Create a Post
Showing results for 
Search instead for 
Did you mean: 

C2S - strongSwan (Roadwarrior) and R80.30 - working


Release strongSwan Version
Fedora 31 5.7.2/K5.3.11-300.fc31      
Mint 18.3 5.3.5/K4.10.0-38
openSUSE 15.1 5.6.0/K4.12.14-lp151.28.32
openSUSE Tumbleweed 5.6.4


Before you begin, please make sure you have a working Remote Access environment using one of the Check Point Endpoint Clients (Windows / MacOS). 

This is a guide to connect a Linux VPN Client based on strongSwan to your Check Point environment, using certificates from the InternalCA.

- You might adjust the MTU settings manually because this is not done by strongSwan
- right=%defaultroute does not work for me, I need to enter my Client IP Address
- if possible use Libreswan, it works better and easier to configure

Gateway / SmartCenter

The first step is to export the Check Point VPN Gateway Certificate from the SmartCenter. Also create a local User in SmartDashboard and export the User p12 Certificate.

R80.30 Jumbo Take 76 - Standalone 

Firewall VPN

TO READ THE FULL POST it's simple and free


Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events