Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
eshai
Explorer

smb 730 vpn tunnel has disconnected

hi:

im connecting to my appliance (office mode) after 10 sec i get  vpn tunnel has disconnected:site is not responding

I have seen this article https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut... 

But I could not understand so much and i don't have SmartDashboard 

0 Kudos
8 Replies
G_W_Albrecht
Legend
Legend

Look into SMB Logs and RA VPN client logs !

CCSE CCTE SMB Specialist
eshai
Explorer

when connected vpn log say remote access client IP address and port were changed Old IP xxx.xx.xx.xx old port 59443 new IP xxx.xx.xx.xx new port 54280 

after that at the same time vpn log block

0 Kudos
G_W_Albrecht
Legend
Legend

Which client are you using - CP does not use port 59443 or port 54280 at all.

CCSE CCTE SMB Specialist
eshai
Explorer

thank you 

first my router was connected as a dhcp client to my isp router that have is own rules so i replaced it another route and put it on 

bridge mode. that solve my other Q' post and i can connect 2 isp users on one line 🙂

for the vpn i'm using ddns from no-ip .add user with password i have established vpn connection to my site 

now i'm connecting with my username and password but i don't see any user connected and no tunnel 

anything to radius? or site to site?  

 

0 Kudos
the_rock
Champion
Champion

Just my personal opinion, you would be better off to contact TAC, so they can review the config, just to make sure its correct. Its a bit difficult for us here to tell you why this is failing, unless we have clearer picture of the config for RA vpn. Did you follow below document?

https://dl3.checkpoint.com/paid/93/93e71e2014834586d1d7991dc3f01bfd/CP_R77.20.15_730_750_ApplianceLo...

page 11

0 Kudos
the_rock
Champion
Champion

As Gunther said, look for local logs on the appliance...thats your best bet. Also, if I were you, I would try few other clients, see if behaviour is the same, if it is, then its most likely issue on your firewall.

Andy

0 Kudos
G_W_Albrecht
Legend
Legend

@PhoneBoy  - can you relocate the post to SMB ?

CCSE CCTE SMB Specialist
0 Kudos
_Val_
Admin
Admin

done

0 Kudos