes (Active passive mode).&lt;/P&gt;&lt;P&gt;We also have 2 ISPs (ISP A with 10Mb and ISP B with 5 Mb bandwidth) in our location and would like to configure a VPN with a 3rd party &lt;SPAN&gt;Interoperable Device.&amp;nbsp;&lt;/SPAN&gt;The peer side has only one ISP and we need redundancy on this configuration. Also, on top of redundacy, and active active configuration to gain throughput.&lt;/P&gt;&lt;P&gt;With static routing, we need help to identify a way to enable the firewall to see only one VTI having two s2s tunnels underneath it. We see this concept on other vendors, but we have some difficulty finding out documentation that allows this kind of scenario.&lt;/P&gt;&lt;P&gt;Can you help identify the correct setup or configuration for this scenarion?&lt;BR /&gt;&lt;BR /&gt;Thanks guys.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Aug 2023 15:20:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190925#M35245</guid>
      <dc:creator>le0costa</dc:creator>
      <dc:date>2023-08-29T15:20:55Z</dc:date>
    </item>
    <item>
      <title>Re: One VTI two(2) ISP and 3rd party remote peer with one(1) ISP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190929#M35246</link>
      <description>&lt;P&gt;Keep in mind, with ISPR on CP, if one link fails, other side will NEVER know about the new external IP address, unless its manually changed in the vpn link selection.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 29 Aug 2023 15:37:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190929#M35246</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-29T15:37:41Z</dc:date>
    </item>
    <item>
      <title>Re: One VTI two(2) ISP and 3rd party remote peer with one(1) ISP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190989#M35268</link>
      <description>&lt;P&gt;On the other firewall we have the VPN setup with the TWO ISPs behind a virtual tunnel interface.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is in fact a doubt on how to configure it correctly on the CP to work transparently.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Aug 2023 21:16:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/One-VTI-two-2-ISP-and-3rd-party-remote-peer-with-one-1-ISP/m-p/190989#M35268</guid>
      <dc:creator>le0costa</dc:creator>
      <dc:date>2023-08-29T21:16:31Z</dc:date>
    </item>
  </channel>
</rss>

