<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remote Access VPN users cannot access 3rd Party site via S2S IPSEC in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/81299#M10776</link>
    <description>Hi,&lt;BR /&gt;I've been told they do.. but i am sceptical. have requested a tshoot session with remote party to verify and confirm.&lt;BR /&gt;will update once completed.&lt;BR /&gt;regards</description>
    <pubDate>Wed, 08 Apr 2020 10:13:08 GMT</pubDate>
    <dc:creator>Ants</dc:creator>
    <dc:date>2020-04-08T10:13:08Z</dc:date>
    <item>
      <title>Remote Access VPN users cannot access 3rd Party site via S2S IPSEC</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/80918#M10774</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;quick scenario on r80.30..&lt;/P&gt;&lt;P&gt;we have RA users connecting to our gateway and given an IP from pool 10.1.1.0/24 that connects to local LAN etc all working as expected.&lt;/P&gt;&lt;P&gt;however trying to get them to connect to a remote site via a s2s on same gateway which is not working.&lt;/P&gt;&lt;P&gt;vpnuser----&amp;lt;ra vpn&amp;gt;--&amp;gt;---RA_Gateway----&amp;lt;s2s vpn&amp;gt; ---&amp;gt;---3rd party&lt;/P&gt;&lt;P&gt;error in logs : Action: reject&amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp; Reject Category - IKE failure,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Encryption Failure: Error Occurred&lt;/P&gt;&lt;P&gt;remote s2s network 10.31.31.0/24&lt;/P&gt;&lt;P&gt;On remote access vpn community we have our VPN gateway as participating gateway only (not sure if i need to add 3rd party remote gateway's interoperable object to here?)&lt;/P&gt;&lt;P&gt;encryption domains are good as far as i can tell..&lt;/P&gt;&lt;P&gt;any ideas?&lt;/P&gt;&lt;P&gt;thanks in advance&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Apr 2020 08:46:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/80918#M10774</guid>
      <dc:creator>Ants</dc:creator>
      <dc:date>2020-04-06T08:46:34Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Access VPN users cannot access 3rd Party site via S2S IPSEC</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/81061#M10775</link>
      <description>Does the encryption domain on the Remote end include the Office Mode IPs?</description>
      <pubDate>Tue, 07 Apr 2020 04:11:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/81061#M10775</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-07T04:11:44Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Access VPN users cannot access 3rd Party site via S2S IPSEC</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/81299#M10776</link>
      <description>Hi,&lt;BR /&gt;I've been told they do.. but i am sceptical. have requested a tshoot session with remote party to verify and confirm.&lt;BR /&gt;will update once completed.&lt;BR /&gt;regards</description>
      <pubDate>Wed, 08 Apr 2020 10:13:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/81299#M10776</guid>
      <dc:creator>Ants</dc:creator>
      <dc:date>2020-04-08T10:13:08Z</dc:date>
    </item>
    <item>
      <title>Re: Remote Access VPN users cannot access 3rd Party site via S2S IPSEC</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/82373#M10777</link>
      <description>quick update.. as suspected.. 3rd party had incorrect subnets defined in their crypto acl (cisco asa) - once resolved problem solved. thanks.</description>
      <pubDate>Sun, 19 Apr 2020 11:00:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-Access-VPN-users-cannot-access-3rd-Party-site-via-S2S/m-p/82373#M10777</guid>
      <dc:creator>Ants</dc:creator>
      <dc:date>2020-04-19T11:00:47Z</dc:date>
    </item>
  </channel>
</rss>

