- Products
- Learn
- Local User Groups
- Partners
- More
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
Join our TechTalk: Malware 2021 to Present Day
Building a Preventative Cyber Program
Be a CloudMate!
Check out our cloud security exclusive space!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hi,
we will migrate security gateway from R77.30 to R80.20 in VSX.
We have some proxy arp entries on our gateway but in R80.20 there don't use "/opt/CPsuite-R77/fw1/CTX/CTX00001/conf/local.arp" file.
How we add the entries without the local.arp file? Now it is kernel based .
Hello HS,
ther's a simple way to add a proxy arp entry to a gateway without configuring via the GAiA portal/ clish or using local.arp
Add a host object with your external IP to your rulebase and configure automatic NAT (static). As NAT-IP use the same external IP, add the relevant gateway and do a policy install. With this host object the gateway adds an proxy arp entry to the the gateway with the correct MAC.
We use this with loadsharing bond and active/passive bond and VSX. It works too with vMAC.
Wolfgang
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY