- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
hello everyone;
i'm getting the SSL error failed to connect with capsul-vpn. i have a CP 3600 behind a mikrotik router, i've created a NAT rule to redirect port 10.10.11.2:443 (public ip) on the microtik to port 10.10.10.1:443 (ip LAN) on the CP. When the destination address (10.10.11.2) is specified in the microtik's NAT rule, some web pages are not displayed and the remote VPN passes normally. But when it is not specified, the web pages are displayed but the remote VPN no longer works. Do you have any ideas? I'm thinking of a conflict on the port, but how can I resolve it?
Thanks
What kind of NAT did you use?
Akos
static NAT
Static NAT
Can you select 0 for any protocol or no?
You need to configure Link Selection in this case (in the Gateway object) to the external IP on the Mikrotik router.
Sorry, I don't understand.
the solution doesn't work. is it possible to change port 443 to another alternative port on checkpoint and how do I do it? thank you.
Change port for what?
Andy
What is the exact behavior?
The way to change the port is by changing the Visitor Mode port, which can only be done if Mobile Access Blade is not used.
This is done in the relevant gateway object under IPsec VPN > Remote Access.
Site must be added to the client with the port number (e.g. 10.10.11.2:8443)
ok merci à tous pour vos éclairages. le problème est résolu après avoir indiqué dans la règle NAT sur le routeur Microtik, l'interface sur laquelle arrive la connexion Wan.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY