Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Namnh
Explorer

the new subnets are unable to communicate through the existing VPN tunnel

We have an existing Site-to-Site VPN tunnel between our Check Point firewall and a remote peer. Previously configured subnets are working correctly through the tunnel. However, after adding a new local subnet (e.g., 10.100.241.0/24) and a corresponding new peer subnet (e.g., 10.0.229.0/24), the new subnets are unable to communicate through the existing VPN tunnel.

0 Kudos
3 Replies
_Val_
Admin
Admin

Did you reinstall policy after those modifications?

0 Kudos
Martijn
Advisor
Advisor

Hi,

When adding new networks to a VPN setup, you need to add them on many locations in the policy.

- Encryption Domain
- Rule base
- Maybe Anti-spoofing

Is this all done? Has the remote peer also the updated configuration?

What doe you see in the logs?

Regards,
Martijn

0 Kudos
the_rock
Legend
Legend

Make sure to add those subnets to vpn domain and install policy, test.

Andy

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events