<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Network segmentation on Appliance 1590 in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176705#M8652</link>
    <description>&lt;P&gt;It'll accept the config for access + trunk but it's not supported.&lt;/P&gt;
&lt;P&gt;How are you adding 192.168.50.0 to LAN6, and what error are you getting?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 30 Mar 2023 08:51:00 GMT</pubDate>
    <dc:creator>emmap</dc:creator>
    <dc:date>2023-03-30T08:51:00Z</dc:date>
    <item>
      <title>Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176513#M8635</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;We have one network in office 192.168.50.0/24.&amp;nbsp;&lt;SPAN&gt;I have the task of segmenting and dividing the network into vlans. The problem is that now this network is running on a checkpoint as switch and I cannot creat sub interfaces.&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Снимок экрана 2023-03-16 113330.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20271i69909C136C94CEB8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Снимок экрана 2023-03-16 113330.png" alt="Снимок экрана 2023-03-16 113330.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I can't create a separate network devices all our devices route go to 192.168.50.1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The only solution for me is to remove Lan 1 switch and create the same network 192.168.50.0/24 as seperate network, and create sub interfaces under it.&amp;nbsp;Previously, I have already prepared the lan6 network as seperate network and created sub interfaces.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Снимок экрана 2023-03-16 113836.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20272i7609660B41FF4230/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Снимок экрана 2023-03-16 113836.png" alt="Снимок экрана 2023-03-16 113836.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;After deleting , I will lose access to the appliance via the web, go through the console cable and assign network 192.168.50.0/24 on Lan 6 and everything should work.&amp;nbsp;The last time I did this, nothing happened, when I assigned this network 50.0 appliance wrote an error.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="5"&gt;&lt;STRONG&gt;Are there any recommendations on how I can do this work correctly?&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 04:20:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176513#M8635</guid>
      <dc:creator>Itdepartment</dc:creator>
      <dc:date>2023-03-29T04:20:09Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176667#M8644</link>
      <description>&lt;P&gt;When you say VLANs, do you mean:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Trunking with another switch that also has VLANs&lt;/LI&gt;
&lt;LI&gt;Different LANs (with different IPs) connected to the same appliance?&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;For either of the cases, it starts with removing specific ports from the switch:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20306i16DB08E8F08CCD7F/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;You can then create a new switch and assign the ports to it.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Mar 2023 23:26:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176667#M8644</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-29T23:26:19Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176683#M8645</link>
      <description>&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Now our network is 192.168.50.0/24, and all traffic from the switch comes in 1 vlan.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;On the switch, I created several vlans 92,93,99 and from the side of the switch I configured the uplink to the checkpoint as a trunk and skipped 1,92,93,99 vlan.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;The trunk (1,92,93,99 vlan) will come to the 6th port of the checkpoint.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;I have already prepared and created everything.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Снимок экрана 2023-03-16 113836.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20309iCF150B900E8AD2FD/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Снимок экрана 2023-03-16 113836.png" alt="Снимок экрана 2023-03-16 113836.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;I will delete switch 1 (192.168.50.0) and change lan 6 to 192.168.50.0 and then I won’t have to change anything from the end devices side.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Last time I didn’t manage to do this after I deleted switch1 and tried to give the network 192.168.50.0 to lan 6, the checkpoint swore at an error with the IP (I don’t remember the details since I did it during working hours).&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN&gt;Do you have any advice on what I'm doing wrong?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 03:30:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176683#M8645</guid>
      <dc:creator>Itdepartment</dc:creator>
      <dc:date>2023-03-30T03:30:47Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176689#M8646</link>
      <description>&lt;P&gt;I believe it's not still not supported to have an IP address native on an interface and also use it as a trunk interface. So you if you want a native/access port on the device as well as the trunk port, you should do these on two separate interfaces.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 06:32:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176689#M8646</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2023-03-30T06:32:43Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176702#M8651</link>
      <description>&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;When I created and tested lan 6(192.168.24.1) along with its sub interfaces 6.92(192.168.23.1), 6.93(192.168.22.1) everything worked.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;And everything was one link, that is, only 1 cable came from my switch to lan 6, and at the same time, ports that were in 92 and 93 access vlanes received IP addresses 192.168.23.0 and 192.168.22.0.&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;The only problem is that I need to keep the network 192.168.50.0, all our servers and business services are set to 192.168.50.0 (now this is the LAN1 switch).&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;&lt;SPAN class=""&gt;But when I delete lan 1 switch and prescribe the network 192.168.50.0 on lan6 it gives an error and it does not accept 192.168.50.0.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Any ideas?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 08:29:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176702#M8651</guid>
      <dc:creator>Itdepartment</dc:creator>
      <dc:date>2023-03-30T08:29:26Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176705#M8652</link>
      <description>&lt;P&gt;It'll accept the config for access + trunk but it's not supported.&lt;/P&gt;
&lt;P&gt;How are you adding 192.168.50.0 to LAN6, and what error are you getting?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 08:51:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176705#M8652</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2023-03-30T08:51:00Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176708#M8653</link>
      <description>&lt;P&gt;&lt;SPAN&gt;After removing Switch LAN1 (192.168.50.0), I tried to assign this network to LAN 6, I don’t remember the error itself, something related to IP&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 09:19:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176708#M8653</guid>
      <dc:creator>Itdepartment</dc:creator>
      <dc:date>2023-03-30T09:19:35Z</dc:date>
    </item>
    <item>
      <title>Re: Network segmentation on Appliance 1590</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176804#M8665</link>
      <description>&lt;P&gt;Actual screenshots of error messages would help.&lt;BR /&gt;(Blur out any sensitive details)&lt;/P&gt;</description>
      <pubDate>Thu, 30 Mar 2023 18:49:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Network-segmentation-on-Appliance-1590/m-p/176804#M8665</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-30T18:49:36Z</dc:date>
    </item>
  </channel>
</rss>

