Hi
We have a site-to-site checkpoint VPN
We are using VMWARE HCX to migrate some workloads through that tunnel. HCX uses NAT-T to build a VPN tunnel using whatever transport is available, which in this case happens to be a checkpoint VPN tunnel, so we are tunneling NAT-T through a checkpoint VPN tunnel.
This has been working for months.
On Friday it broke after we installed the CVE patch and rebooted all the gateways.
Here is the log message "Failure preparing tunnel creation, internal error"
We opened a ticket with TAC on Friday and spoke to an engineer who said they had seen this once before, but it was fixed by an unrelated hotfix.
On a call today with a different engineer, they said "NAT-T through a Checkpoint VPN tunnel is not supported"
I don't believe this to be true.
Is anybody else running HCX over a checkpoint VPN (or any other NAT-T traffic)?
Anybody else seen this error and know the fix?
Thanks