<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to configure VPN IPSEC Site-to-Site with multiple Virtual IPs? in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163647#M27350</link>
    <description>&lt;P&gt;You can read all about Link Selection here:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SitetoSiteVPN_AdminGuide/Content/Topics-VPNSG/Link-Selection.htm?tocpath=Link%20Selection%7C_____0#Link_Selection" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SitetoSiteVPN_AdminGuide/Content/Topics-VPNSG/Link-Selection.htm?tocpath=Link%20Selection%7C_____0#Link_Selection&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;A routing configuration would assume that the public IPs were available on the interface the traffic is routed out.&lt;BR /&gt;Since everything on your gateways is private IPs, this will most definitely not work since the gateway won’t know what the public IP is on that interface.&lt;/P&gt;</description>
    <pubDate>Wed, 30 Nov 2022 02:36:22 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2022-11-30T02:36:22Z</dc:date>
    <item>
      <title>How to configure VPN IPSEC Site-to-Site with multiple Virtual IPs?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163573#M27316</link>
      <description>&lt;P&gt;Hello Mates!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let me explain the scenario... We have a big customer that has a cloudguard cluster. This cluster is behind of an OCI (&lt;A href="https://www.google.com/url?sa=t&amp;amp;rct=j&amp;amp;q=&amp;amp;esrc=s&amp;amp;source=web&amp;amp;cd=&amp;amp;cad=rja&amp;amp;uact=8&amp;amp;ved=2ahUKEwj18qvs09P7AhXpBrkGHdhpACkQFnoECA0QAQ&amp;amp;url=https%3A%2F%2Fwww.oracle.com%2Fbr%2Fcloud%2F&amp;amp;usg=AOvVaw2HTvoWos9eCYss3mwOCjhn" target="_self"&gt;Oracle Cloud Infrastructure&lt;/A&gt;) . This OCI manage IPs from public to private and the gateway just see the private IPs.&lt;/P&gt;&lt;P&gt;My gateway interfaces is like this:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image_2022-11-29_121241033.png" style="width: 596px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18595i76532EEE5C27470C/image-size/large?v=v2&amp;amp;px=999" role="button" title="image_2022-11-29_121241033.png" alt="image_2022-11-29_121241033.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;This customer has many ranges of public IPs, so that each peer partner will use one of these public IPs to establish the VPN tunnel.&lt;/P&gt;&lt;P&gt;My doubt is: How can I configure all these IPs on the CP side so that it can respond for all partners, each one with a different IP?&lt;/P&gt;&lt;P&gt;Normally, in the VPN link selection, we set an IP that will respond to all partners.&lt;/P&gt;&lt;P&gt;Is it supported on Check Point?&lt;/P&gt;&lt;P&gt;Any advice?&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Tue, 29 Nov 2022 15:13:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163573#M27316</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2022-11-29T15:13:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure VPN IPSEC Site-to-Site with multiple Virtual IPs?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163616#M27327</link>
      <description>&lt;P&gt;Can you directly specify what peer uses what IP for Link Selection? No.&lt;BR /&gt;It would have to be done with routing, which given this scenario, may not be an option.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Nov 2022 20:41:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163616#M27327</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-11-29T20:41:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure VPN IPSEC Site-to-Site with multiple Virtual IPs?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163629#M27335</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;. How could I use routing to make this?&lt;/P&gt;&lt;P&gt;I try to search for any documentation to help me with this configuration, but I guess that I'm not searching for the right keywords.&lt;/P&gt;&lt;P&gt;Have any way to make this work?&lt;/P&gt;</description>
      <pubDate>Tue, 29 Nov 2022 22:52:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163629#M27335</guid>
      <dc:creator>Bernardes</dc:creator>
      <dc:date>2022-11-29T22:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure VPN IPSEC Site-to-Site with multiple Virtual IPs?</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163647#M27350</link>
      <description>&lt;P&gt;You can read all about Link Selection here:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SitetoSiteVPN_AdminGuide/Content/Topics-VPNSG/Link-Selection.htm?tocpath=Link%20Selection%7C_____0#Link_Selection" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SitetoSiteVPN_AdminGuide/Content/Topics-VPNSG/Link-Selection.htm?tocpath=Link%20Selection%7C_____0#Link_Selection&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;A routing configuration would assume that the public IPs were available on the interface the traffic is routed out.&lt;BR /&gt;Since everything on your gateways is private IPs, this will most definitely not work since the gateway won’t know what the public IP is on that interface.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Nov 2022 02:36:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-configure-VPN-IPSEC-Site-to-Site-with-multiple-Virtual/m-p/163647#M27350</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-11-30T02:36:22Z</dc:date>
    </item>
  </channel>
</rss>

