- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
Watch HereWhen the Agents Attack
A Live Look at Agentic Exposure Validation
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Hi All,
Can anyone advise if Checkpoint R80.20 can support ISP redundancy with PBR ( PBR presently configured to connect 2 links for wifi users)
Currently ISP redundancy for the main traffic is not configured in the setup and to want to achieve it now? Can anyone advise?
Thanks,
Jijo
Hi
I have made some tests with PBR and ISP (HA) redundancy in R80.30.
PBR still works, meaning traffic is routed by policy rules, but NAT is not performed according "Hide behind gateway" outgoing interface.
NAT is using ISP redundancy primary interface and not real outgoing interface....
Regards
Thanks for your quick reply.
Understood the same now, if NAT not working then it would be an issue. So just to summarize, then this requirement is not feasible now, what I understand.
Hi Thanks for your reply. Just to make my question more clear, explaining the scenario here.
> Primary link at site , terminating via switches at one of the interface in checkpoint.Main traffic at the site is going via this link.
> Two other links configured via PBR for 2 different wireless connections at site ( due to a specific requirement)
> Noted the point that from R80.30, we could do some level of ISP redundancy in Checkpoint, but my question is in this scenario with total 3 links in total ( One main primary and other 2 PBR), can we configure a redundancy for the primary link for main traffic using the ISP redundancy feature in Checkpoint?
Thanks,
Jijo
Hi
I have made some tests with PBR and ISP (HA) redundancy in R80.30.
PBR still works, meaning traffic is routed by policy rules, but NAT is not performed according "Hide behind gateway" outgoing interface.
NAT is using ISP redundancy primary interface and not real outgoing interface....
Regards
Thanks for your quick reply.
Understood the same now, if NAT not working then it would be an issue. So just to summarize, then this requirement is not feasible now, what I understand.
Hi,
Please check if below steps resolve the issues
You can hide behind gateway or IP with ISP2 address.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 14 | |
| 10 | |
| 9 | |
| 7 | |
| 7 | |
| 5 | |
| 4 | |
| 3 | |
| 3 | |
| 3 |
Thu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealThu 09 Jul 2026 @ 10:00 AM (CEST)
Schutz souveräner Workloads: Check Point & die AWS European Sovereign CloudThu 09 Jul 2026 @ 11:00 AM (CEST)
The Cloud Architects Series: Check Point Edge Protection SD-WAN & SASETue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeTue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY