<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Forcing external 1430 appliance gateways to use internal IP/interface. in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178740#M8793</link>
    <description>&lt;P&gt;What interface is it, the LAN one?&lt;BR /&gt;I suspect what you're asking for is an RFE.&lt;/P&gt;</description>
    <pubDate>Fri, 21 Apr 2023 14:57:04 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-04-21T14:57:04Z</dc:date>
    <item>
      <title>Forcing external 1430 appliance gateways to use internal IP/interface.</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178648#M8775</link>
      <description>&lt;P&gt;Hi all,&lt;BR /&gt;&lt;BR /&gt;We have a lot of 1430 appliance gateways on remote sites, that are connected via S2S VPN to our central firewall.&lt;BR /&gt;They are running&amp;nbsp;R77.20.87 build 990173120&lt;BR /&gt;They are managed by our central R81.10 manager.&lt;/P&gt;&lt;P&gt;I want connections from the 1430 appliances to our central log server to be encrypted in the VPN tunnels.&lt;BR /&gt;I also want connections from the 1430 appliances to our central DNS/NTP/AD resources to be encrypted in the VPN tunnels.&lt;/P&gt;&lt;P&gt;In sk119415 I see that "fw ctl set int fw_enc_conns_use_internal 1" on the 1430 appliances will fix exactly that.&lt;BR /&gt;My problem is that I can't control which IP/interface is used.&lt;BR /&gt;Our network topology has one IP/interface on the 1430 appliances that are the same on all the remote locations.&lt;BR /&gt;The 1430 appliances chooses exactly that IP/interface.&amp;nbsp; &lt;span class="lia-unicode-emoji" title=":face_with_head_bandage:"&gt;🤕&lt;/span&gt;&lt;/P&gt;&lt;P&gt;How can I make the 1430 appliances choose another IP/interface ???&lt;/P&gt;&lt;P&gt;Best regards&amp;nbsp;&lt;BR /&gt;&amp;nbsp; Jan&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Apr 2023 20:09:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178648#M8775</guid>
      <dc:creator>Mudderkage</dc:creator>
      <dc:date>2023-04-20T20:09:41Z</dc:date>
    </item>
    <item>
      <title>Re: Forcing external 1430 appliance gateways to use internal IP/interface.</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178670#M8778</link>
      <description>&lt;P&gt;The only idea I have is to test whether with the use of Aliases you can influence this at all.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2023 01:50:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178670#M8778</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-04-21T01:50:54Z</dc:date>
    </item>
    <item>
      <title>Re: Forcing external 1430 appliance gateways to use internal IP/interface.</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178740#M8793</link>
      <description>&lt;P&gt;What interface is it, the LAN one?&lt;BR /&gt;I suspect what you're asking for is an RFE.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2023 14:57:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178740#M8793</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-04-21T14:57:04Z</dc:date>
    </item>
    <item>
      <title>Re: Forcing external 1430 appliance gateways to use internal IP/interface.</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178755#M8795</link>
      <description>&lt;P&gt;All our SMB boxes sends traffic from source LAN6&amp;nbsp;&lt;BR /&gt;RFE...&amp;nbsp; &amp;nbsp;well, I never&amp;nbsp;considered that, but it would be &lt;SPAN&gt;wonderful&lt;/SPAN&gt;.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;CP1430&amp;gt; show interfaces&lt;BR /&gt;name: LAN6&lt;BR /&gt;ipv4-address: 172.16.240.1&lt;BR /&gt;status: 1/full&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2023 17:49:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178755#M8795</guid>
      <dc:creator>Mudderkage</dc:creator>
      <dc:date>2023-04-21T17:49:57Z</dc:date>
    </item>
    <item>
      <title>Re: Forcing external 1430 appliance gateways to use internal IP/interface.</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178914#M8800</link>
      <description>&lt;P&gt;Asked TAC already ?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Apr 2023 11:07:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Forcing-external-1430-appliance-gateways-to-use-internal-IP/m-p/178914#M8800</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-04-24T11:07:39Z</dc:date>
    </item>
  </channel>
</rss>

