<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic When use Endpoint Security VPN Ping is not reaching the destination. in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/When-use-Endpoint-Security-VPN-Ping-is-not-reaching-the/m-p/243522#M2282</link>
    <description>&lt;P&gt;My client currently has two firewalls in different buildings, connected in a &lt;STRONG&gt;ClusterXL&lt;/STRONG&gt; setup, and they are also linked via a &lt;STRONG&gt;Site-to-Site VPN&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;I am trying to connect to the &lt;STRONG&gt;L3 switches&lt;/STRONG&gt; located behind each firewall using &lt;STRONG&gt;Endpoint Security VPN&lt;/STRONG&gt;, but I noticed something strange. When I set the site to &lt;STRONG&gt;Building 1&lt;/STRONG&gt; and connect via &lt;STRONG&gt;Endpoint Security VPN&lt;/STRONG&gt;, I attempted to ping the &lt;STRONG&gt;L3 switch in Building 1&lt;/STRONG&gt;, but the ping did not reach it. However, the ping successfully reached the &lt;STRONG&gt;L3 switch in Building 2&lt;/STRONG&gt; instead. &lt;STRONG&gt;The policy is not blocking the traffic.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Why is this happening?&lt;/P&gt;&lt;P&gt;Additionally, when I run netstat -nr after enabling the VPN, I can see the &lt;STRONG&gt;routing table created by the VPN&lt;/STRONG&gt;, which seems to include the &lt;STRONG&gt;VPN tunnel gateway&lt;/STRONG&gt;. If this gateway appears in the routing table, is it expected that I should be able to ping the &lt;STRONG&gt;tunnel gateway&lt;/STRONG&gt; successfully?&lt;/P&gt;</description>
    <pubDate>Tue, 11 Mar 2025 09:50:59 GMT</pubDate>
    <dc:creator>dkzndkqh</dc:creator>
    <dc:date>2025-03-11T09:50:59Z</dc:date>
    <item>
      <title>When use Endpoint Security VPN Ping is not reaching the destination.</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/When-use-Endpoint-Security-VPN-Ping-is-not-reaching-the/m-p/243522#M2282</link>
      <description>&lt;P&gt;My client currently has two firewalls in different buildings, connected in a &lt;STRONG&gt;ClusterXL&lt;/STRONG&gt; setup, and they are also linked via a &lt;STRONG&gt;Site-to-Site VPN&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;I am trying to connect to the &lt;STRONG&gt;L3 switches&lt;/STRONG&gt; located behind each firewall using &lt;STRONG&gt;Endpoint Security VPN&lt;/STRONG&gt;, but I noticed something strange. When I set the site to &lt;STRONG&gt;Building 1&lt;/STRONG&gt; and connect via &lt;STRONG&gt;Endpoint Security VPN&lt;/STRONG&gt;, I attempted to ping the &lt;STRONG&gt;L3 switch in Building 1&lt;/STRONG&gt;, but the ping did not reach it. However, the ping successfully reached the &lt;STRONG&gt;L3 switch in Building 2&lt;/STRONG&gt; instead. &lt;STRONG&gt;The policy is not blocking the traffic.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Why is this happening?&lt;/P&gt;&lt;P&gt;Additionally, when I run netstat -nr after enabling the VPN, I can see the &lt;STRONG&gt;routing table created by the VPN&lt;/STRONG&gt;, which seems to include the &lt;STRONG&gt;VPN tunnel gateway&lt;/STRONG&gt;. If this gateway appears in the routing table, is it expected that I should be able to ping the &lt;STRONG&gt;tunnel gateway&lt;/STRONG&gt; successfully?&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2025 09:50:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/When-use-Endpoint-Security-VPN-Ping-is-not-reaching-the/m-p/243522#M2282</guid>
      <dc:creator>dkzndkqh</dc:creator>
      <dc:date>2025-03-11T09:50:59Z</dc:date>
    </item>
    <item>
      <title>Re: When use Endpoint Security VPN Ping is not reaching the destination.</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/When-use-Endpoint-Security-VPN-Ping-is-not-reaching-the/m-p/243999#M2283</link>
      <description>&lt;P&gt;Need to see a topology digram that includes the relevant elements.&lt;BR /&gt;Does the L3 switch have a route to the Office Mode IP address pool (either directly or indirectly with a default route)?&lt;/P&gt;
&lt;P&gt;The VPN gateway itself won't necessarily being pingable.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Mar 2025 19:44:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/When-use-Endpoint-Security-VPN-Ping-is-not-reaching-the/m-p/243999#M2283</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-03-17T19:44:47Z</dc:date>
    </item>
  </channel>
</rss>

