<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Check Point to Azure S2S VPN and VPN Community Routing in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-to-Azure-S2S-VPN-and-VPN-Community-Routing/m-p/208573#M39497</link>
    <description>&lt;P&gt;What is the actual encryption domain for your Azure gateways?&lt;BR /&gt;I suspect you may need to include some IPs/networks in it to ensure traffic is NOT encrypted when it doesn't need to be.&lt;BR /&gt;Might also need some specific static routes that aren't "default."&lt;/P&gt;</description>
    <pubDate>Wed, 13 Mar 2024 00:19:50 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-03-13T00:19:50Z</dc:date>
    <item>
      <title>Check Point to Azure S2S VPN and VPN Community Routing</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-to-Azure-S2S-VPN-and-VPN-Community-Routing/m-p/208521#M39482</link>
      <description>&lt;DIV&gt;&lt;SPAN&gt;We have deployed and configured&amp;nbsp; Azure Checkpoint HA Cluster with loadbalancers and an end-device network for testing. Azure and onprem Gateways are connected via a s2s tunnel. Communication from Azure "endpoint network" to onprem device works and seems to be ok. The need is, to route all traffic (including internet)&amp;nbsp; through s2s tunnel to our onprem Gateways. So we changed settings for s2s tunnel in (vpn community - vpn routing) from "to center only" to&amp;nbsp; "to center or through the center to internet."&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;After this change, Azure Firewall Gateways are no longer accessible via public ip, and HA Cluster no longer works correct. Any ideas, where the problem could be?&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 12 Mar 2024 15:31:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-to-Azure-S2S-VPN-and-VPN-Community-Routing/m-p/208521#M39482</guid>
      <dc:creator>FirewallerRS</dc:creator>
      <dc:date>2024-03-12T15:31:34Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point to Azure S2S VPN and VPN Community Routing</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-to-Azure-S2S-VPN-and-VPN-Community-Routing/m-p/208573#M39497</link>
      <description>&lt;P&gt;What is the actual encryption domain for your Azure gateways?&lt;BR /&gt;I suspect you may need to include some IPs/networks in it to ensure traffic is NOT encrypted when it doesn't need to be.&lt;BR /&gt;Might also need some specific static routes that aren't "default."&lt;/P&gt;</description>
      <pubDate>Wed, 13 Mar 2024 00:19:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-to-Azure-S2S-VPN-and-VPN-Community-Routing/m-p/208573#M39497</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-03-13T00:19:50Z</dc:date>
    </item>
  </channel>
</rss>

