<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CP Gateway Management in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49361#M9665</link>
    <description>&lt;P&gt;You can only have one default gateway on a given device, which should generally point towards the Internet.&lt;/P&gt;
&lt;P&gt;To be able to reach internal networks from your gateway, you will need to create specific routes for each network pointing to the next hop required to reach that network.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Again, a network diagram would be exceptionally helpful.&lt;/P&gt;</description>
    <pubDate>Sun, 31 Mar 2019 16:03:19 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2019-03-31T16:03:19Z</dc:date>
    <item>
      <title>CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49299#M9658</link>
      <description>&lt;P&gt;Hi Checkmate,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will greatly appreciate if anyone could help me after a week of fruitless research as I am new learner. I am using a checkpoint 4200 with gaia R77.30 on it, I have enable Vlan 10 for my inside to access the internet and the interface mgmt is on different VLAN.&lt;/P&gt;&lt;P&gt;I am using a Cisco switch L3 configure with several VLANs, my question is how to configure the checkpoint for all the default gateways to allow inside mgmt&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 30 Mar 2019 17:55:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49299#M9658</guid>
      <dc:creator>BNgala</dc:creator>
      <dc:date>2019-03-30T17:55:55Z</dc:date>
    </item>
    <item>
      <title>Re: CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49314#M9660</link>
      <description>A network diagram would be very helpful.</description>
      <pubDate>Sun, 31 Mar 2019 01:04:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49314#M9660</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-31T01:04:13Z</dc:date>
    </item>
    <item>
      <title>Re: CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49315#M9661</link>
      <description>&lt;P&gt;From my previous post,&lt;/P&gt;&lt;P&gt;I would like to know how could I configure the default gateway to allow the inside to access the internet and the default gateway for the inside management.&lt;/P&gt;&lt;P&gt;for example in cisco is ip route 0.0.0.0 &amp;nbsp;0.0.0.0 (ip address) default gateway, so how to configure this in checkpoint.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;many thanks.&lt;/P&gt;</description>
      <pubDate>Sun, 31 Mar 2019 01:21:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49315#M9661</guid>
      <dc:creator>BNgala</dc:creator>
      <dc:date>2019-03-31T01:21:46Z</dc:date>
    </item>
    <item>
      <title>Re: CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49321#M9662</link>
      <description>&lt;P&gt;Here is an nice documentation:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/The-CheckMates-Blog/Welcome-to-Check-Point-for-Beginners/ba-p/31877" target="_self"&gt;Check Point for Beginners&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 31 Mar 2019 08:51:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49321#M9662</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2019-03-31T08:51:59Z</dc:date>
    </item>
    <item>
      <title>Re: CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49325#M9663</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/28018"&gt;@BNgala&lt;/a&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I agree with&amp;nbsp; &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp; a network diagram would be very helpful.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I don't understand the question 100%.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;1) Add three interfaces in GAIA&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;a) external (for&amp;nbsp;example eth1) &amp;gt; internet&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;b) internal lan (for example eth2.123) &amp;gt; your network&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;c) management (for example eth2.10) &amp;gt; your management vlan&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; (set this interface to management)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;2) On Cisco switch allow only the used vlan's on the trunk&amp;nbsp;(for example vlan 10 and vlan 123)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;3) Add the default route in GAIA to internet&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;4) In the SmartConsole&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;a) In the gateway object get the interface topology&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;b) Set IP spoofing (external to external interface (for example eth1) , internal lan (for example eth2.123) to &amp;gt; network topology) and management&amp;nbsp;(for example eth2.10) to &amp;gt; network topology)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;c) On the gateway objekt enable hide NAT&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;d) Add access rules&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 31 Mar 2019 09:27:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49325#M9663</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2019-03-31T09:27:14Z</dc:date>
    </item>
    <item>
      <title>Re: CP Gateway Management</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49361#M9665</link>
      <description>&lt;P&gt;You can only have one default gateway on a given device, which should generally point towards the Internet.&lt;/P&gt;
&lt;P&gt;To be able to reach internal networks from your gateway, you will need to create specific routes for each network pointing to the next hop required to reach that network.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Again, a network diagram would be exceptionally helpful.&lt;/P&gt;</description>
      <pubDate>Sun, 31 Mar 2019 16:03:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CP-Gateway-Management/m-p/49361#M9665</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-31T16:03:19Z</dc:date>
    </item>
  </channel>
</rss>

