<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SDWAN - LAN to SDWAN in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223102#M37162</link>
    <description>&lt;P&gt;I dont think profile here matters at all. What matters is routing is correct.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 08 Aug 2024 17:29:26 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-08-08T17:29:26Z</dc:date>
    <item>
      <title>SDWAN - LAN to SDWAN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/222991#M37120</link>
      <description>&lt;P&gt;Hi Checkmates,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After the gateway is running the SDWAN service and registering on the Infinity Portal, for example, there are 2 gateways that are connected and running SDWAN, how do you make the internal LAN reachable from the gateway that is already running SDWAN?&lt;/P&gt;&lt;P&gt;After the SDWAN service is running on the gateway, will it automatically advertise or reroute the internal LAN on the gateway to another gateway running with the same SDWAN profile?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2024 03:56:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/222991#M37120</guid>
      <dc:creator>Ricki_Juntak</dc:creator>
      <dc:date>2024-08-08T03:56:20Z</dc:date>
    </item>
    <item>
      <title>Re: SDWAN - LAN to SDWAN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223100#M37160</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im not sure i fully understand the question. Can you elaborate?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you mean in the VPN traffic between the GWs how each GW learns the other site lan? This is based on VPN settings of VPN Domain. And in near jumbo can be based on routes as well as we release support for Route based VPN as well.&lt;/P&gt;
&lt;P&gt;P.s its irrelevant if GWs are in the same profile. Profile just meant to group gws to install rules on.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2024 17:24:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223100#M37160</guid>
      <dc:creator>AmirArama</dc:creator>
      <dc:date>2024-08-08T17:24:08Z</dc:date>
    </item>
    <item>
      <title>Re: SDWAN - LAN to SDWAN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223102#M37162</link>
      <description>&lt;P&gt;I dont think profile here matters at all. What matters is routing is correct.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 08 Aug 2024 17:29:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223102#M37162</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-08-08T17:29:26Z</dc:date>
    </item>
    <item>
      <title>Re: SDWAN - LAN to SDWAN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223132#M37169</link>
      <description>&lt;P&gt;based from I know, Another vendor usually after device join or activate the feature SDWAN tunnel automatically created and local Network from all device running SDWAN can reachable from another device, this is correct?&lt;/P&gt;&lt;P&gt;so with SDWAN Checkpoint we must configure first the IPSec Site to site, after that internal LAN of device can be reached by another device.&lt;/P&gt;&lt;P&gt;can you share simple step by step to configure the SDWAN on Checkpoint, cause we already try on LAB using&lt;/P&gt;&lt;P&gt;1. CP5800x2 single gateway, both gateway only use 1 IP public, one gateway HO and one gateway branch&lt;/P&gt;&lt;P&gt;2. connect to SDWAN-infinity portal and SMart1-cloud&lt;/P&gt;&lt;P&gt;3. Create IPsec tunnel but the LAN segment cannot reached from another, vpn tu tlist not showing tunnel on the CLI gateway but from Smart-1 show tunnel up on the GW-branch, on the SDWAN monitor show 1 tunnel up&lt;/P&gt;&lt;P&gt;we use R81.20 with JHF 65.&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2024 07:49:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223132#M37169</guid>
      <dc:creator>Ricki_Juntak</dc:creator>
      <dc:date>2024-08-09T07:49:17Z</dc:date>
    </item>
    <item>
      <title>Re: SDWAN - LAN to SDWAN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223147#M37171</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;Basically we have this sk and within you can see the admin guide:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk180605" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk180605&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Yes, you still need to configure IPSEC in SMC. Configure the VPN Domains properly.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If 'vpn tu tlist' shows 0 IPSEC and 0 NAT-T, You don't have any UP tunneles.&lt;/P&gt;
&lt;P&gt;If you don't manage, you can DM me&lt;/P&gt;
&lt;P&gt;Thx&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2024 10:22:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SDWAN-LAN-to-SDWAN/m-p/223147#M37171</guid>
      <dc:creator>AmirArama</dc:creator>
      <dc:date>2024-08-09T10:22:04Z</dc:date>
    </item>
  </channel>
</rss>

