- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I have a site to site VPN connection. The source address is not translating going to the destination. There's no tunnel established. I have a TAC already working but also can't resolve the issue. We have done multiple debugs but can't find relevant information. Also from the "fw monitor" we can see the traffic but i's not translating. What else we need to check? Appreciate your help guys.
The VPN community is properly configured as per the client peer requirement. We have properly configured as well the vpn domain in the toplogy of both gateways.
The Rule is (Source: Original Srouce IP; Destination: Destination IP; Port: https, http)
For the Nat rule: The source shold translate to another Public IP going to the original destination.
Most obvious thing that comes to mind is the NAT setting in the community:

Hi Dameon,
Appreciated your response. I have checked that before already. Actually I have a TAC engaged already but still without success. We have tried to do a packet capture and still the source private ip is not translating to a public ip going to the destination. When we removed the vpn community on the rule, the source ip is translating.
What other things we need to check? Any idea?
Can you send me the TAC SR in question (perhaps in a PM)?
Hi Dameon,
Appreciated your help. We reconfigure the vpn community and encryption domain. Now we are able to see the tunnel and able to see encrypted packets on the log.
Glad you got it sorted out.
Thank You Dameon.. We figured out that the destination IP was included on our encrytion domain. That's why the source IP is not translating..
Hi, I have same issue. Tried to access the system that is on VPN but the source is not part of encryption domain. I nated the source to IP that is part of encryption domain. But it is not translating.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 22 | |
| 20 | |
| 16 | |
| 7 | |
| 6 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY