<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Backup over vpn in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229996#M11590</link>
    <description>&lt;P&gt;Locally or centrally managed?&lt;/P&gt;
&lt;P&gt;In advanced settings there is an option to source locally generated traffic from the internal address as an option.&lt;/P&gt;
&lt;P&gt;"Use Internal IP address for encrypted communications from the local gateway"&lt;/P&gt;
&lt;P&gt;Other options exist but may add unnecessary complexity in configuration&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 17 Oct 2024 12:31:16 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2024-10-17T12:31:16Z</dc:date>
    <item>
      <title>Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229994#M11589</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;odd question this, but I've not found a solution as yet.&amp;nbsp; I have several Quantum spark appliances around the world in branch offices, connected to the main office via vpn.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I schedule periodic backups but these come out via the external (ie primary) interface address and don't decrypt and route correctly at the main office end. Is there a way to force an interface for the ftp traffic ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently I send to an externally facing SFTP server, but ideally I'd come via the vpn.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any thoughts ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Ian&lt;/P&gt;</description>
      <pubDate>Thu, 17 Oct 2024 11:55:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229994#M11589</guid>
      <dc:creator>ibrown</dc:creator>
      <dc:date>2024-10-17T11:55:32Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229996#M11590</link>
      <description>&lt;P&gt;Locally or centrally managed?&lt;/P&gt;
&lt;P&gt;In advanced settings there is an option to source locally generated traffic from the internal address as an option.&lt;/P&gt;
&lt;P&gt;"Use Internal IP address for encrypted communications from the local gateway"&lt;/P&gt;
&lt;P&gt;Other options exist but may add unnecessary complexity in configuration&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Oct 2024 12:31:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229996#M11590</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-10-17T12:31:16Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229998#M11591</link>
      <description>&lt;P&gt;Hi Chris, this is a spark 1570 R81.10.08, and centrally managed. However the only option in advanced I can see is '&lt;BR /&gt;DHCP relay - Use internal IP addresses as source'&lt;/P&gt;</description>
      <pubDate>Thu, 17 Oct 2024 12:43:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/229998#M11591</guid>
      <dc:creator>ibrown</dc:creator>
      <dc:date>2024-10-17T12:43:37Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230068#M11592</link>
      <description>&lt;P&gt;The procedure is different for centrally managed SMB appliances:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk119415" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk119415&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Oct 2024 18:05:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230068#M11592</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-10-17T18:05:40Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230121#M11594</link>
      <description>&lt;P&gt;Brilliant thank you ! Tested and works&lt;/P&gt;</description>
      <pubDate>Fri, 18 Oct 2024 10:25:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230121#M11594</guid>
      <dc:creator>ibrown</dc:creator>
      <dc:date>2024-10-18T10:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230247#M11596</link>
      <description>&lt;P&gt;Anyone know if this is possible on a 3000 appliance ?&lt;/P&gt;&lt;P&gt;I have three 3200s running R81.20 - Build 011&lt;/P&gt;&lt;P&gt;They are centrally managed so the setting is not available and the kernel setting does not seem available&lt;/P&gt;&lt;P&gt;Set operation failed: failed to get parameter fw_enc_conns_use_internal&lt;BR /&gt;set: Operation failed&lt;BR /&gt;/bin/cpfw_start: line 12: 29398 Killed $FWDIR/bin/fw "$@"&lt;/P&gt;</description>
      <pubDate>Mon, 21 Oct 2024 09:14:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230247#M11596</guid>
      <dc:creator>ibrown</dc:creator>
      <dc:date>2024-10-21T09:14:22Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230315#M11603</link>
      <description>&lt;P&gt;This is specific to SMB.&lt;BR /&gt;I don't believe it has an equivalent on regular gateway but perhaps a specific NAT rule will achieve the desired result?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Oct 2024 17:12:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/230315#M11603</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-10-21T17:12:20Z</dc:date>
    </item>
    <item>
      <title>Re: Backup over vpn</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/231650#M11664</link>
      <description>&lt;P&gt;Thank you, I shall try that.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2024 15:33:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Backup-over-vpn/m-p/231650#M11664</guid>
      <dc:creator>ibrown</dc:creator>
      <dc:date>2024-11-04T15:33:41Z</dc:date>
    </item>
  </channel>
</rss>

