- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi all,
Below is the Cisco router Configuration ,I would like replace the Cisco router with my Checkpoint device.
Could you please help me with suggestions
interface GigabitEthernet0/0 description Link to Internet + TWAN ip address 172.17.129.246 255.255.255.252 no ip redirects no ip proxy-arp ip wccp web-cache redirect in ip wccp web-cache group-listen ip flow ingress ip nat outside ip virtual-reassembly in load-interval 30 duplex auto speed auto no cdp enable service-policy input url-block-policy service-policy output WEB-BLOCK ! interface GigabitEthernet0/1 description ip address 172.27.156.1 255.255.252.0 no ip redirects no ip proxy-arp ip nat inside ip virtual-reassembly in duplex auto speed auto no cdp enable ! interface GigabitEthernet0/1.2 description LAN_NETWORK TO GEWOG CENTER encapsulation dot1Q 2 ip address 172.26.159.1 255.255.252.0 no ip redirects no ip proxy-arp ip nat inside ip virtual-reassembly in no cdp enable !
What exact Check Point device do you have?
I use 4000 series
Then login to the GAiA WebUI on configure the interfaces as extracted from your Cisco config.
That's what I do when I migrate a Cisco device to Check Point:-)
1) Creat a Cisco config file. For example cisco.txt.
Cisco> show running config
2) Upload this file to your new Check Point gateway. Now found all IP addresses in cisco config and create a IP list.
Check Point GW# more cisco.txt | grep "ip address" > iplist.txt
3) After that you can customize the file via vi. Now edit the iplist.txt and replace the cisco syntax with the check point GAIA syntax.
For example Cisco syntax:
ip address 172.17.129.246 255.255.255.252
to Check Point syntax.
Now set the interface (red) for example eth0.1 and add the interface settings (green) for all interfaces:
set interface eth0.1 ipv4-address 172.17.129.246 mask 255.255.255.252
set interface eth0.1 link-speed 1000M/full
set interface eth0.1 state on
set interface eth0.1 auto-negotiation on
set interface eth0.1 mtu 1500
4) Now load the new iplist.txt file in GAIA via CLISH and save the new config:
Check Point GW> load configuration iplist.txt
Check Point GW> save config
PS:
- You can also take over the routes by adjusting the syntax.
- The NAT settings are added as NAT rules in the SmartConsole.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 25 | |
| 20 | |
| 8 | |
| 7 | |
| 6 | |
| 6 | |
| 5 | |
| 5 | |
| 4 | |
| 4 |
Thu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasFri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY