<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/99470#M19370</link>
    <description>&lt;P&gt;I have seen similar issues in R80.20, R80.30 and R80.40.&lt;/P&gt;&lt;P&gt;Started to monitor VPN connectivity via SNMP following the&amp;nbsp;sk63663&amp;nbsp;&lt;/P&gt;&lt;P&gt;The SNMP Response should return an integer, whose value has the following meanings:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;3 = VPN tunnel is active&lt;/LI&gt;&lt;LI&gt;4 = VPN tunnel is destroyed&lt;/LI&gt;&lt;LI&gt;129 = VPN tunnel is idle&lt;/LI&gt;&lt;LI&gt;130 = VPN tunnel is during Phase1&lt;/LI&gt;&lt;LI&gt;131 = VPN tunnel is down&lt;/LI&gt;&lt;LI&gt;132 = VPN tunnel is initializing&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Right now I think it is due to timing issues with IKE and IPSEC rekeys.&lt;/P&gt;&lt;P&gt;Recommended settings are&lt;/P&gt;&lt;P&gt;IKE Rekey: 1440 (24 hours)&lt;BR /&gt;IPSEC rekey: 3600 seconds (1 hour)&lt;/P&gt;&lt;P&gt;so right now I am adjusting all my 3rd party site2site connection to comply to this recommendation and I keep monitoring the tunnel state and then monitoring the ping between a remote IP in the encryption domain.&lt;/P&gt;&lt;P&gt;As an emergency if I cannot get a vpn back online either because if the the following conditions.&lt;/P&gt;&lt;P&gt;While running&amp;nbsp;&lt;STRONG&gt;vpn tu tlist -p &amp;lt;remote peer&amp;gt;&lt;/STRONG&gt;&amp;nbsp;it says there is an IPSEC SA but I still cannot ping remote ip inside the encryption domain&lt;/P&gt;&lt;P&gt;Next I would check &lt;STRONG&gt;vpn tu&lt;/STRONG&gt;&amp;nbsp; using the CLI vpn tunnel client and check for IKE or IPSEC vpn tunnel has an active tunnel.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Next I would do a&amp;nbsp;&lt;STRONG&gt;tcpdump -penni any host &amp;lt;remote peer&amp;gt;&lt;/STRONG&gt; to check if any traffic flows between the public ip and remote peer public ip.&lt;/P&gt;&lt;P&gt;&lt;EM&gt;I would as last try clear vpn connection tables. &lt;STRONG&gt;Please note! it will drop all vpn tunnels both s2s and vpn clients.&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;A title=" IPSec VPN NAT-T traffic is sent to the MAC address of wrong next hop or old IP" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk116453&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank" rel="noopener"&gt;&lt;EM&gt;&lt;STRONG&gt;&lt;SPAN&gt;sk116453&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/EM&gt;&lt;/A&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;fw tab -t orig_route_params -x -y&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;vpn tu del all&lt;/STRONG&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;If one clears the vpn connection table one also need to clear the vpn tunnels afterwards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 19 Oct 2020 07:57:24 GMT</pubDate>
    <dc:creator>Kim_Moberg</dc:creator>
    <dc:date>2020-10-19T07:57:24Z</dc:date>
    <item>
      <title>R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77343#M15750</link>
      <description>&lt;P&gt;I have a R80.40 lab with three Check Point gateways. One distributed environment (managed by separate management server) and the other two are standalone (gateway and management on same device).&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have site to site VPNs configured as follows: -&lt;/P&gt;&lt;P&gt;1. from Main GW to Remote GW1&lt;/P&gt;&lt;P&gt;2. from Main GW to Remote GW2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;VPNs show in SmartView monitor as Up - Phase I but when I look at vpn tu on the cli I see phase II tunnels formed: -&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SAs of all instances:&lt;/P&gt;&lt;P&gt;Peer 192.168.101.11 , RemoteGW1 SAs:&lt;/P&gt;&lt;P&gt;IKE SA &amp;lt;b026ba653a85f493,13cd8ad810ce962a&amp;gt;&lt;BR /&gt;INBOUND:&lt;BR /&gt;1. 0x97698d60 (i: 0)&lt;BR /&gt;OUTBOUND:&lt;BR /&gt;1. 0x5c3cf41e (i: 0)&lt;/P&gt;&lt;P&gt;Peer 192.168.101.12 , RemoteGW2 SAs:&lt;/P&gt;&lt;P&gt;IKE SA &amp;lt;c33a8776de4d53f1,62554189591c0af1&amp;gt;&lt;BR /&gt;INBOUND:&lt;BR /&gt;1. 0xa306b733 (i: 1)&lt;BR /&gt;OUTBOUND:&lt;BR /&gt;1. 0x53ff98e0 (i: 1)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the IKE.elg also shows three messages in quick mode.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also cleared the tunnel down and brought it up by initiating traffic firstly from local network (issuing a ping from PC1 to remote PC 2) and then secondly from remote network (issuing ping from remote PC2 to local PC1).&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has anyone seen this before?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Mar 2020 18:40:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77343#M15750</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-03-05T18:40:19Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77579#M15796</link>
      <description>Just to clarify, SmartView Monitor is not showing the VPN up but it actually is?&lt;BR /&gt;Please open a TAC case.</description>
      <pubDate>Sun, 08 Mar 2020 01:21:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77579#M15796</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-08T01:21:21Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77616#M15807</link>
      <description>That is correct.&lt;BR /&gt;&lt;BR /&gt;This is in a lab environment so no support unfortunately. That's why I was wondering if anyone else had seen this or if it was something specific to my lab.</description>
      <pubDate>Sun, 08 Mar 2020 13:19:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77616#M15807</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-03-08T13:19:53Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77625#M15811</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/29916"&gt;@scottikon&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This issue always occurs if both gateways are in the same external network with the external interface.&lt;/P&gt;
&lt;P&gt;Add a router instance beetween VPN gateways in your LAB:&lt;/P&gt;
&lt;P&gt;internal network A &amp;lt;&amp;gt; Gateway A &amp;lt;&amp;gt; &lt;STRONG&gt;Router&lt;/STRONG&gt; &amp;lt;&amp;gt; Gateway B &amp;lt;&amp;gt; internal network B)&amp;nbsp; &amp;nbsp; &lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;lt;---VPN---&amp;gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Mar 2020 16:46:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77625#M15811</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-03-08T16:46:36Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77635#M15814</link>
      <description>Thanks Heiko, I will give this a try</description>
      <pubDate>Sun, 08 Mar 2020 20:52:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/77635#M15814</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-03-08T20:52:08Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/78101#M15899</link>
      <description>&lt;P&gt;Unfortunately I put a virtual SRX in packet mode (router) in between the Check Point external interfaces and the VPN is still showing as Phase I. Even though tunnel utility shows full VPN established and the logs show encrypt/decrypt and quick mode key installs.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Mar 2020 11:16:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/78101#M15899</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-03-12T11:16:15Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/81556#M16480</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I too observed this in our production environment with R80.40. I am installing latest Hotfix to see if it resolves the issue.&lt;/P&gt;</description>
      <pubDate>Fri, 10 Apr 2020 18:19:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/81556#M16480</guid>
      <dc:creator>Narsimha_Rao_Ko</dc:creator>
      <dc:date>2020-04-10T18:19:32Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/81562#M16481</link>
      <description>Thanks Narsimha, be good to hear from you once you have done that.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 10 Apr 2020 20:16:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/81562#M16481</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-04-10T20:16:12Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/90960#M18172</link>
      <description>&lt;P&gt;Hello Mates,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does anybody have any update regarding this symptom? I can observe this behaviour after upgrading from R80.20 to R80.40 JHA48.&lt;/P&gt;&lt;P&gt;All of the S2S tunnels operate noramlly, but in SmartView Monitor all of them show State UP - Phase 1&lt;/P&gt;&lt;P&gt;Additionally it is production environment, not lab.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for all,&lt;/P&gt;&lt;P&gt;Gabor&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jul 2020 07:09:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/90960#M18172</guid>
      <dc:creator>BoGa</dc:creator>
      <dc:date>2020-07-09T07:09:07Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/91063#M18188</link>
      <description>&lt;P&gt;Same here. But I don't mind as long as VPN actually works.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Jul 2020 17:42:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/91063#M18188</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2020-07-09T17:42:35Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/94109#M18637</link>
      <description>&lt;P&gt;The problem with this cosmetical issue is, that it hides the actual and real status of the VPN tunnels.&lt;/P&gt;&lt;P&gt;The issue is being investigated by the R&amp;amp;D.&lt;/P&gt;&lt;P&gt;SmartView Monitor is a separate and legacy dashboard. Does anybody know if it will be integrated into the inified console?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Gabor&lt;/P&gt;</description>
      <pubDate>Fri, 14 Aug 2020 12:05:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/94109#M18637</guid>
      <dc:creator>BoGa</dc:creator>
      <dc:date>2020-08-14T12:05:48Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95669#M18836</link>
      <description>&lt;P&gt;We have the same problem with our R80.40 Clusters (JHF 67 and 77) and we opened a case and hopefully Check Point will fix this soon. For us this is not just a cosmetical issue as we rely on that VPN status for monitoring. It's not only the status in the SmartView but also directly via SNMP so we currently don't get any notification if a VPN goes down etc.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Of course I can check the status manually (if something seems broken) but that's not the point. I wonder how other people monitor the status of their VPNs...&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2020 13:52:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95669#M18836</guid>
      <dc:creator>Marcel_Gramalla</dc:creator>
      <dc:date>2020-08-31T13:52:52Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95768#M18855</link>
      <description>&lt;P&gt;Hello to Everybody,&lt;/P&gt;&lt;P&gt;The SR was closed - Check Point R&amp;amp;D provided a custom hotfix regarding this issue. Thanks for their development.&lt;/P&gt;&lt;P&gt;We haven't tried the custom hotfix as it is not a good practice imo. We are waiting for the custom hotfix will be integrated to a JHA GA.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Sep 2020 14:00:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95768#M18855</guid>
      <dc:creator>BoGa</dc:creator>
      <dc:date>2020-09-01T14:00:31Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95769#M18856</link>
      <description>&lt;P&gt;Thank you for letting us know. I agree, since this is cosmetic, better to wait for it to be included in the next JHF,&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Sep 2020 14:05:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95769#M18856</guid>
      <dc:creator>scottikon</dc:creator>
      <dc:date>2020-09-01T14:05:06Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95780#M18860</link>
      <description>&lt;P&gt;We received the hotfix and I tried in a lab environment and it indeed solved the cosmetic issue&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Sep 2020 16:00:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/95780#M18860</guid>
      <dc:creator>VictorPG</dc:creator>
      <dc:date>2020-09-01T16:00:01Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96173#M18934</link>
      <description>&lt;P&gt;Is the custom hotfix (?number?)&amp;nbsp; available ?&lt;/P&gt;</description>
      <pubDate>Mon, 07 Sep 2020 06:35:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96173#M18934</guid>
      <dc:creator>Florin_Dumitru</dc:creator>
      <dc:date>2020-09-07T06:35:32Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96176#M18935</link>
      <description>&lt;P&gt;fw1_wrapper_HOTFIX_R80_40_JHF_T48_605_MAIN_GA_FULL.tgz - so it is suitable to this exact software version &amp;amp; JHA combination imo.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Sep 2020 06:43:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96176#M18935</guid>
      <dc:creator>BoGa</dc:creator>
      <dc:date>2020-09-07T06:43:18Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96179#M18936</link>
      <description>&lt;P&gt;Is there on that would apply to&amp;nbsp;&lt;SPAN&gt;R80.40 Clusters with JHA T77 ?&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Sep 2020 06:54:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96179#M18936</guid>
      <dc:creator>Florin_Dumitru</dc:creator>
      <dc:date>2020-09-07T06:54:58Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96180#M18937</link>
      <description>&lt;P&gt;I don't know, so I can't recommend it to use. The best way is to open a TAC SR for this purpose or wait for an upcoming JHA GA, which contains this fix.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Sep 2020 06:59:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/96180#M18937</guid>
      <dc:creator>BoGa</dc:creator>
      <dc:date>2020-09-07T06:59:12Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 IPSEC VPN shows stuck at Phase I but is fully operational</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/99243#M19321</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have the same issue on two clients R80.40 JHF T78.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;One was a new install - conversion from ASA - waisted hours thinking the vpns were not coming up !!!! &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Opened TAC case.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Oct 2020 20:22:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-40-IPSEC-VPN-shows-stuck-at-Phase-I-but-is-fully-operational/m-p/99243#M19321</guid>
      <dc:creator>Darren_Fine</dc:creator>
      <dc:date>2020-10-15T20:22:38Z</dc:date>
    </item>
  </channel>
</rss>

