<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Site to Site VPN frequently UP and DOWN issues in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201371#M10033</link>
    <description>&lt;P&gt;I would suggest to contact CP TAC to get help !&lt;/P&gt;</description>
    <pubDate>Fri, 22 Dec 2023 09:45:34 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2023-12-22T09:45:34Z</dc:date>
    <item>
      <title>Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201367#M10032</link>
      <description>&lt;P&gt;Dear Members,&lt;/P&gt;&lt;P&gt;Currently, I have a Site-to-Site VPN connecting the HQ site, which utilizes a Checkpoint Quantum Spark 1550 appliance, to the Branch site,which employs a Palo Alto 220. Phase 1 lifetime set 8 hour in both and Phase 2 lifetime set 1 hour in both firewalls.&lt;/P&gt;&lt;P&gt;The tunnel is up and running, but during a recent blackout at the HQ site that lasted for an hour, the VPN tunnel went down. Once power was restored, the VPN tunnel reestablished itself. However, a new problem emerged - after a few minutes, the tunnel began going down and up frequently.&lt;/P&gt;&lt;P&gt;To address this issue, I attempted to clean both Phase 1 and Phase 2 from the HQ site (using Checkpoint) by using the CLI command "vpn tunnelutil 0." After executing this command, the tunnel remained stable for the entire day.&lt;/P&gt;&lt;P&gt;I am uncertain whether this is beyond my knowledge of both firewalls for troubleshooting. The UDP timeout session for both firewalls is set to 30 seconds. How can I resolve these issues without resorting to running the CLI command "vpn tunnelutil 0"? This is crucial as blackouts occur four times a day in our country.&lt;/P&gt;&lt;P&gt;Please, could you kindly help me with these issues?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-22 152621.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23761i8B0B07EE65B0A89D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2023-12-22 152621.png" alt="Screenshot 2023-12-22 152621.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-22 154632.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23762i1366D03400B100E4/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2023-12-22 154632.png" alt="Screenshot 2023-12-22 154632.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;  &lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 09:23:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201367#M10032</guid>
      <dc:creator>pyiephyohtay</dc:creator>
      <dc:date>2023-12-22T09:23:47Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201371#M10033</link>
      <description>&lt;P&gt;I would suggest to contact CP TAC to get help !&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 09:45:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201371#M10033</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-12-22T09:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201373#M10034</link>
      <description>&lt;P&gt;Dear Albercht,&lt;/P&gt;&lt;P&gt;Thanks for your suggestion bro.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 09:54:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201373#M10034</guid>
      <dc:creator>pyiephyohtay</dc:creator>
      <dc:date>2023-12-22T09:54:46Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201382#M10036</link>
      <description>&lt;P&gt;A blackout should not change anything in VPN configuration on flash-based SMBs so i think this could rather be some configuration issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 11:23:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201382#M10036</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-12-22T11:23:53Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201401#M10037</link>
      <description>&lt;P&gt;Is SMB locally or centrally managed? I would also contact TAC for this, but maybe before you do, upgrade SMB appliance to the latest firmware, as Im sure that will be siggested.&lt;/P&gt;
&lt;P&gt;Make sure in smart console, when you go to blobal properties -&amp;gt; advanced -&amp;gt; configure -&amp;gt; vpn -&amp;gt; ike, keep ike SAs is enabled&lt;/P&gt;
&lt;P&gt;I would also check below&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23766i99D5B643DBBBD437/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 19:40:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201401#M10037</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-22T19:40:30Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201525#M10040</link>
      <description>&lt;P&gt;Dear The Rock,&lt;/P&gt;&lt;P&gt;It's locally managed and current version is latest.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;As I understand it, Tunnel Health Monitoring, specifically the 'Tunnel Test' (Checkpoint Proprietary), is employed when both sides of the firewall are Checkpoint. My current design, however, involves a connection from Checkpoint to Palo Alto. Is my understanding correct, and is this why I am utilizing the 'Tunnel Test'?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Should i also contact TCA for this?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-26 205349.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23785iBD159196B12EA8E0/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2023-12-26 205349.png" alt="Screenshot 2023-12-26 205349.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-12-26 205223.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23786i4B0E4EB20CDF63A7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2023-12-26 205223.png" alt="Screenshot 2023-12-26 205223.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 14:36:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201525#M10040</guid>
      <dc:creator>pyiephyohtay</dc:creator>
      <dc:date>2023-12-26T14:36:00Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201528#M10041</link>
      <description>&lt;P&gt;I think if you call them and do remote, hope they would be able to help.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 14:40:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201528#M10041</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-26T14:40:47Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201530#M10042</link>
      <description>&lt;P&gt;Exactly bro, Coz i have another site to site VPN from HQ site to Azure tunnel is stable, even when the HQ to Branch site VPN happen up down issues, So, Maybe i was mis configuration for that then i tried to triple check the both firewall but still not ok.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 14:49:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201530#M10042</guid>
      <dc:creator>pyiephyohtay</dc:creator>
      <dc:date>2023-12-26T14:49:14Z</dc:date>
    </item>
    <item>
      <title>Re: Site to Site VPN frequently UP and DOWN issues</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201531#M10043</link>
      <description>&lt;P&gt;Yes bro that is the only way to solve for the issues.&lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help me to answer bro.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Dec 2023 14:51:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-frequently-UP-and-DOWN-issues/m-p/201531#M10043</guid>
      <dc:creator>pyiephyohtay</dc:creator>
      <dc:date>2023-12-26T14:51:35Z</dc:date>
    </item>
  </channel>
</rss>

