<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Add proxy arp entries on R80.20 VSX in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Add-proxy-arp-entries-on-R80-20-VSX/m-p/62734#M9682</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we will migrate security gateway from R77.30 to R80.20 in VSX.&amp;nbsp;&lt;BR /&gt;We have some proxy arp entries on our gateway but in R80.20 there don't use "/opt/CPsuite-R77/fw1/CTX/CTX00001/conf/local.arp"&amp;nbsp;file.&amp;nbsp;&lt;/P&gt;&lt;P&gt;How we add the entries without the local.arp file? Now it is kernel based .&lt;/P&gt;</description>
    <pubDate>Fri, 13 Sep 2019 18:29:56 GMT</pubDate>
    <dc:creator>HS</dc:creator>
    <dc:date>2019-09-13T18:29:56Z</dc:date>
    <item>
      <title>Add proxy arp entries on R80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Add-proxy-arp-entries-on-R80-20-VSX/m-p/62734#M9682</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we will migrate security gateway from R77.30 to R80.20 in VSX.&amp;nbsp;&lt;BR /&gt;We have some proxy arp entries on our gateway but in R80.20 there don't use "/opt/CPsuite-R77/fw1/CTX/CTX00001/conf/local.arp"&amp;nbsp;file.&amp;nbsp;&lt;/P&gt;&lt;P&gt;How we add the entries without the local.arp file? Now it is kernel based .&lt;/P&gt;</description>
      <pubDate>Fri, 13 Sep 2019 18:29:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Add-proxy-arp-entries-on-R80-20-VSX/m-p/62734#M9682</guid>
      <dc:creator>HS</dc:creator>
      <dc:date>2019-09-13T18:29:56Z</dc:date>
    </item>
    <item>
      <title>Re: Add proxy arp entries on R80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Add-proxy-arp-entries-on-R80-20-VSX/m-p/62735#M9683</link>
      <description>&lt;P&gt;Hello HS,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ther's a simple way to add a proxy arp entry to a gateway without configuring via the GAiA portal/ clish or using local.arp&lt;/P&gt;&lt;P&gt;Add a host object with your external IP to your rulebase and configure automatic NAT (static). As NAT-IP use the same external IP, add the relevant gateway and do a policy install. With this host object the gateway adds an proxy arp entry to the the gateway with the correct MAC.&lt;/P&gt;&lt;P&gt;We use this with loadsharing bond and active/passive bond and VSX. It works too with vMAC.&lt;/P&gt;&lt;P&gt;Wolfgang&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="proxy_arp1.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1454i10A4C6D3BF812A66/image-size/medium?v=v2&amp;amp;px=400" role="button" title="proxy_arp1.PNG" alt="proxy_arp1.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="proxy_arp2.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1453i023F09B024A907E2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="proxy_arp2.PNG" alt="proxy_arp2.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Sep 2019 19:02:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Add-proxy-arp-entries-on-R80-20-VSX/m-p/62735#M9683</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2019-09-13T19:02:48Z</dc:date>
    </item>
  </channel>
</rss>

