<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Routing through Center? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57833#M4334</link>
    <description>Are all gateways Check Point?&lt;BR /&gt;In any case create a new Star topology configure satellite X with the correct VPN Topology, same for each other gateway, only add it's own topology.&lt;BR /&gt;In the star set Center A as the center gateway and all other gateways as Satellites. In the routing page set routing through center. Allow the traffic that you want to allow and push policy to all gateways.</description>
    <pubDate>Tue, 09 Jul 2019 20:33:19 GMT</pubDate>
    <dc:creator>Maarten_Sjouw</dc:creator>
    <dc:date>2019-07-09T20:33:19Z</dc:date>
    <item>
      <title>VPN Routing through Center?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57789#M4329</link>
      <description>&lt;P&gt;&lt;STRONG&gt;We need:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Traffic flow: Satellites GW from &lt;FONT color="#FF0000"&gt;branch B、C&lt;/FONT&gt;&amp;nbsp; need to contact to &lt;FONT color="#FF00FF"&gt;Remote GW X&lt;/FONT&gt; , the traffic must always pass through &lt;STRONG&gt;&lt;FONT color="#FF0000"&gt;Center A&lt;/FONT&gt;&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;Example : &lt;FONT color="#FF0000"&gt;host (behind branch B or C )&lt;/FONT&gt;=====VPN====&amp;gt;&lt;STRONG&gt;&lt;FONT color="#FF0000"&gt;Center A&lt;/FONT&gt;&lt;/STRONG&gt;=====VPN=====&amp;gt; &lt;FONT color="#FF00FF"&gt;Server&amp;nbsp; (behind Remote GW X)&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So now the question is How to configure the “Remote GW X “?&lt;/P&gt;&lt;P&gt;&amp;nbsp;Please share configuration methods and suggestions. Thanks!&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jul 2019 09:44:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57789#M4329</guid>
      <dc:creator>Jason_Chen</dc:creator>
      <dc:date>2019-07-09T09:44:44Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing through Center?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57833#M4334</link>
      <description>Are all gateways Check Point?&lt;BR /&gt;In any case create a new Star topology configure satellite X with the correct VPN Topology, same for each other gateway, only add it's own topology.&lt;BR /&gt;In the star set Center A as the center gateway and all other gateways as Satellites. In the routing page set routing through center. Allow the traffic that you want to allow and push policy to all gateways.</description>
      <pubDate>Tue, 09 Jul 2019 20:33:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57833#M4334</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-07-09T20:33:19Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing through Center?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57942#M4341</link>
      <description>&lt;P&gt;Thank you so much for your reply and help!&lt;/P&gt;&lt;P&gt;Are all gateways Check Point?&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;Yes, all gateways are Check Point.&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT color="#000000"&gt;1)、Satellite X (Remote GW X) is Standalone Deployment, It manages by itself.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000000"&gt;2)、Center A and satellite B, C, D are managed by the same SMS server&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;=================================================================================================&lt;BR /&gt;&lt;STRONG&gt;Is the following configuration correct on firewall Satellite X?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Create a new VPN Community：Star mode&lt;BR /&gt;Set Center A as the center gateway&lt;BR /&gt;Set Satellite X as the Satellites gateway&lt;BR /&gt;&lt;FONT color="#3366FF"&gt;VPN Routing Options:To center and to other satellites through the center&lt;/FONT&gt;&lt;BR /&gt;Set Traffic Policy and push policy to Satellite X&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;&lt;EM&gt;&lt;STRONG&gt;Two questions：&lt;/STRONG&gt;&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;1)、Do satellite B and C need to be created on Satellite X and added to the satellites?&lt;BR /&gt;2)、The VPN networks from the satellite B and C that need to access resources behind the remote Satellite X,Are these VPN networks added to the VPN Domain of the Center A?（&lt;EM&gt;&lt;STRONG&gt;&lt;FONT color="#000000"&gt;Center A here is the object on Satellite X&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/EM&gt;）&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;STRONG&gt;Is the following configuration correct on &lt;/STRONG&gt;&lt;FONT color="#000000"&gt;SMS server &lt;/FONT&gt;&lt;FONT color="#000000"&gt;？&lt;/FONT&gt;&lt;STRONG&gt;&lt;FONT color="#000000"&gt;（&lt;/FONT&gt;Center A and Satellite B、C、D are centralized management&lt;FONT color="#000000"&gt;&amp;nbsp;)&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;VPN Community：Star mode&lt;BR /&gt;Center A is the center gateway&lt;BR /&gt;branch B、C、D are Satellites gateway (add Satellite X as the Satellites gateway )&lt;BR /&gt;&lt;FONT color="#3366FF"&gt;VPN Routing Options:To center, or through the center to other satellites, to internet and other VPN targets&lt;/FONT&gt;（&lt;FONT color="#FF0000"&gt;This setting cannot be changed&lt;/FONT&gt;）&lt;BR /&gt;Set Traffic Policy and push policy to Center A and Satellite B、C、D.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;&lt;EM&gt;&lt;STRONG&gt;Questions：&lt;/STRONG&gt;&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;1)、Does setting different VPN routing options cause problems?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Thanks&amp;nbsp;a lot !&lt;/P&gt;</description>
      <pubDate>Wed, 10 Jul 2019 18:20:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57942#M4341</guid>
      <dc:creator>Jason_Chen</dc:creator>
      <dc:date>2019-07-10T18:20:23Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing through Center?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57966#M4348</link>
      <description>On the locally managed X you need to add the networks of all other satellites to the VPN domain of the Center A gateway. Do not add any other gateway to the Satellite X.&lt;BR /&gt;&lt;BR /&gt;Changing the VPN routing from the current setting to the route through center to other satellites (NOT Internet) will cause the internet traffic to be direct from the satellites instead of through the center GW.</description>
      <pubDate>Wed, 10 Jul 2019 21:09:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57966#M4348</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-07-10T21:09:25Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing through Center?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57991#M4354</link>
      <description>&lt;P&gt;Ok, thanks. I'll try.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jul 2019 09:19:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-Routing-through-Center/m-p/57991#M4354</guid>
      <dc:creator>Jason_Chen</dc:creator>
      <dc:date>2019-07-11T09:19:48Z</dc:date>
    </item>
  </channel>
</rss>

