- CheckMates
- :
- Products
- :
- CloudMates Products
- :
- Cloud Network Security
- :
- Discussion
- :
- Re: IPSEC tunnel is up but traffic is doesn't pass...
Options
			
				
					
	
			
		
	- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
				
					Turn on suggestions					
					
	
				
			
		
	
	
	
	
	
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
		Showing results for 
		
	
	
	
	
	
	
	
Are you a member of CheckMates?
×
          Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
      
    - Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
			
				
					
						
							IPSEC tunnel is up but traffic is doesn't passing through over VPN
						
					
					
				
			
		
	
		
	
	
	
	
	
	
	
	
			
					
				
		
	
-We have configured IPSEC tunnel with Single IP address both side encryption domain and ACLs are added between them.
-The tunnel is up but unable to ssh (policy already placed).
		2 Replies
	
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We need way more info in order to help you properly here. For example:
-what do logs show?
-what about captures?
-is traffic going through the right interface?
-any natting through the VPN tunnel?
-what do ike.elg and vpnd.elg files show?
You can also try do basic debugs:
vpn debug trunc (will "reset" vpn debug files)
vpn debug ikeon
-generate some traffic
vpn debug ikeoff
Look for ike.elg and vpnd.elg in $FWDIR/log dir on the firewalls
Hope that helps.
Kind regards,
Andy
	Best,
Andy
			
			
			
			
			
			
			
		Andy
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Which non-ssh traffic passes thru VPN tunnel ? Are both peers CP GWs and which version ?
	CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
			
			
			
			
			
			
			
		 
					
				
				
			
		


 
		
		
		
		
		
	
			 
					
				 
		
			 
					
				