<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SETTING SITE TO SITE VPN in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228364#M38152</link>
    <description>&lt;P&gt;merci de m'avoir assisté&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 29 Sep 2024 11:49:48 GMT</pubDate>
    <dc:creator>Junior</dc:creator>
    <dc:date>2024-09-29T11:49:48Z</dc:date>
    <item>
      <title>SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228196#M38123</link>
      <description>&lt;P&gt;Hello everyone&amp;nbsp;&lt;/P&gt;&lt;P&gt;I need help setting up a site-to-site vpn service. I have two Microtik routers on the front, each on a remote site A and B. The vpn s2s configuration between the two Microtik routers is OK and works correctly. the CP 3600 firewall is behind router A (see diagram). i can ping the ip address of router A's interface from my pc behind the cp, but i can't ping the port of router A's interface that participates in the vpn s2s tunnel with router B. i've created a route in the cp with the GW of the cp's interface that is connected to router A. but the pings to router B don't work. configuration of the GW on the cp: lan destination: 10.254.1.0/24; GW: 192.168.3.1;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Site 2 Site.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27849i8B61E0BE303B39DC/image-size/large?v=v2&amp;amp;px=999" role="button" title="Site 2 Site.png" alt="Site 2 Site.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;thanks you&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 11:06:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228196#M38123</guid>
      <dc:creator>Junior</dc:creator>
      <dc:date>2024-09-27T11:06:00Z</dc:date>
    </item>
    <item>
      <title>Re: SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228204#M38124</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/29032"&gt;@Junior&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It is an offtopic, am I right? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The CP GWs are not participating as VPN GW-s&lt;/P&gt;
&lt;P&gt;However can you ping from PC1 -&amp;gt; Microtik2 10.254.1.1?&lt;/P&gt;
&lt;P&gt;What does #ip route get say on the CP3600 for 10.254.1.10?&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 12:29:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228204#M38124</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-27T12:29:26Z</dc:date>
    </item>
    <item>
      <title>Re: SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228227#M38128</link>
      <description>&lt;P&gt;Did you do any packet captures to see where that traffic goes?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 13:54:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228227#M38128</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-27T13:54:43Z</dc:date>
    </item>
    <item>
      <title>Re: SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228363#M38151</link>
      <description>&lt;P&gt;indeed an #ip route get 10.254.1.10, indicates the default route 172.16.10.2 which is the exit towards internet of the firewall. yes CP does not take part in the installation of the tunnel between the microtik. after having indicated the good route, all returned in order. Thanks for your help&lt;/P&gt;</description>
      <pubDate>Sun, 29 Sep 2024 11:48:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228363#M38151</guid>
      <dc:creator>Junior</dc:creator>
      <dc:date>2024-09-29T11:48:30Z</dc:date>
    </item>
    <item>
      <title>Re: SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228364#M38152</link>
      <description>&lt;P&gt;merci de m'avoir assisté&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 29 Sep 2024 11:49:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228364#M38152</guid>
      <dc:creator>Junior</dc:creator>
      <dc:date>2024-09-29T11:49:48Z</dc:date>
    </item>
    <item>
      <title>Re: SETTING SITE TO SITE VPN</title>
      <link>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228368#M38153</link>
      <description>&lt;P&gt;I dont speak French (which I probably should considering I live so close to Quebec lol), but I understood that &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;je vous en prie&lt;/P&gt;</description>
      <pubDate>Sun, 29 Sep 2024 13:04:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/SETTING-SITE-TO-SITE-VPN/m-p/228368#M38153</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-29T13:04:00Z</dc:date>
    </item>
  </channel>
</rss>

