- Products
- Learn
- Local User Groups
- Partners
-
More
Celebrate the New Year
With CheckMates!
Value of Security
Vendor Self-Awareness
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
Mobile Security
Buyer's Guide Out Now
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Hi All,
I have set up a route based VPN between checkpoint R8.10 and fortigate firewall. both tunnel are up. but traffic is not passing through the rule that i have created for VPN.
Please help to resolve this issue.
With Regards,
Sushil Kumar
Please provide more information for us to look at. topology diagram, sanitized rules and VTI configuration data, as well as the logs of the traffic that should be routed via VTIs, but is not.
This being said, do you have actual routes for the remote side on Check Point gateway?
Hi Sushil,
Assuming you have routes configured in Gaia and a blank group set as the encryption domain.
With route based VPNs, you will either need to enable global setting "VPN Directional match" and then configure rules that are set in this way - https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm?topic=documents/R77..., OR do NOT put the VPN community in the VPN column of the rule.
From experience, one of those will resolve it.
thanks
Peter
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY