Hi experts,
Env:
CP3950 clusterXL R82.10 jumbo take 22
VM management server R82 jumbo take 44
I tested CP3950, and L2TP users cannot access internal resource when VPN connection established.
I migrated all visible configuration from the actual environment, including database of management server, to two of CP3950, and VM management server.
The original product environment provides wide range of availability with L2TP users, so I did not expect it failed on CP3950.
All visible configuration such as GAiA configurations, and management server database are same as I double-checked, so I thought I might have missed some kernel parameters.
I noticed log says an unfamiliar IP address (10.127.45.X) for the connection of L2TP user while xxx.xxx.252.x/24 is expected.(IP Pool NAT)
Therefore, I hit google, and found seemingly related sk (sk172805).
https://support.checkpoint.com/results/sk/sk172805
I am not certain if this is relevant or not...
Any comments are more than welcome, but since the appliances are not within my reach log retrieving takes time.
Thanks in advance.
Saitoh
sliver bullet: casting repero or tossing it into the harbor