<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: S2S with local VPN Peer static NAT in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12310#M810</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the above info and I guess that means I can define the statically NATd IP address. But I have found this KB article sk44978 that suggest for IKEv2 , it will always use Main IP. So is IKEv2 problematic where any NAT traversal for a S2S vpn is required?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 24 Jul 2018 09:38:18 GMT</pubDate>
    <dc:creator>Richard_Cullum</dc:creator>
    <dc:date>2018-07-24T09:38:18Z</dc:date>
    <item>
      <title>S2S with local VPN Peer static NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12308#M808</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;S2S VPN over the Internet. Using public ip addresses as peer addresses. If my&amp;nbsp; Check Point R80.10 gateway external ip address is a private address for BGP peering, can I terminate a S2S VPN on the gateway by using a public ip Static NAT configured on the same gateway? It's quite common to see scenarios where there is a Public&amp;lt;=translates to=&amp;gt;Private NAT device in front of the VPN peer, but does it work if the Check Point VPN peer also does the NAT required as well?&amp;nbsp;&lt;/P&gt;&lt;P&gt;(Check Point R80.10 cluster Private IP&amp;lt;=translate to=&amp;gt;Public NAT) &amp;lt;=VPN connects to =&amp;gt; Remote VPN Peer Public IP&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jul 2018 11:34:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12308#M808</guid>
      <dc:creator>Richard_Cullum</dc:creator>
      <dc:date>2018-07-23T11:34:53Z</dc:date>
    </item>
    <item>
      <title>Re: S2S with local VPN Peer static NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12309#M809</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I believe so, you would set the appropriate IP in Gateway Object &amp;gt; IPSec VPN &amp;gt; Link Selection.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/67201_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jul 2018 16:09:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12309#M809</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-23T16:09:06Z</dc:date>
    </item>
    <item>
      <title>Re: S2S with local VPN Peer static NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12310#M810</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the above info and I guess that means I can define the statically NATd IP address. But I have found this KB article sk44978 that suggest for IKEv2 , it will always use Main IP. So is IKEv2 problematic where any NAT traversal for a S2S vpn is required?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 Jul 2018 09:38:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12310#M810</guid>
      <dc:creator>Richard_Cullum</dc:creator>
      <dc:date>2018-07-24T09:38:18Z</dc:date>
    </item>
    <item>
      <title>Re: S2S with local VPN Peer static NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12311#M811</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Forgot about that particular limitation.&lt;/P&gt;&lt;P&gt;Hadn’t heard of specific issues around it, though.&lt;/P&gt;&lt;P&gt;The SK does mention a workaround.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 Jul 2018 14:10:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-with-local-VPN-Peer-static-NAT/m-p/12311#M811</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-24T14:10:28Z</dc:date>
    </item>
  </channel>
</rss>

