<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec VPN Tunnel in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259552#M43843</link>
    <description>&lt;P&gt;Are you seeing any logs for the 3800 or is it logging locally?&lt;/P&gt;
&lt;P&gt;Use "cpstat fw -f log_connection" to check...&lt;/P&gt;</description>
    <pubDate>Thu, 09 Oct 2025 12:43:33 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2025-10-09T12:43:33Z</dc:date>
    <item>
      <title>IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259544#M43842</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We recently migrated IPSec Tunnel from CP 9100 to CP 3800 appliance.&lt;/P&gt;&lt;P&gt;Post migration we are unable to see th tunnel traffic logs on CP 3800.&lt;/P&gt;&lt;P&gt;Required blades is enable on CP3800 gateway.&lt;/P&gt;&lt;P&gt;What we are missing here ?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Oct 2025 10:28:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259544#M43842</guid>
      <dc:creator>Mitesh</dc:creator>
      <dc:date>2025-10-09T10:28:14Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259552#M43843</link>
      <description>&lt;P&gt;Are you seeing any logs for the 3800 or is it logging locally?&lt;/P&gt;
&lt;P&gt;Use "cpstat fw -f log_connection" to check...&lt;/P&gt;</description>
      <pubDate>Thu, 09 Oct 2025 12:43:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259552#M43843</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-10-09T12:43:33Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259741#M43868</link>
      <description>&lt;P&gt;You cant see just vpn logs or any logs? Sorry, its not entirely clear from your description.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 12 Oct 2025 18:10:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259741#M43868</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-12T18:10:13Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259887#M43930</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/45018"&gt;@Mitesh&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Were you able to fix this mate?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 15 Oct 2025 08:41:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/259887#M43930</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-15T08:41:51Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260156#M43972</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;unable to resolve the issue.&lt;/P&gt;&lt;P&gt;Let me explain the secnario once again, also attaching network diagram.&lt;/P&gt;&lt;P&gt;We are having 2 tier firewall architecture, Checkpoint we are using for Perimeter &amp;amp; Palo Alto for internel (core), server farm is behind the Palo Alto Firewall.&lt;/P&gt;&lt;P&gt;IPSec Tunnel is configured on Checkpoint, Tunnel is up, traffic from remote network is reaching to checkpoint, but we are unable to see the traffic on Palo Alto Firewall.&lt;/P&gt;&lt;P&gt;I suspect may be routing or NAT issue.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:08:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260156#M43972</guid>
      <dc:creator>Mitesh</dc:creator>
      <dc:date>2025-10-17T11:08:06Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260158#M43973</link>
      <description>&lt;P&gt;Ok...do you see any drops on CP side? What about PAN?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:13:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260158#M43973</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-17T11:13:19Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260159#M43974</link>
      <description>&lt;P&gt;Palo Alto sidw we are not seeing any packet.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:15:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260159#M43974</guid>
      <dc:creator>Mitesh</dc:creator>
      <dc:date>2025-10-17T11:15:01Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260160#M43975</link>
      <description>&lt;P&gt;On CP fw, do this from expert -&amp;gt; fw ctl zdebug + drop | grep x.x.x.x&lt;/P&gt;
&lt;P&gt;Just replace with right IPon other side. Its been forever since I worked with PAN, so not sure if they have similar command, but you can check the logs.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:17:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260160#M43975</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-17T11:17:19Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260161#M43976</link>
      <description>&lt;P&gt;Then for sure sounds its issue on their end, not CP.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:19:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260161#M43976</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-17T11:19:05Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260162#M43977</link>
      <description>&lt;P&gt;How we can verify trafiic is reaching to Palo Alto Interface via Checkpoint ?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:30:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260162#M43977</guid>
      <dc:creator>Mitesh</dc:creator>
      <dc:date>2025-10-17T11:30:14Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260163#M43978</link>
      <description>&lt;P&gt;Just do tcpdump or fw monitor. You can refer to below site my colleague made while back.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://tcpdump101.com" target="_blank"&gt;https://tcpdump101.com&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2025 11:40:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260163#M43978</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-17T11:40:08Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260534#M44046</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;issue got resolved.&lt;/P&gt;&lt;P&gt;It was routing issue from Palo Alto side.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2025 06:32:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260534#M44046</guid>
      <dc:creator>Mitesh</dc:creator>
      <dc:date>2025-10-22T06:32:29Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec VPN Tunnel</title>
      <link>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260551#M44050</link>
      <description>&lt;P&gt;Excellent, thanks for letting us know.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2025 11:16:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/IPSec-VPN-Tunnel/m-p/260551#M44050</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-10-22T11:16:21Z</dc:date>
    </item>
  </channel>
</rss>

