Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
lphilp01
Participant

Moving to use VLANs

 

Checkpoint R82 Jumbo Hotfix Take 122 - 3600 appliance - stand alone not clustered.

I want to reconfigure my LAN to use VLANs.

Currently there is an interface; eth5 with an IP address assigned, 192.168.200.254/24. 

On the gateway, I remove the IP. I create the first VLAN and give a number; 200 and add the Original IP of the interface, save config.  Pop into Smart Console pull down the interfaces with topology and apply policy. All successful.

VLAN 1 and VLAN 200 exist on the internal switch and the connected port is a trunk with access to both VLANs.

Interface eth5,200 now exists with 192.168.200.254/24 assigned.

Routing shows a route, and the route is now linked to the VLAN interface.  

Policy allows traffic to and from the 192.168.200/24 subnet.

Yet I can't connect to anything aside from the FW Gateway in that subnet!

 

Can anyone tell me where I am going wrong please?

0 Kudos
2 Replies
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

Are you seeing allow/accept logs, possibly an ARP cache/timeout or other L2 issue?

What type of switches is the VLAN tagged or untagged?

CCSM R77/R80/ELITE
0 Kudos
lphilp01
Participant

HP Instant On 1930 switches

VLAN 1 untagged default to all ports

VLAN 200 tagged all ports

Switch port to FW LAN interface is set as trunk

Nothing seen in logs for my tests at all - I tried ping and https connections to a couple of systems

 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events