<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Connection between two different vpn sts in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Connection-between-two-different-vpn-sts/m-p/104069#M19991</link>
    <description>&lt;P class="_1qeIAgB0cPwnLhDF9XSiJM"&gt;well i hope to be clear with my problem since english is not my native language.&lt;BR /&gt;i have two vpns, one against oracle and another with a client.&amp;nbsp;&amp;nbsp;&lt;BR /&gt;Actually oracle needs to access to a resource what is living in the vpn checkpoint-client.&lt;BR /&gt;Since oracle will never reach the client because the dst ip its trying to reach lives in the other vpn is i was thinking someway i could nat the traffic from oracle to my client.&lt;BR /&gt;For example oracle needs to reach ip 192.168.220.240 (this one live in the client side) so what im doing is this:&lt;BR /&gt;&lt;BR /&gt;Source: 132.240.149.31&lt;BR /&gt;Dst IP: 192.168.1.35 (ip from the dmz who is part from the vpn communities between oracle-checkpoint)&lt;BR /&gt;&lt;BR /&gt;NAT SOURCE: 132.240.149.31 -&amp;gt; 10.23.4.240 this IP is part from the vpn communities between checkpoint-client&lt;BR /&gt;NAT DST IP: 192.168.1.35 -&amp;gt; 192.168.220.240 this is the real resource we need to reach.&lt;/P&gt;
&lt;P class="_1qeIAgB0cPwnLhDF9XSiJM"&gt;But even after this nat we cant reach the dst ip, so... anyone has ever done something similar im looking for some tips and tricks.&lt;BR /&gt;Im going share a image where you can see the topology i think with that this could be a little more clear.&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="question.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/9468iE089C9D7B65DFD1E/image-size/large?v=v2&amp;amp;px=999" role="button" title="question.jpg" alt="question.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 03 Dec 2020 08:36:20 GMT</pubDate>
    <dc:creator>Sharif24</dc:creator>
    <dc:date>2020-12-03T08:36:20Z</dc:date>
    <item>
      <title>Connection between two different vpn sts</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Connection-between-two-different-vpn-sts/m-p/104069#M19991</link>
      <description>&lt;P class="_1qeIAgB0cPwnLhDF9XSiJM"&gt;well i hope to be clear with my problem since english is not my native language.&lt;BR /&gt;i have two vpns, one against oracle and another with a client.&amp;nbsp;&amp;nbsp;&lt;BR /&gt;Actually oracle needs to access to a resource what is living in the vpn checkpoint-client.&lt;BR /&gt;Since oracle will never reach the client because the dst ip its trying to reach lives in the other vpn is i was thinking someway i could nat the traffic from oracle to my client.&lt;BR /&gt;For example oracle needs to reach ip 192.168.220.240 (this one live in the client side) so what im doing is this:&lt;BR /&gt;&lt;BR /&gt;Source: 132.240.149.31&lt;BR /&gt;Dst IP: 192.168.1.35 (ip from the dmz who is part from the vpn communities between oracle-checkpoint)&lt;BR /&gt;&lt;BR /&gt;NAT SOURCE: 132.240.149.31 -&amp;gt; 10.23.4.240 this IP is part from the vpn communities between checkpoint-client&lt;BR /&gt;NAT DST IP: 192.168.1.35 -&amp;gt; 192.168.220.240 this is the real resource we need to reach.&lt;/P&gt;
&lt;P class="_1qeIAgB0cPwnLhDF9XSiJM"&gt;But even after this nat we cant reach the dst ip, so... anyone has ever done something similar im looking for some tips and tricks.&lt;BR /&gt;Im going share a image where you can see the topology i think with that this could be a little more clear.&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="question.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/9468iE089C9D7B65DFD1E/image-size/large?v=v2&amp;amp;px=999" role="button" title="question.jpg" alt="question.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 08:36:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Connection-between-two-different-vpn-sts/m-p/104069#M19991</guid>
      <dc:creator>Sharif24</dc:creator>
      <dc:date>2020-12-03T08:36:20Z</dc:date>
    </item>
    <item>
      <title>Re: Connection between two different vpn sts</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Connection-between-two-different-vpn-sts/m-p/104283#M20040</link>
      <description>&lt;P&gt;Let’s start with version/JHF level as well as what you see in the logs when you attempt the connection.&lt;BR /&gt;This can work, but you need to make sure the encryption domains and NAT are set appropriately.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Dec 2020 03:28:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Connection-between-two-different-vpn-sts/m-p/104283#M20040</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-12-04T03:28:30Z</dc:date>
    </item>
  </channel>
</rss>

