<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259299#M50857</link>
    <description>&lt;P&gt;&lt;SPAN class=""&gt;I do see Peer CP FW recieved ping request and reply :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] eth0:i[44]: 10.2.2.2 -&amp;gt; 10.1.1.1 (ICMP) len=84 id=38959&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=8 code=0 echo request id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:I[44]: 10.2.2.2 -&amp;gt; 10.1.1.1 (ICMP) len=84 id=38959&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=8 code=0 echo request id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:o[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:O[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_1] vpnt1:Oe[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;But I dont see any reply on on-prem FW VTI when ISP failovers.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 07 Oct 2025 15:43:12 GMT</pubDate>
    <dc:creator>ajsingh</dc:creator>
    <dc:date>2025-10-07T15:43:12Z</dc:date>
    <item>
      <title>Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259294#M50854</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have a CP to CP site to site VPN tunnel which has one VTI configured (numbered) and over that BGP is established.&amp;nbsp;&lt;/P&gt;&lt;P&gt;One CP has 2 isp configured and ISP redundancy has been configured and apply to VPN settings too.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Upon failover of ISP , Internet traffic is working. VPN tunnel seems to be up too with Peer (CP) but BGP is in Active state. I couldn't ping other side VTI ip also.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can see traffic is going from both sides to each other via VTI and encrypted but none of the sides are replying. IS there any limitation or am i missing anything in the configuration to make this setup work ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Both FW's are R81.20 + T105 . . Managed by same FW manager.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 15:03:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259294#M50854</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T15:03:50Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259295#M50855</link>
      <description>&lt;P&gt;Do you have simple diagram? It would help, for sure.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 15:07:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259295#M50855</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T15:07:05Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259297#M50856</link>
      <description>&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-10-07 111117.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31651iC2BAEC27BFEE7A66/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2025-10-07 111117.png" alt="Screenshot 2025-10-07 111117.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 15:12:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259297#M50856</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T15:12:18Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259299#M50857</link>
      <description>&lt;P&gt;&lt;SPAN class=""&gt;I do see Peer CP FW recieved ping request and reply :&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] eth0:i[44]: 10.2.2.2 -&amp;gt; 10.1.1.1 (ICMP) len=84 id=38959&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=8 code=0 echo request id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:I[44]: 10.2.2.2 -&amp;gt; 10.1.1.1 (ICMP) len=84 id=38959&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=8 code=0 echo request id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:o[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_0] vpnt1:O[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;[vs_0][fw_1] vpnt1:Oe[44]: 10.1.1.1 -&amp;gt; 10.2.2.2 (ICMP) len=84 id=42176&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;ICMP: type=0 code=0 echo reply id=35083 seq=15&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;But I dont see any reply on on-prem FW VTI when ISP failovers.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 15:43:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259299#M50857</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T15:43:12Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259300#M50858</link>
      <description>&lt;P&gt;Can you do zdebug for the relevant IP when it fails? fw ctl zdebug + drop | grep x.x.x.x (just replace x.x.x.x with right IP)&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 15:47:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259300#M50858</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T15:47:20Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259304#M50860</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;This is what i see :&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;[Expert@GW5400-LAB:0]# fw ctl zdebug + drop | grep 10.1.1.1&lt;BR /&gt;@;52686503.19611;[kern];[tid_0];[SIM4];sim (vpn_encrypt): drop due vpn_ipsec_encrypt returns PKT_ERROR(0), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686503.19612;[kern];[tid_0];[SIM4];handle_vpn_encryption: ipsec_encrypt failed: encrypted packet too big. Dropping packet... conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686503.19613;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: (0,1) received drop, reason: Encryption Failed (5), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686503.19614;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending packet dropped notification drop mode: 0 debug mode: 1 send as is: 0 track_lvl: -1, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686503.19615;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending single drop notification, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686509.19616;[kern];[tid_0];[SIM4];do_packet_finish: SIMPKT_IN_DROP vsid=0, conn:&amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686512.19619;[kern];[tid_0];[SIM4];sim (vpn_encrypt): drop due vpn_ipsec_encrypt returns PKT_ERROR(0), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686512.19620;[kern];[tid_0];[SIM4];handle_vpn_encryption: ipsec_encrypt failed: encrypted packet too big. Dropping packet... conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686512.19621;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: (0,1) received drop, reason: Encryption Failed (5), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686512.19622;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending packet dropped notification drop mode: 0 debug mode: 1 send as is: 0 track_lvl: -1, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686512.19623;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending single drop notification, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686514.19624;[kern];[tid_0];[SIM4];do_packet_finish: SIMPKT_IN_DROP vsid=0, conn:&amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686536.19627;[kern];[tid_0];[SIM4];sim (vpn_encrypt): drop due vpn_ipsec_encrypt returns PKT_ERROR(0), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686536.19628;[kern];[tid_0];[SIM4];handle_vpn_encryption: ipsec_encrypt failed: encrypted packet too big. Dropping packet... conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686536.19629;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: (0,1) received drop, reason: Encryption Failed (5), conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686536.19630;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending packet dropped notification drop mode: 0 debug mode: 1 send as is: 0 track_lvl: -1, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686536.19631;[kern];[tid_0];[SIM4];sim_pkt_send_drop_notification: sending single drop notification, conn: &amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;@;52686538.19632;[kern];[tid_0];[SIM4];do_packet_finish: SIMPKT_IN_DROP vsid=0, conn:&amp;lt;10.2.2.2,22141,10.1.1.1,0,1&amp;gt;;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:07:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259304#M50860</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T18:07:32Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259305#M50861</link>
      <description>&lt;P&gt;Please check if this sk might apply.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk166417" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk166417&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:13:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259305#M50861</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T18:13:47Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259307#M50862</link>
      <description>&lt;P&gt;Thank you. I checked and no it doesnt. I am using IKEv1 and vpn tu tlist does not show any symptoms as the SK :&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;[Expert@GW5400-LAB:0]# vpn tu tlist&lt;/P&gt;&lt;P&gt;+-----------------------------------------+----------------------------------+---------------------+&lt;BR /&gt;| Peer: X.X.X.X - abc | MSA: 7f08383dfp88 | i: 0 ref: 5 |&lt;BR /&gt;| Methods: ESP Tunnel PFS AES-256 SHA256..| | i: 1 ref: 2 |&lt;BR /&gt;| My TS: 0.0.0.0/0 | | |&lt;BR /&gt;| Peer TS: 0.0.0.0/0 | | |&lt;BR /&gt;| MSPI: 3e (i: 0, p: 0, d: 0) | Out SPI: b3c35590 | |&lt;BR /&gt;| Tunnel created: Oct 7 14:05:57 | NAT-T | |&lt;BR /&gt;| Tunnel expiration: Oct 7 15:05:57 | Connected | |&lt;BR /&gt;+-----------------------------------------+----------------------------------+---------------------+&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:18:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259307#M50862</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T18:18:22Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259308#M50863</link>
      <description>&lt;P&gt;To me, that 100% looks like phase 2 issue, based on the error. Can you send what I attached looks like for your side?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:23:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259308#M50863</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T18:23:32Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259310#M50864</link>
      <description>&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-10-07 142548.png" style="width: 681px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/31652i6A5E651F69BBC28F/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2025-10-07 142548.png" alt="Screenshot 2025-10-07 142548.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:26:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259310#M50864</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T18:26:36Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259311#M50865</link>
      <description>&lt;P&gt;Try unchecking permanent tunnel option and install policy. if no joy, just put it back and open TAC case, might need some more debugging. Btw, just curious, why use ikev1? Thats insecure, plus, ikev2 is standard nowdays.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:28:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259311#M50865</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T18:28:37Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259312#M50866</link>
      <description>&lt;P&gt;Ok , Yes i will do that. it was just for testing but I will do that change as well.&lt;/P&gt;&lt;P&gt;Thanksalot for your time.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:32:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259312#M50866</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-07T18:32:17Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259314#M50867</link>
      <description>&lt;P&gt;No need to thank me mate, we are here to help. If you need reference for what I meant, check out below.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;Btw, we can do remote if you allow that.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://learningnetwork.cisco.com/s/question/0D56e0000C4N9csCQC/ikev1-versus-ikev2" target="_blank"&gt;https://learningnetwork.cisco.com/s/question/0D56e0000C4N9csCQC/ikev1-versus-ikev2&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.fortinet.com/document/fortigate/7.6.0/ssl-vpn-to-ipsec-vpn-migration/883534/ikev1-or-ikev2" target="_blank"&gt;https://docs.fortinet.com/document/fortigate/7.6.0/ssl-vpn-to-ipsec-vpn-migration/883534/ikev1-or-ikev2&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.sonicwall.com/support/knowledge-base/advantages-of-site-to-site-vpn-with-ikev2-over-ikev1/200522013819240" target="_blank"&gt;https://www.sonicwall.com/support/knowledge-base/advantages-of-site-to-site-vpn-with-ikev2-over-ikev1/200522013819240&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Oct 2025 18:35:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/259314#M50867</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-07T18:35:39Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/260589#M51103</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Issue was fixed . Checkpoint has this Parameter that needs to be turned on where 2 ISP's are configured in order for VPN to also failover properly:&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk172805" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk172805&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2025 15:31:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/260589#M51103</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2025-10-22T15:31:57Z</dc:date>
    </item>
    <item>
      <title>Re: Not able to establish BGP when ISP failover, BGP is using Configured VTI</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/260591#M51104</link>
      <description>&lt;P&gt;Excellent.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2025 15:39:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Not-able-to-establish-BGP-when-ISP-failover-BGP-is-using/m-p/260591#M51104</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-22T15:39:17Z</dc:date>
    </item>
  </channel>
</rss>

