- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hey guys,
we are currently doing some PoC-stuff and started to have some issues regarding dhcp-relay.
Setup:
We configured everything described in this article. And its working!
If SMB is DHCP-Server for LAN1-Switch, all devices connected to LAN1-Switch can connect to central network.
We observe that logs of tunnel_test are either between
Cluster-GW -Public-IP <-> DAIP from DSL Router
or
WAN-Port-Address-192.168.x.x <-> Cluster-GW -Public-IP
If we configure dhcp-relay for LAN1-Switch the SMB uses its WAN-Port-Address-192.168.x.x. But we expect to use its LAN1-Switch address 10.x.x.1.
Also if we connect via ssh or serial console to 10.x.x.1 and ping devices on central site, it uses 192.168.x.x instead of 10.x.x.1
Did we miss something in the configuration or is this working as designed? Do you have some clue to solve this?
Regards,
Morris
I would assume we'd be using the IP of the interface nearest to the destination, which in this case would be the 192.168.x.x address.
As such, I expect this is working as designed.
Under device, Advanced settings there is an option "DHCP Relay - Use internal IP addresses as source". Set this to true and this will fix the issue...
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY