Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
SriNarasimha005
Collaborator
Jump to solution

IPSEC VPN Migration

Hi All

We are preparing to upgrade the current EOL Checkpoint firewalls to the latest hardware series, which has IPSEC VPN enabled. We will not be altering the public IP from our side, as this will be a direct replacement with the existing configuration.

Will the inclusion of the new Cluster in the VPN community be sufficient, or is it necessary to re-enter the PSK?

Furthermore, please inform me if there are any additional steps required to ensure the successful establishment of the VPN tunnel.

Thank you.

0 Kudos
1 Solution

Accepted Solutions
Alex-
Leader Leader
Leader

The PSK resides in the VPN community for external interoperable objects, so adding your new cluster in the community should be sufficient.

View solution in original post

2 Replies
Alex-
Leader Leader
Leader

The PSK resides in the VPN community for external interoperable objects, so adding your new cluster in the community should be sufficient.

SriNarasimha005
Collaborator

Hi @Alex- 

Furthermore, given that the VPN community is located within the CMA, duplicating the current policy package and associating it with the new firewalls, I believe it does not necessitate re-entering the PSK.

Is my understanding correct?

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events