Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
J_7584
Explorer

Remote gateways connecting to SMS over internet

I have a pair of Check Point 5800 appliances setup in a HA cluster and a SMS on the same network. All running R81.20. The SMS is being moved to a different location (physically relocating the hardware it is running on) and will be behind a new set of 6800 appliances in a data center. Once the SMS has been relocated and is up and running again, can I just reestablish SIC so that the now remote 5800s can communicate to the SMS on its new network over the internet? I assume I just need to setup NAT? How do the remote gateways know to go over the internet to connect to the SMS?

0 Kudos
2 Replies
emmap
Employee
Employee

Have a check at the admin guide for your version and see how you go. Make sure the IP defined on each of the 5800 gateway cluster members is its external IP.

https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuid...

Machine_Head
Collaborator
Collaborator

Yep,  you just need to setup NAT in the MGMT object, according to sk66381

And as Emma mentioned, make sure to change the cluster member IP to its external one in smartconsole.

 

After the policy is pushed from the new site thorugh the NAT IP the masters file will be over written with the new IP information

 

 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events