- Products
- Learn
- Local User Groups
- Partners
- More
Stop Babysitting Rules.
Go Agentic
Step Into the Future of
AI-Powered Cyber Security
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Hi all,
does intra vlan communication required any policy push in checkpoint ?
i means when two hosts are connected on same vlan but unable to communicate like telnet .
does any policy required here to allow communication. ?
thanks
I agree with Chris. Usually no policy would be needed for that, since it would not be crossing the firewall, BUT, just to be 100% sure, if traffic fails, you can examine the logs, just to make sure.
Also, lets take basic example, this will prove the point without any doubt. Say host IP is 10.10.10.10, you can initiate traffic and while doing so, run tcpdump -enni any host 10.10.10.10 from expert mode and if you dont see anything, then its not even hitting the firewall at all.
Andy
Hey @pavan_kalal
I attached a file I put together for some troubleshooting steps to take in relation to generic issues. Hope it will help you.
Cheers,
Andy
Typically no since this traffic would traverse between end devices at the switch level without firewall interaction.
Which gateway model do you have?
Its 3400 series anyways it was not issue of firewall.
cheers!
Good job! 👍✔
Thanks to everyone and checkmate, for such wonderful platform where one can post his/her qeury -doubts and get instant real time solution.
cheers.. !
Glad we can help mate 🙏
Hey @pavan_kalal
I attached a file I put together for some troubleshooting steps to take in relation to generic issues. Hope it will help you.
Cheers,
Andy
Appreciate, thanks lot..
cheers..!
No problem!
I agree with Chris. Usually no policy would be needed for that, since it would not be crossing the firewall, BUT, just to be 100% sure, if traffic fails, you can examine the logs, just to make sure.
Also, lets take basic example, this will prove the point without any doubt. Say host IP is 10.10.10.10, you can initiate traffic and while doing so, run tcpdump -enni any host 10.10.10.10 from expert mode and if you dont see anything, then its not even hitting the firewall at all.
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 34 | |
| 19 | |
| 10 | |
| 9 | |
| 7 | |
| 7 | |
| 7 | |
| 5 | |
| 4 | |
| 4 |
Tue 02 Jun 2026 @ 10:00 AM (AEST)
The Cloud Architect Series: Check Point WAF. The next generation of AI-Powered Protection - APACTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeTue 02 Jun 2026 @ 10:00 AM (AEST)
The Cloud Architect Series: Check Point WAF. The next generation of AI-Powered Protection - APACTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeThu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaThu 04 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E9: READY OR NOT: Securing the AI Enterprise 1/5 - AI Agent SecurityAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY