- Products
- Learn
- Local User Groups
- Partners
- More
Simplify Admin Operations with R82.20
Wed, 19 August @ 5pm CET/11am EDT
The industry's first AI Network Firewall
Securing AI traffic, everywhere
The State of Ransomware Q2 2026:
This Quarter's Trends, and Their Impact on Your Defenses
READY OR NOT: Securing the AI Enterprise
AI Research & Threat Landscape
CheckMates Go:
That's Serious Stuff!
Hi, i'm Vitaliy
IPSEC vpn is installed between 2 branches on virtual gateways c R80.40 and R81.10. each of the branches hosts software components that communicate with each other via an encrypted communication channel based on ipsec ESP (this is the developer's requirement). How do I allow the establishment of an encrypted channel inside an existing tunnel?
If you need screenshots of the settings, I will provide them.
Pretty sure what you’re asking for is an RFE.
Hi, PhoneBoy! Excuse my ignorance, but can't you explain what "RFE" means?
It means request for enhancement...something that is not implemented, but can be requested.
Though, not to be a debbie downer as they say ( : - ), but the way these work with ANY vendor out there is that they would most likely consider it ONLY if there are enough customers asking for it and there is a business need for it. Otherwise, they wont bother...but, you are certainly welcome to submit it, that costs no money : - )
I think if you give the screenshots, it may help.
Hi, the_rock. Screenshots of which settings should I provide? I will provide the general ones to begin with and if something is missing, then specify which ones to add.
K, sorry, maybe I misunderstood your request...what EXACTLY are they asking you to do?
Hi!
The task boils down to the following: it is necessary to ensure the passage of encrypted traffic over the ESP protocol inside an ipsec tunnel installed between two Check Point security gateways. I have published screenshots of one security gateway with the settings made. On the second one they are similar except for the ip address on the external interface
Hi, although it is a good idea to discuss the requirements here, the actual RFE process is different.
To submit an RFE, use the following URL:
https://www.checkpoint.com/rfe/rfe.htm
Please provide:
Correct, the link is down, I have alerted the relevant team.
Could you please elaborate on "a temporary limitation of Gaia functionality" statement?
We are faced with the problem of establishing an encrypted connection between two components of a software product inside an ipsec tunnel between Check Point security gateways.
I understand that "RFE" implies a revision of the OS functionality that does not work correctly. If I put it wrong, then correct me
What you ask for is easily accomplished - contact TAC to resolve it, the few details explained here give us no clues whatever...
Allow communication for all needed services for each component - then all will be routed thru VPN. What exactly is the error or issue you have ?
I agree with @G_W_Albrecht ...I cant seem to come up with any other way.
What exactly is the error or issue you have ?
Hello everyone!
Thank you for your time and advice. As it turned out, the problem was not in the settings of the security gateways, but in a software product that used an encrypted tunnel between its components. As for the Check Point security gateways themselves, they allow you to build another encrypted tunnel inside the Site-to-Site VPN without any problems.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 156 | |
| 104 | |
| 15 | |
| 12 | |
| 11 | |
| 10 | |
| 7 | |
| 6 | |
| 6 | |
| 5 |
Tue 18 Aug 2026 @ 01:00 PM (BRT)
IA: a nova linha de frente do endpoint - Todo ataque tem um antes, um durante e depois.Thu 20 Aug 2026 @ 08:30 AM (COT)
Medellin: Workspace Evolution: Hybrid Mesh Management - Visibilidad, Automatización e IAThu 20 Aug 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #11: SD-WAN Simplicity and Scalability in 2026Thu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeTue 18 Aug 2026 @ 01:00 PM (BRT)
IA: a nova linha de frente do endpoint - Todo ataque tem um antes, um durante e depois.Thu 20 Aug 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #11: SD-WAN Simplicity and Scalability in 2026Thu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeTue 25 Aug 2026 @ 05:00 PM (CEST)
The State of Ransomware Q2 2026: This Quarter's Trends, and Their Impact on Your DefensesThu 20 Aug 2026 @ 08:30 AM (COT)
Medellin: Workspace Evolution: Hybrid Mesh Management - Visibilidad, Automatización e IAThu 20 Aug 2026 @ 06:00 PM (COT)
Medellin: Workspace Intelligence: IA Generativa en Acción para Equipos de SeguridadAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY