<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Save Backupfile to Unix Server through VPN Connection in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/72954#M5594</link>
    <description>&lt;P&gt;Hi Checkmates,&lt;/P&gt;&lt;P&gt;i want to configure on the SecurityGateway (Checkpoint Appliance 3100)&amp;nbsp; automatic Backup Job.&lt;/P&gt;&lt;P&gt;The Destination is a central Unixserver in the Headquater by SCP connection through VPN Connection configured on this SecurityGateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The SecurityGateway have more Interfaces and also one Interfaces to the Internet with static public IP-Address. This public IP-Address is also the MGMT IP of the Security Gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Destination BackupServer have a private IP-Adress and is only reachable over the VPN-Connection.&lt;/P&gt;&lt;P&gt;If I start the Backupjob the Backup is not successfully.&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="BackupJob.png" style="width: 368px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4081i0FABB1B467FCCE76/image-size/large?v=v2&amp;amp;px=999" role="button" title="BackupJob.png" alt="BackupJob.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;If I check in the same time on the Backupserver the connections, then I see, the Gateway comes with the public IP and maybe this is the problem.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="UnixConnection.png" style="width: 958px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4082iDFD6B16F28F783F1/image-size/large?v=v2&amp;amp;px=999" role="button" title="UnixConnection.png" alt="UnixConnection.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;My Question is, how to configure the Backupjob that the Securitygateway use another source IP (his private IP not the public MGMT IP-Address.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 22 Jan 2020 07:43:36 GMT</pubDate>
    <dc:creator>Josef_Maier</dc:creator>
    <dc:date>2020-01-22T07:43:36Z</dc:date>
    <item>
      <title>Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/72954#M5594</link>
      <description>&lt;P&gt;Hi Checkmates,&lt;/P&gt;&lt;P&gt;i want to configure on the SecurityGateway (Checkpoint Appliance 3100)&amp;nbsp; automatic Backup Job.&lt;/P&gt;&lt;P&gt;The Destination is a central Unixserver in the Headquater by SCP connection through VPN Connection configured on this SecurityGateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The SecurityGateway have more Interfaces and also one Interfaces to the Internet with static public IP-Address. This public IP-Address is also the MGMT IP of the Security Gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Destination BackupServer have a private IP-Adress and is only reachable over the VPN-Connection.&lt;/P&gt;&lt;P&gt;If I start the Backupjob the Backup is not successfully.&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="BackupJob.png" style="width: 368px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4081i0FABB1B467FCCE76/image-size/large?v=v2&amp;amp;px=999" role="button" title="BackupJob.png" alt="BackupJob.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;If I check in the same time on the Backupserver the connections, then I see, the Gateway comes with the public IP and maybe this is the problem.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="UnixConnection.png" style="width: 958px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4082iDFD6B16F28F783F1/image-size/large?v=v2&amp;amp;px=999" role="button" title="UnixConnection.png" alt="UnixConnection.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;My Question is, how to configure the Backupjob that the Securitygateway use another source IP (his private IP not the public MGMT IP-Address.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2020 07:43:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/72954#M5594</guid>
      <dc:creator>Josef_Maier</dc:creator>
      <dc:date>2020-01-22T07:43:36Z</dc:date>
    </item>
    <item>
      <title>Re: Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73045#M5595</link>
      <description>Don't believe that's possible.&lt;BR /&gt;Is the remote end of the VPN under your control?&lt;BR /&gt;The public IP of the gateway should be part of the encryption domain.</description>
      <pubDate>Wed, 22 Jan 2020 19:33:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73045#M5595</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-22T19:33:38Z</dc:date>
    </item>
    <item>
      <title>Re: Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73107#M5596</link>
      <description>Yes, the remote end of the vpn under my Control.&lt;BR /&gt;The public IP of the Gateway is not a part of the encryption Domain.</description>
      <pubDate>Thu, 23 Jan 2020 09:38:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73107#M5596</guid>
      <dc:creator>Josef_Maier</dc:creator>
      <dc:date>2020-01-23T09:38:38Z</dc:date>
    </item>
    <item>
      <title>Re: Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73116#M5597</link>
      <description>&lt;P&gt;&lt;SPAN&gt;The public IP of the Gateway is not a part of the encryption Domain - then how should the VPN work for this traffic ? Why not use the local IP instead ?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Jan 2020 10:21:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73116#M5597</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-01-23T10:21:31Z</dc:date>
    </item>
    <item>
      <title>Re: Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73137#M5598</link>
      <description>I don't know why… Maybe the Destination ip is the private IP...&lt;BR /&gt;hmm… any others an idea?</description>
      <pubDate>Thu, 23 Jan 2020 13:55:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73137#M5598</guid>
      <dc:creator>Josef_Maier</dc:creator>
      <dc:date>2020-01-23T13:55:59Z</dc:date>
    </item>
    <item>
      <title>Re: Save Backupfile to Unix Server through VPN Connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73146#M5599</link>
      <description>&lt;P&gt;OpenSSH has the capability to specify the IP address used when transferring scp/sftp.&lt;/P&gt;
&lt;P&gt;Since you have CLI access to the appliance try adding running it manually to see if it will connect when using the BindAddress option.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="python"&gt;scp -o BindAddress=10.10.10.1 /home/admin/filename user@2.2.2.2:/directory/filename&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If that works, then it is possible to add configuration options in /etc/ssh/ssh_config to force the gateway to use the internal interface IP address for SCP for the specific IP destination. &lt;/P&gt;</description>
      <pubDate>Thu, 23 Jan 2020 15:03:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Save-Backupfile-to-Unix-Server-through-VPN-Connection/m-p/73146#M5599</guid>
      <dc:creator>masher</dc:creator>
      <dc:date>2020-01-23T15:03:25Z</dc:date>
    </item>
  </channel>
</rss>

