<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DHCP-relay through VPN-tunnel on centrally managed  DAIP-SMB in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/149164#M6851</link>
    <description>&lt;P&gt;Under device, Advanced settings there is an option "DHCP Relay - Use internal IP addresses as source".&amp;nbsp; Set this to true and this will fix the issue...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 21 May 2022 11:54:26 GMT</pubDate>
    <dc:creator>Dan_Cannon</dc:creator>
    <dc:date>2022-05-21T11:54:26Z</dc:date>
    <item>
      <title>DHCP-relay through VPN-tunnel on centrally managed  DAIP-SMB</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/143872#M6587</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;&lt;P&gt;we are currently doing some PoC-stuff and started to have some issues regarding dhcp-relay.&lt;/P&gt;&lt;P&gt;Setup:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;centrally managed DAIP-SMB&lt;UL&gt;&lt;LI&gt;WAN-Port configured as Internet&lt;UL&gt;&lt;LI&gt;DHCP behind DSL-Router (DSL-Router is Gateway for SMB)&lt;/LI&gt;&lt;LI&gt;192.168.x.x&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;LAN1-Switch has 10.x.x.1/24&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;Management reachable through static-NAT on central Gateway&amp;nbsp;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;We configured everything described in this&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/HowTo-Set-Up-Certificate-Based-VPNs-with-Check-Point-Appliances/td-p/73299" target="_self"&gt;article&lt;/A&gt;. And its working!&lt;/P&gt;&lt;P&gt;If SMB is DHCP-Server for LAN1-Switch, all devices connected to LAN1-Switch can connect to central network.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We observe that logs of tunnel_test are either between&lt;BR /&gt;Cluster-GW -Public-IP &amp;lt;-&amp;gt; DAIP from DSL Router&lt;BR /&gt;or&lt;BR /&gt;WAN-Port-Address-192.168.x.x &amp;lt;-&amp;gt;&amp;nbsp;Cluster-GW -Public-IP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If we configure dhcp-relay for LAN1-Switch the SMB uses its&amp;nbsp;WAN-Port-Address-192.168.x.x. But we expect to use its LAN1-Switch address 10.x.x.1.&lt;/P&gt;&lt;P&gt;Also if we connect via ssh or serial console to 10.x.x.1 and ping devices on central site, it uses&amp;nbsp;192.168.x.x instead of&amp;nbsp;10.x.x.1&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did we miss something in the configuration or is this working as designed? Do you have some clue to solve this?&lt;/P&gt;&lt;P&gt;Regards,&lt;BR /&gt;Morris&lt;/P&gt;</description>
      <pubDate>Wed, 16 Mar 2022 09:35:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/143872#M6587</guid>
      <dc:creator>morris</dc:creator>
      <dc:date>2022-03-16T09:35:33Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP-relay through VPN-tunnel on centrally managed  DAIP-SMB</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/144186#M6605</link>
      <description>&lt;P&gt;I would assume we'd be using the IP of the interface nearest to the destination, which in this case would be the 192.168.x.x address.&lt;BR /&gt;As such, I expect this is working as designed.&lt;/P&gt;</description>
      <pubDate>Fri, 18 Mar 2022 16:54:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/144186#M6605</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-03-18T16:54:24Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP-relay through VPN-tunnel on centrally managed  DAIP-SMB</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/149164#M6851</link>
      <description>&lt;P&gt;Under device, Advanced settings there is an option "DHCP Relay - Use internal IP addresses as source".&amp;nbsp; Set this to true and this will fix the issue...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 21 May 2022 11:54:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/DHCP-relay-through-VPN-tunnel-on-centrally-managed-DAIP-SMB/m-p/149164#M6851</guid>
      <dc:creator>Dan_Cannon</dc:creator>
      <dc:date>2022-05-21T11:54:26Z</dc:date>
    </item>
  </channel>
</rss>

