<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Site-To-Site VPN with NAT on localy managed SMB device in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58731#M2283</link>
    <description>&lt;P&gt;Did you add the translated range (after NAT) to your local encryption domain?&lt;/P&gt;</description>
    <pubDate>Mon, 22 Jul 2019 16:30:12 GMT</pubDate>
    <dc:creator>Pedro_Espindola</dc:creator>
    <dc:date>2019-07-22T16:30:12Z</dc:date>
    <item>
      <title>Site-To-Site VPN with NAT on localy managed SMB device</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58598#M2270</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Im having issue with hide nat on localy managed 1200R. I need traffic to have hide NATed source and than enter the tunnel. What happens is that traffic is being NATed but then it just exits wan port without entering the tunnel.&lt;/P&gt;&lt;P&gt;Any ideas how to get this sorted?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jul 2019 16:34:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58598#M2270</guid>
      <dc:creator>Chonyi</dc:creator>
      <dc:date>2019-07-19T16:34:12Z</dc:date>
    </item>
    <item>
      <title>Re: Site-To-Site VPN with NAT on localy managed SMB device</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58620#M2271</link>
      <description>&lt;P&gt;Did you uncheck Disable NAT for this site?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-07-19 at 2.24.28 PM.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1927i14D17EA9392645FF/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-07-19 at 2.24.28 PM.png" alt="Screen Shot 2019-07-19 at 2.24.28 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jul 2019 21:27:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58620#M2271</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-07-19T21:27:25Z</dc:date>
    </item>
    <item>
      <title>Re: Site-To-Site VPN with NAT on localy managed SMB device</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58690#M2280</link>
      <description>I have tried both ways, everytime I see NATed packets on WAN port without encryption.&lt;BR /&gt;</description>
      <pubDate>Mon, 22 Jul 2019 08:10:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58690#M2280</guid>
      <dc:creator>Chonyi</dc:creator>
      <dc:date>2019-07-22T08:10:48Z</dc:date>
    </item>
    <item>
      <title>Re: Site-To-Site VPN with NAT on localy managed SMB device</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58707#M2282</link>
      <description>&lt;P&gt;I finnaly got this working.&lt;/P&gt;&lt;P&gt;There are few requirements that need to be fulfilled in order for source NAT to function inside a tunnel.&lt;/P&gt;&lt;P&gt;Both original and NAT source need to be part of local encryption domain.&lt;/P&gt;&lt;P&gt;Policy rule allowing original source network to communicate with remote destination network should be defined in outgoing and incoming rules.&lt;/P&gt;&lt;P&gt;In VPN settings&amp;gt;Advanced tab disable NAT for this site shouldn't be checked.&lt;/P&gt;&lt;P&gt;NAT rules should be defined appropriately.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jul 2019 12:15:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58707#M2282</guid>
      <dc:creator>Chonyi</dc:creator>
      <dc:date>2019-07-22T12:15:10Z</dc:date>
    </item>
    <item>
      <title>Re: Site-To-Site VPN with NAT on localy managed SMB device</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58731#M2283</link>
      <description>&lt;P&gt;Did you add the translated range (after NAT) to your local encryption domain?&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jul 2019 16:30:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-To-Site-VPN-with-NAT-on-localy-managed-SMB-device/m-p/58731#M2283</guid>
      <dc:creator>Pedro_Espindola</dc:creator>
      <dc:date>2019-07-22T16:30:12Z</dc:date>
    </item>
  </channel>
</rss>

