<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IKED port 30500 and 34500 in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241182#M40246</link>
    <description>&lt;P&gt;The kernel module is redirecting the traffic to the “listening” port, which is useful with multithreaded iked.&lt;/P&gt;</description>
    <pubDate>Fri, 14 Feb 2025 04:23:56 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2025-02-14T04:23:56Z</dc:date>
    <item>
      <title>IKED port 30500 and 34500</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241005#M40209</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;can someone please explain the ports for IKED in R81.20 and R82?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From R82 Site-Site admin guide&lt;/P&gt;
&lt;P&gt;The IKE daemon "iked"&lt;BR /&gt;Introduced in the R81.10 version.&lt;BR /&gt;Listens on these ports on a Security Gateway:&lt;BR /&gt;&lt;STRONG&gt;IKE: 30500 - 30563 (UDP)&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;IKE NAT-T: 34500 - 34563 (UDP)&lt;/STRONG&gt;&lt;BR /&gt;Tunnel Test: 48234 - 48297 (UDP)&lt;BR /&gt;Check Point RDP: 30259 - 30322 (UDP)&lt;BR /&gt;L2TP: 31701 - 31764 (UDP)&lt;/P&gt;
&lt;P&gt;From R82 GW, but its also the same for R81.20&lt;/P&gt;
&lt;P&gt;[Expert@chkp-demo-gw-2:0]# netstat -tulnp | grep iked&lt;BR /&gt;tcp 0 0 127.0.0.1:9994 0.0.0.0:* LISTEN 6907/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30259 0.0.0.0:* 6907/iked&lt;BR /&gt;udp 0 0 0.0.0.0:&lt;STRONG&gt;30500&lt;/STRONG&gt; 0.0.0.0:* 6907/iked&lt;BR /&gt;udp 0 0 192.168.7.12:31701 0.0.0.0:* 6907/iked&lt;BR /&gt;udp 0 0 192.168.7.12:48234 0.0.0.0:* 6907/iked&lt;BR /&gt;udp 0 0 0.0.0.0:&lt;STRONG&gt;34500&lt;/STRONG&gt; 0.0.0.0:* 6907/iked&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;and my question is, where is IKE UDP 500 and NAT-T UDP 4500. On R81.20 or R82, I cannot find it for IKED and VPND&lt;/P&gt;
&lt;P&gt;the same statement is here -&amp;nbsp;&lt;SPAN&gt;sk180488&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;On maestro R81.20 its different&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;[Expert@XXX-ch01-03:2]# netstat -tulnp | grep 500&lt;BR /&gt;udp 0 0 0.0.0.0:500 0.0.0.0:* 12698/vpnd&lt;BR /&gt;udp 0 0 0.0.0.0:4500 0.0.0.0:* 12698/vpnd&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;all three mentioned GWs are doing active RA or S2S so it should listening on udp 500/4500 so I am confused by admin guide and the&amp;nbsp;sk180488&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2025 10:17:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241005#M40209</guid>
      <dc:creator>Martin_Raska</dc:creator>
      <dc:date>2025-02-12T10:17:02Z</dc:date>
    </item>
    <item>
      <title>Re: IKED port 30500 and 34500</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241142#M40235</link>
      <description>&lt;P&gt;I have the same question, I am connected to the CLI of an R81.20 vpn gateway through remote access client (Endpoint Security VPN on macOS), but I can not find udp port 4500 from its "&lt;STRONG&gt;netstat -anp&lt;/STRONG&gt;" output, although pcap on my laptop tells me I am using NAT-T (4500). It's very weird. Hope someone can answer this.&lt;span class="lia-unicode-emoji" title=":thinking_face:"&gt;🤔&lt;/span&gt;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[Expert@MTSH:0]# netstat -anp | grep iked
tcp        0      0 127.0.0.1:9994              0.0.0.0:*                   LISTEN      21664/iked          
tcp        0      0 127.0.0.1:60942             127.0.0.1:1024              ESTABLISHED 21664/iked          
tcp        0      0 127.0.0.1:60930             127.0.0.1:1024              ESTABLISHED 21664/iked          
tcp        0      0 127.0.0.1:60996             127.0.0.1:1024              ESTABLISHED 21664/iked          
tcp        0      0 127.0.0.1:60936             127.0.0.1:1024              ESTABLISHED 21665/iked          
tcp        0      0 127.0.0.1:42239             127.0.0.1:8989              ESTABLISHED 21665/iked          
tcp        0      0 127.0.0.1:61150             127.0.0.1:1024              ESTABLISHED 21665/iked          
tcp        0      0 127.0.0.1:50655             127.0.0.1:8989              ESTABLISHED 21664/iked          
tcp        0      0 127.0.0.1:60928             127.0.0.1:1024              ESTABLISHED 21665/iked          
udp        0      0 0.0.0.0:30259               0.0.0.0:*                               21664/iked          
udp        0      0 0.0.0.0:30260               0.0.0.0:*                               21665/iked          
udp        0      0 0.0.0.0:34500               0.0.0.0:*                               21664/iked          
udp        0      0 0.0.0.0:34501               0.0.0.0:*                               21665/iked          
udp        0      0 0.0.0.0:30500               0.0.0.0:*                               21664/iked          
udp        0      0 0.0.0.0:30501               0.0.0.0:*                               21665/iked          
udp        0      0 61.169.179.146:31701        0.0.0.0:*                               21664/iked          
udp        0      0 61.169.179.146:31702        0.0.0.0:*                               21665/iked          
udp        0      0 61.169.179.146:48234        0.0.0.0:*                               21664/iked          
udp        0      0 61.169.179.146:48235        0.0.0.0:*                               21665/iked          
unix  3      [ ]         STREAM     CONNECTED     44650  21664/iked          
unix  3      [ ]         STREAM     CONNECTED     44649  21664/iked          
unix  3      [ ]         STREAM     CONNECTED     45689  21664/iked          
unix  3      [ ]         STREAM     CONNECTED     45691  21665/iked          
unix  3      [ ]         STREAM     CONNECTED     44634  21665/iked          
unix  3      [ ]         STREAM     CONNECTED     44633  21665/iked&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 16:59:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241142#M40235</guid>
      <dc:creator>QixingCao_MTech</dc:creator>
      <dc:date>2025-02-13T16:59:49Z</dc:date>
    </item>
    <item>
      <title>Re: IKED port 30500 and 34500</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241182#M40246</link>
      <description>&lt;P&gt;The kernel module is redirecting the traffic to the “listening” port, which is useful with multithreaded iked.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Feb 2025 04:23:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241182#M40246</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-02-14T04:23:56Z</dc:date>
    </item>
    <item>
      <title>Re: IKED port 30500 and 34500</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241216#M40249</link>
      <description>&lt;P&gt;From my R82 lab.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@R82:0]# netstat -anp | grep iked&lt;BR /&gt;tcp 0 0 127.0.0.1:9994 0.0.0.0:* LISTEN 16951/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39942 127.0.0.1:1024 ESTABLISHED 16951/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39958 127.0.0.1:1024 ESTABLISHED 16955/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:63912 127.0.0.1:1024 ESTABLISHED 16953/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:34860 127.0.0.1:1024 ESTABLISHED 16955/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:53162 127.0.0.1:1024 ESTABLISHED 16951/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39944 127.0.0.1:1024 ESTABLISHED 16953/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:49879 127.0.0.1:8989 ESTABLISHED 16955/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:61533 127.0.0.1:8989 ESTABLISHED 16951/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39902 127.0.0.1:1024 ESTABLISHED 16953/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39888 127.0.0.1:1024 ESTABLISHED 16951/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:39908 127.0.0.1:1024 ESTABLISHED 16955/iked&lt;BR /&gt;tcp 0 0 127.0.0.1:35389 127.0.0.1:8989 ESTABLISHED 16953/iked&lt;BR /&gt;udp 0 0 0.0.0.0:34500 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 0.0.0.0:34501 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 0.0.0.0:34502 0.0.0.0:* 16955/iked&lt;BR /&gt;udp 0 0 0.0.0.0:38416 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 0.0.0.0:58319 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 0.0.0.0:62997 0.0.0.0:* 16955/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30259 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30260 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30261 0.0.0.0:* 16955/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30500 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30501 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 0.0.0.0:30502 0.0.0.0:* 16955/iked&lt;BR /&gt;udp 0 0 172.16.10.253:31701 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 172.16.10.253:31702 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 172.16.10.253:31703 0.0.0.0:* 16955/iked&lt;BR /&gt;udp 0 0 172.16.10.253:48234 0.0.0.0:* 16951/iked&lt;BR /&gt;udp 0 0 172.16.10.253:48235 0.0.0.0:* 16953/iked&lt;BR /&gt;udp 0 0 172.16.10.253:48236 0.0.0.0:* 16955/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 62474 16955/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 62473 16955/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 50156 16951/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 58444 16953/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 57024 16953/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 50157 16951/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 57027 16955/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 57021 16951/iked&lt;BR /&gt;unix 3 [ ] STREAM CONNECTED 58443 16953/iked&lt;BR /&gt;[Expert@R82:0]#&lt;/P&gt;</description>
      <pubDate>Fri, 14 Feb 2025 15:11:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/241216#M40249</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-14T15:11:44Z</dc:date>
    </item>
    <item>
      <title>Re: IKED port 30500 and 34500</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/262393#M44372</link>
      <description>&lt;P&gt;Please see this new SK article:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk184307" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;sk184307: VPN User-space Multi-Process Architecture in R81.20 and higher&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Nov 2025 23:14:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IKED-port-30500-and-34500/m-p/262393#M44372</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2025-11-10T23:14:08Z</dc:date>
    </item>
  </channel>
</rss>

