<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Quantum Spark - separate network allocation in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265063#M13500</link>
    <description>&lt;P&gt;Yes, you can delete the LAN1 Switch to just use LAN1 port as an individual interface.&lt;BR /&gt;If LAN1_Switch already has an IP configured and delete it, the originally configured IP will be assigned to LAN1.&lt;BR /&gt;Afterwards you can use the IP that's already configured, or you can change it accordingly to your topology.&lt;/P&gt;
&lt;P&gt;Note, Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside.&lt;/P&gt;</description>
    <pubDate>Thu, 11 Dec 2025 00:17:49 GMT</pubDate>
    <dc:creator>Tom_Hinoue</dc:creator>
    <dc:date>2025-12-11T00:17:49Z</dc:date>
    <item>
      <title>Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264875#M13496</link>
      <description>&lt;P&gt;I want to setup our Quantum Spark like a regular Gaia firewall. I have disabled the WAN and DMZ interfaces during setup. I now have LAN Switch 1 with all of my Ge ports listed. I cannot set an IP on any interface unless I set the Interface to 'Separate Network'.&lt;/P&gt;&lt;P&gt;Does 'the separate network' interface essentially accomplish what I want? Plain interfaces that I can configure as I wish. Or am I missing something?&lt;/P&gt;&lt;P&gt;As I do not need LAN Switch 1, can I just assign all interfaces to 'separate network' and do away with LAN Switch 1?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Dec 2025 13:56:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264875#M13496</guid>
      <dc:creator>JaySon_2021</dc:creator>
      <dc:date>2025-12-09T13:56:49Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264886#M13497</link>
      <description>&lt;P&gt;Yes, "separate network" is exactly what you're after here.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Dec 2025 15:56:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264886#M13497</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-12-09T15:56:10Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264887#M13498</link>
      <description>&lt;P&gt;Awesome! Thanks for the reply.&lt;/P&gt;&lt;P&gt;I tried to assign Ge1 to 'separate network' but it complained that it was the pivot port for Lan Switch 1. Can I just delete Lan Switch 1 all together and then use Ge1?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Dec 2025 15:59:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/264887#M13498</guid>
      <dc:creator>JaySon_2021</dc:creator>
      <dc:date>2025-12-09T15:59:04Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265045#M13499</link>
      <description>&lt;P&gt;I've never tried to do that and don't know if it's possible.&lt;BR /&gt;Even so, if you've assigned the other ports to "Separate Network" then there is no actual reason you need to delete it.&lt;/P&gt;</description>
      <pubDate>Wed, 10 Dec 2025 22:38:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265045#M13499</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-12-10T22:38:55Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265063#M13500</link>
      <description>&lt;P&gt;Yes, you can delete the LAN1 Switch to just use LAN1 port as an individual interface.&lt;BR /&gt;If LAN1_Switch already has an IP configured and delete it, the originally configured IP will be assigned to LAN1.&lt;BR /&gt;Afterwards you can use the IP that's already configured, or you can change it accordingly to your topology.&lt;/P&gt;
&lt;P&gt;Note, Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2025 00:17:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265063#M13500</guid>
      <dc:creator>Tom_Hinoue</dc:creator>
      <dc:date>2025-12-11T00:17:49Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265065#M13501</link>
      <description>&lt;P&gt;Thanks Tom&lt;/P&gt;&lt;P&gt;When you say "Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside", isn't that done typically done via the topology config in the policy on the object?&lt;/P&gt;&lt;P&gt;Note that I have not gotten to the policy stage yet on the Quantum Sparks. I'm speaking to your response based on what I do in Smartconsole when I create/add a firewall object and change one interface in the topo to be external (Internet). Is it different on a locally managed Spark?&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2025 01:01:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265065#M13501</guid>
      <dc:creator>JaySon_2021</dc:creator>
      <dc:date>2025-12-11T01:01:18Z</dc:date>
    </item>
    <item>
      <title>Re: Quantum Spark - separate network allocation</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265072#M13502</link>
      <description>&lt;P&gt;Yes, for centrally managed Spark, if a internet connection is configured on the Spark device, than it should automatically be assigned as a External zone when fetching the topology in Smart Console.&lt;/P&gt;
&lt;P&gt;The different part from Main Train is that the default gateway can only be configured in the Internet Connection and not the routing table.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;I mentioned this because there "is" a way to configure default route in the routing table without configuring a internet connection on Spark, but I reckon that won't be officially supported in terms of topology and inspection. (Configuring Spark LAN interface as external interface).&lt;BR /&gt;You might want to consult with TAC about this if this is what you're trying to achieve.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2025 04:21:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Quantum-Spark-separate-network-allocation/m-p/265072#M13502</guid>
      <dc:creator>Tom_Hinoue</dc:creator>
      <dc:date>2025-12-11T04:21:20Z</dc:date>
    </item>
  </channel>
</rss>

