<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187971#M31504</link>
    <description>&lt;P&gt;You are correct. Fully working - no issues at all!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just typically had attempted this at midnight last time and forgotten NAT rules etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Perfect - great solution and the ONLY solution if you are using S1C.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Legend - have a great weekend.&lt;/P&gt;</description>
    <pubDate>Fri, 28 Jul 2023 15:09:31 GMT</pubDate>
    <dc:creator>SCSupport</dc:creator>
    <dc:date>2023-07-28T15:09:31Z</dc:date>
    <item>
      <title>VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187939#M31496</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;Have a unique consideration that I am wondering if anyone has anything creative.&lt;/P&gt;&lt;P&gt;I have a situation where within one management server in Smart-1 Cloud, I have a design where there are multiple hub and spokes, and many VPN's need to route via the gateway to get to other VPNS.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Examples are:&lt;/P&gt;&lt;P&gt;Remote access -&amp;gt; GW VA -&amp;gt; S2S VPN to Branch A&lt;/P&gt;&lt;P&gt;Remote access -&amp;gt; GW VA -&amp;gt; Branch B&lt;/P&gt;&lt;P&gt;Remote access -&amp;gt; GW ID -&amp;gt; Branch A&lt;/P&gt;&lt;P&gt;etc etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The obvious issue is that you can only enable VPN routing option ' and to other VPN targets' on 1 community, so only 1 of the above examples works.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I believe to do this you have to use vpn_route.conf. Thats fine, but how do you do this with Smart-1 Cloud?&lt;/P&gt;&lt;P&gt;Any suggestions if:&lt;/P&gt;&lt;P&gt;a) vpn_route.conf will solve this issue&lt;/P&gt;&lt;P&gt;b) if yes, any tips to getting this applied?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Up for creative ideas on also how this could work apart from suggestions to use a jump box unfortunately &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks all &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 10:48:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187939#M31496</guid>
      <dc:creator>SCSupport</dc:creator>
      <dc:date>2023-07-28T10:48:41Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187942#M31497</link>
      <description>&lt;P&gt;Adding the topology below simplified.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Spoken to TAC who have so far just suggested to add all the remote networks into the ENC domain of the RA community - which wont work on its own as we know.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Smsrt1PNG.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21910i86AEBC482AE39692/image-size/large?v=v2&amp;amp;px=999" role="button" title="Smsrt1PNG.PNG" alt="Smsrt1PNG.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 12:00:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187942#M31497</guid>
      <dc:creator>SCSupport</dc:creator>
      <dc:date>2023-07-28T12:00:07Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187945#M31498</link>
      <description>&lt;P&gt;You can follow below:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Routing-between-VPNs/td-p/90408" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/Routing-between-VPNs/td-p/90408&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk26993" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk26993&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As far as modifying that file on S1C, thats no go, as ONLY .def files can be modified, as per below, so you need to get in touch with TAC to have them make desired change.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21912iF737B73300871042/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 12:39:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187945#M31498</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-28T12:39:49Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187960#M31499</link>
      <description>&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the response.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would you agree that vpn_route is the way to go about this to make this work?&amp;nbsp;&lt;/P&gt;&lt;P&gt;If so - I will chase TAC on this.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 13:03:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187960#M31499</guid>
      <dc:creator>SCSupport</dc:creator>
      <dc:date>2023-07-28T13:03:44Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187961#M31500</link>
      <description>&lt;P&gt;Yes AND yes : - )&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 13:04:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187961#M31500</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-28T13:04:28Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187962#M31501</link>
      <description>&lt;P&gt;The only other possible way to make this work without modifying that file that I can see is if you had ALL "affected" gateways in the same star community. If that were the case, then you could easily utilize vpn routing options.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 13:07:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187962#M31501</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-28T13:07:22Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187963#M31502</link>
      <description>&lt;P&gt;I think I tried this but I didnt seem to work. Not sure why. I presume you mean in relation to my topology above, VPN A and B would be in the same Star community, both as satellites and VPN routing option obviously ticked to 'and to other VPN targets' on that community.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In theory then, you should be able to route from remote access to BOTH VPNs as they are part of the same star, right?&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 13:14:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187963#M31502</guid>
      <dc:creator>SCSupport</dc:creator>
      <dc:date>2023-07-28T13:14:30Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187964#M31503</link>
      <description>&lt;P&gt;Be free to message me offline, happy to do remote if you want. And yes, the way you described works, I had done it before. This was possible ages ago, so version you are on is totally irrelevant.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 13:25:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187964#M31503</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-28T13:25:48Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187971#M31504</link>
      <description>&lt;P&gt;You are correct. Fully working - no issues at all!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just typically had attempted this at midnight last time and forgotten NAT rules etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Perfect - great solution and the ONLY solution if you are using S1C.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Legend - have a great weekend.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 15:09:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187971#M31504</guid>
      <dc:creator>SCSupport</dc:creator>
      <dc:date>2023-07-28T15:09:31Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Routing between VPNS - multiple hub and spokes in Smart-1 Cloud</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187972#M31505</link>
      <description>&lt;P&gt;Legend, thats what SHE said -:)&lt;/P&gt;
&lt;P&gt;Just kidding, no one ever said that &lt;span class="lia-unicode-emoji" title=":face_with_tears_of_joy:"&gt;😂&lt;/span&gt;&lt;span class="lia-unicode-emoji" title=":face_with_tears_of_joy:"&gt;😂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Anywho, happy we could help!&lt;/P&gt;
&lt;P&gt;Have a nice weekend mate.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 15:15:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VPN-Routing-between-VPNS-multiple-hub-and-spokes-in-Smart-1/m-p/187972#M31505</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-28T15:15:56Z</dc:date>
    </item>
  </channel>
</rss>

