<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Site to Site VPN between 2 Checkpoint Gateways and a Checkpoint SMS in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/60664#M12294</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am trying to connect two gateways, a 3200 (remote) and a 12400 local to the SMS (virtual) by a site to site VPN.&amp;nbsp; Phase 1 IKE appears to succeed from the 12400 to the 3200.&amp;nbsp;&amp;nbsp;&amp;nbsp; Phase 2 fails.&amp;nbsp; The ike.elg file states INVALID-CERTIFICATE.&amp;nbsp; We tried renewing the certificate, modifying the $FWDIR/conf/masters file on the remote gateway and adding a rule from the remote gateway to the SMS for FW1_ica_services.&amp;nbsp; None of these have fixed the problem.&amp;nbsp; Does anyone know what the problem is?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 19 Aug 2019 22:19:57 GMT</pubDate>
    <dc:creator>KWD</dc:creator>
    <dc:date>2019-08-19T22:19:57Z</dc:date>
    <item>
      <title>Site to Site VPN between 2 Checkpoint Gateways and a Checkpoint SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/60664#M12294</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am trying to connect two gateways, a 3200 (remote) and a 12400 local to the SMS (virtual) by a site to site VPN.&amp;nbsp; Phase 1 IKE appears to succeed from the 12400 to the 3200.&amp;nbsp;&amp;nbsp;&amp;nbsp; Phase 2 fails.&amp;nbsp; The ike.elg file states INVALID-CERTIFICATE.&amp;nbsp; We tried renewing the certificate, modifying the $FWDIR/conf/masters file on the remote gateway and adding a rule from the remote gateway to the SMS for FW1_ica_services.&amp;nbsp; None of these have fixed the problem.&amp;nbsp; Does anyone know what the problem is?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 19 Aug 2019 22:19:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/60664#M12294</guid>
      <dc:creator>KWD</dc:creator>
      <dc:date>2019-08-19T22:19:57Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN between 2 Checkpoint Gateways and a Checkpoint SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/60671#M12297</link>
      <description>Did you renew the certificates in both gateway objects under IPSec-VPN?&lt;BR /&gt;Is your VPN Domain overlapping?</description>
      <pubDate>Tue, 20 Aug 2019 05:13:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/60671#M12297</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-08-20T05:13:42Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN between 2 Checkpoint Gateways and a Checkpoint SMS</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/91117#M18204</link>
      <description>&lt;P&gt;Faced the same issue and compile the following after solving:&lt;/P&gt;&lt;P&gt;Try to check if the peer gateway is able to reach the management server via telnet on 18264.&lt;/P&gt;&lt;P&gt;Also try to check on the Security Management Object IP(On Smartconsole) and see if that IP is reachable from the peer gateway or not. Try to resolve the connectivity issue from peer gateway to Management server object IP(don't forget NAT).&lt;/P&gt;</description>
      <pubDate>Fri, 10 Jul 2020 09:32:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Site-to-Site-VPN-between-2-Checkpoint-Gateways-and-a-Checkpoint/m-p/91117#M18204</guid>
      <dc:creator>Elzy</dc:creator>
      <dc:date>2020-07-10T09:32:53Z</dc:date>
    </item>
  </channel>
</rss>

