<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CheckPoint no longer internet access after changing default route on Gaia. in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CheckPoint-no-longer-internet-access-after-changing-default/m-p/81731#M6333</link>
    <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A simple case of standalone deployment with a fresh Trial license imported CP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have two internet-accessible WANs.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let says Gateway A is 1.2.3.4/24 and Gateway B is 192.168.1.254/24.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At the first time wizard, I do configure the default gateway using 1.2.3.4/24.&lt;/P&gt;&lt;P&gt;MGT port is the management interface with 192.168.1.1/24 as default.&lt;/P&gt;&lt;P&gt;And is able to ping &lt;A href="http://www.google.com" target="_blank" rel="noopener"&gt;www.google.com&lt;/A&gt;&amp;nbsp;from CLI this moment.&lt;/P&gt;&lt;P&gt;Then I change the default route from 1.2.3.4 to 192.168.1.254.&lt;BR /&gt;&lt;BR /&gt;The CP is no longer internet-accessible now.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I then use a PC to simulate the CP MGT IP&amp;nbsp; - 192.168.1.1/24 and able to access Google via 192.168.1.254.&lt;/P&gt;&lt;P&gt;I type "show route" on CP, the route looks good with the right interface chosen.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On the SmartConsole side, only Any &amp;lt;-&amp;gt; Allow Policy is configured at that moment.&lt;/P&gt;&lt;P&gt;Have someone try a similar case before?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 14 Apr 2020 05:17:24 GMT</pubDate>
    <dc:creator>BlueGrass</dc:creator>
    <dc:date>2020-04-14T05:17:24Z</dc:date>
    <item>
      <title>CheckPoint no longer internet access after changing default route on Gaia.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CheckPoint-no-longer-internet-access-after-changing-default/m-p/81731#M6333</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A simple case of standalone deployment with a fresh Trial license imported CP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have two internet-accessible WANs.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let says Gateway A is 1.2.3.4/24 and Gateway B is 192.168.1.254/24.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;At the first time wizard, I do configure the default gateway using 1.2.3.4/24.&lt;/P&gt;&lt;P&gt;MGT port is the management interface with 192.168.1.1/24 as default.&lt;/P&gt;&lt;P&gt;And is able to ping &lt;A href="http://www.google.com" target="_blank" rel="noopener"&gt;www.google.com&lt;/A&gt;&amp;nbsp;from CLI this moment.&lt;/P&gt;&lt;P&gt;Then I change the default route from 1.2.3.4 to 192.168.1.254.&lt;BR /&gt;&lt;BR /&gt;The CP is no longer internet-accessible now.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I then use a PC to simulate the CP MGT IP&amp;nbsp; - 192.168.1.1/24 and able to access Google via 192.168.1.254.&lt;/P&gt;&lt;P&gt;I type "show route" on CP, the route looks good with the right interface chosen.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On the SmartConsole side, only Any &amp;lt;-&amp;gt; Allow Policy is configured at that moment.&lt;/P&gt;&lt;P&gt;Have someone try a similar case before?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Apr 2020 05:17:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CheckPoint-no-longer-internet-access-after-changing-default/m-p/81731#M6333</guid>
      <dc:creator>BlueGrass</dc:creator>
      <dc:date>2020-04-14T05:17:24Z</dc:date>
    </item>
    <item>
      <title>Re: CheckPoint no longer internet access after changing default route on Gaia.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CheckPoint-no-longer-internet-access-after-changing-default/m-p/81863#M6337</link>
      <description>Precisely how are you determining Internet accessibility?&lt;BR /&gt;Have you used, say, tcpdump to verify traffic is going out the correct interface with the correct IP address?&lt;BR /&gt;Are you seeing anything in the logs?&lt;BR /&gt;Also it's not clear if each ISP link is connected to the same interface or different ones.</description>
      <pubDate>Tue, 14 Apr 2020 21:24:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/CheckPoint-no-longer-internet-access-after-changing-default/m-p/81863#M6337</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-14T21:24:11Z</dc:date>
    </item>
  </channel>
</rss>

