<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Site to Site VPN Issue (Checkpoint to Fortigate) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256846#M50343</link>
    <description>&lt;P&gt;Many thanks for the prompt relpy.&lt;/P&gt;&lt;P&gt;Where do I check if the fgt or the cp side is universal?&lt;/P&gt;&lt;P&gt;Also, regarding the tunnel management where can I see how it is configured?&lt;/P&gt;&lt;P&gt;Finally, what kind of logs would assist you?&lt;/P&gt;</description>
    <pubDate>Tue, 09 Sep 2025 08:33:17 GMT</pubDate>
    <dc:creator>Dim134267</dc:creator>
    <dc:date>2025-09-09T08:33:17Z</dc:date>
    <item>
      <title>Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256765#M50296</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good day,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The past 6 months I have been experiencing an issue with a VPN tunnel I have between two offices, Site A has a Checkpoint 1550 (R81.10.17 ) and site B has a Fortigate 80F (7.4.5 Build 2702). Users from site A need access to site B in order to access programs and folders they need(nothing special). Even though I have checked numerous times the configuration on both machines, and even though the tunnel appears to be active from both sides, I can't reach site A from site B and vice versa(ping, traceroute, RDP). The funny thing is, is that the problem fixes itself some of the times, either randomly or due to a reboot of the machines. I am not that familiar with firewalls in general, and that is why I came here to seek assistance from the experts. I can provide you with any information you might need, that will lead to a permanent solution.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Awaiting yours.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Sep 2025 13:49:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256765#M50296</guid>
      <dc:creator>Dim134267</dc:creator>
      <dc:date>2025-09-08T13:49:10Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256805#M50319</link>
      <description>&lt;P&gt;There should be corresponding log entries on both ends that correlate with the drops, which I suspect are caused by misconfigured settings on one or both ends.&lt;BR /&gt;This behavior, absent further details, sounds like the various timers are set differently on both ends; they need to agree.&lt;/P&gt;
&lt;P&gt;General VPN debugging on the Check Point side:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk180488" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk180488&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Common issues with Check Point and other vendors:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk108600" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk108600&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Sep 2025 18:35:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256805#M50319</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-09-08T18:35:03Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256828#M50334</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/134267"&gt;@Dim134267&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are here to help, no worries. I had done many FGT to CP tunnels, so Im fairly familiar on that subject. For starters, lots of people may just leave fgt side as universal, 0.0.0.0/0. Is that how its configured? What about cp end? Is tunnel management in vpn community set per subnet, gw or host?&lt;/P&gt;
&lt;P&gt;Any relevant logs you can share?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 01:24:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256828#M50334</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-09T01:24:42Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256844#M50342</link>
      <description>&lt;P&gt;Many thanks for the prompt reply, what logs would assist you? From which module should I draw the logs?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 08:30:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256844#M50342</guid>
      <dc:creator>Dim134267</dc:creator>
      <dc:date>2025-09-09T08:30:16Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256846#M50343</link>
      <description>&lt;P&gt;Many thanks for the prompt relpy.&lt;/P&gt;&lt;P&gt;Where do I check if the fgt or the cp side is universal?&lt;/P&gt;&lt;P&gt;Also, regarding the tunnel management where can I see how it is configured?&lt;/P&gt;&lt;P&gt;Finally, what kind of logs would assist you?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 08:33:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256846#M50343</guid>
      <dc:creator>Dim134267</dc:creator>
      <dc:date>2025-09-09T08:33:17Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256873#M50350</link>
      <description>&lt;P&gt;Any logs related to this tunnel, ie you can search for external IP of fortigate in the logs. I attached 2 screenshots of what I meant for the tunnel.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 13:00:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256873#M50350</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-09T13:00:40Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256893#M50353</link>
      <description>&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":clapping_hands:"&gt;👏&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 14:31:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256893#M50353</guid>
      <dc:creator>Jonatan_Frei</dc:creator>
      <dc:date>2025-09-09T14:31:45Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256901#M50356</link>
      <description>&lt;P&gt;I have fully licensed Fortigate in the lab, so can test bunch of this stuff.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 15:26:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256901#M50356</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-09-09T15:26:44Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256968#M50358</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/134267"&gt;@Dim134267&lt;/a&gt;&amp;nbsp;: Your description sounds familiar. The issue fixes itself when the other side establishes the VPN tunnel. Looks like only one of your VPN gateways is able to establish the VPN successfully.&lt;BR /&gt;&lt;BR /&gt;I've created a &lt;A href="https://community.checkpoint.com/t5/General-Topics/HowTo-Configure-a-VPN-between-FortiGate-amp-Check-Point/m-p/256928/highlight/true#M43270" target="_self"&gt;HowTo&lt;/A&gt; for proper VPN configuration between a Check Point and a FortiGate. Enjoy.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 21:04:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256968#M50358</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2025-09-09T21:04:16Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256979#M50361</link>
      <description>&lt;P&gt;Dear Danny,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks for the detailed answer, I will try to follow the instructions you have given and let you know of the result.&lt;/P&gt;&lt;P&gt;But the issue I have is that I don't know how to access the Smart Console, I only have access to main hub of the FW. Is it the same?&lt;/P&gt;</description>
      <pubDate>Wed, 10 Sep 2025 06:45:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256979#M50361</guid>
      <dc:creator>Dim134267</dc:creator>
      <dc:date>2025-09-10T06:45:01Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256980#M50362</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/134267"&gt;@Dim134267&lt;/a&gt;&amp;nbsp;: I see that you are &lt;A href="https://sc1.checkpoint.com/documents/SMB_R80.20/AdminGuides/Locally_Managed/EN/Content/Topics/Configuring-VPN.htm" target="_self"&gt;locally&lt;/A&gt; managing a Check Point SMB&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk157412" target="_self"&gt;1550 Appliance&lt;/A&gt;&amp;nbsp;via its &lt;A href="https://support.checkpoint.com/results/sk/sk92741" target="_self"&gt;Embedded&lt;/A&gt; Gaia WebUI. That's not the same as centralized management via &lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/SmartConsole-Window.htm" target="_self"&gt;SmartConsole&lt;/A&gt;, so you'll need to adopt the shown steps to your local WebUI configuration.&lt;/P&gt;</description>
      <pubDate>Wed, 10 Sep 2025 07:13:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256980#M50362</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2025-09-10T07:13:16Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN Issue (Checkpoint to Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256990#M50364</link>
      <description>&lt;P&gt;Dear Danny&lt;/P&gt;&lt;P&gt;Below you will find the current configuration of the firewalls.&lt;/P&gt;&lt;P&gt;From the WebGUI I don't know what logs to download, in order to send you the file and assist further.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CHECK 3.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31461i6AFD4AF4814464ED/image-size/medium?v=v2&amp;amp;px=400" role="button" title="CHECK 3.png" alt="CHECK 3.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FG 1.jpg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31459i38D636E6FA64B16F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="FG 1.jpg" alt="FG 1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FG 2.jpg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31460i1779CB8A3725F88F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="FG 2.jpg" alt="FG 2.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FG 3.jpg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31457i70433FE161788F5A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="FG 3.jpg" alt="FG 3.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CHECK 1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31462iCDDC537B869CCA10/image-size/medium?v=v2&amp;amp;px=400" role="button" title="CHECK 1.png" alt="CHECK 1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CHECK 2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31458i2DA4F7C3E7757C5D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="CHECK 2.png" alt="CHECK 2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;      &lt;/P&gt;</description>
      <pubDate>Wed, 10 Sep 2025 07:18:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Site-to-Site-VPN-Issue-Checkpoint-to-Fortigate/m-p/256990#M50364</guid>
      <dc:creator>Dim134267</dc:creator>
      <dc:date>2025-09-10T07:18:17Z</dc:date>
    </item>
  </channel>
</rss>

