Hello Team,
If someone can help me understanding the Certificate significance in case we are not using it for S2S VPN:--
Issue: S2S VPNs between Checkpoint gateways weren't working; identified expired certificates. Renewing them resolved the problem. We renewed the certificate on both the gateways. Its a Mesh Topology and in Hub and Spoke deployment. Only Checkpoint gateways are affected. Other Spokes are working fine in the community which are not the checkpoint gateways.
Queries:
- In Pre-shared key VPN deployment (Meshed/Star topology), is a certificate necessary? If yes why ? what is the significance of this certificate ?
- Are the renewed certificates signed by the CMA ?
- The current certificate is renewed for a year. Is there a provision for extending the renewal period or adjusting the expiration date?
- Can you share the SNMP traps so that we can actively monitor it.