<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Site-to-Site VPN Fail(Checkpoint 1500 series and Fortigate) in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108760#M4747</link>
    <description>&lt;P&gt;Almost certainly a Phase 2 failure involving the Proxy-ID/subnets negotiation.&amp;nbsp;&lt;A id="link_13" class="page-link lia-link-navigation lia-custom-event" href="https://community.checkpoint.com/t5/General-Topics/VPN-Check-Point-and-Fortigate/m-p/76540?search-action-id=21335951418&amp;amp;search-result-uid=76540" target="_blank"&gt;&lt;SPAN class="lia-search-match-lithium"&gt;VPN&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Check Point and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="lia-search-match-lithium"&gt;Fortigate&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Have the Fortinet side initiate the interesting traffic to start the tunnel towards the Check Point, then post the Check Point VPN logs that appear.&amp;nbsp; If the Check Point is trying to initiate the tunnel the resulting logs from that will not be helpful.&lt;/P&gt;</description>
    <pubDate>Mon, 25 Jan 2021 14:06:44 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2021-01-25T14:06:44Z</dc:date>
    <item>
      <title>Site-to-Site VPN Fail(Checkpoint 1500 series and Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108735#M4745</link>
      <description>&lt;P&gt;Hello everyone.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am tring to connect site-to-site VPN with Checkpoint 1500 series and fortigate.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It seems to be established VPN tunnel and be&amp;nbsp;connected to the opposite fortigate.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But it is impossible to reach ping each other lan .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no error message on security log of checkpoint.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The tunnel of the fortigate is up too.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How can I connect to the opposite fortigate?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 09:05:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108735#M4745</guid>
      <dc:creator>Tsukasa</dc:creator>
      <dc:date>2021-01-25T09:05:20Z</dc:date>
    </item>
    <item>
      <title>Re: Site-to-Site VPN Fail(Checkpoint 1500 series and Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108741#M4746</link>
      <description>&lt;P&gt;Did you read&lt;A class="cp_link sc_ellipsis" style="max-width: 840px;" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108600&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;&amp;nbsp;&amp;nbsp;sk108600: &lt;STRONG&gt;VPN&lt;/STRONG&gt; Site-to-Site with &lt;STRONG&gt;3rd&lt;/STRONG&gt; &lt;STRONG&gt;party ?&lt;/STRONG&gt;&lt;/A&gt;&amp;nbsp;What about Forti logs ? VPN/IKE debug shows that all VPN establishing phases are successfull? How about traffic capture ?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 10:07:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108741#M4746</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-01-25T10:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: Site-to-Site VPN Fail(Checkpoint 1500 series and Fortigate)</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108760#M4747</link>
      <description>&lt;P&gt;Almost certainly a Phase 2 failure involving the Proxy-ID/subnets negotiation.&amp;nbsp;&lt;A id="link_13" class="page-link lia-link-navigation lia-custom-event" href="https://community.checkpoint.com/t5/General-Topics/VPN-Check-Point-and-Fortigate/m-p/76540?search-action-id=21335951418&amp;amp;search-result-uid=76540" target="_blank"&gt;&lt;SPAN class="lia-search-match-lithium"&gt;VPN&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Check Point and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="lia-search-match-lithium"&gt;Fortigate&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Have the Fortinet side initiate the interesting traffic to start the tunnel towards the Check Point, then post the Check Point VPN logs that appear.&amp;nbsp; If the Check Point is trying to initiate the tunnel the resulting logs from that will not be helpful.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jan 2021 14:06:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Site-to-Site-VPN-Fail-Checkpoint-1500-series-and-Fortigate/m-p/108760#M4747</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-01-25T14:06:44Z</dc:date>
    </item>
  </channel>
</rss>

