- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- VPN IPSEC between Checkpoint 730 and Sophos xg
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
VPN IPSEC between Checkpoint 730 and Sophos xg
Hi,
I need to create a VPN site-to-site with a remote XG Sophos.
However, I must limit access to my network; from the remote network they can only access two servers in my network, example 192.168.10.xxx and 192.168.10.yyy.
Can you suggest me a solution?
Thanks and best regards
Gaetano
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There is a good step-by-step guide found here: https://community.sophos.com/kb/en-us/133305
In step VPN Domain, select Manually defined. We have selected CP_LAN as the internal network behind the CP GW, CP_LAN then consists of 192.168.10.xxx and 192.168.10.yyy...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There is a good step-by-step guide found here: https://community.sophos.com/kb/en-us/133305
In step VPN Domain, select Manually defined. We have selected CP_LAN as the internal network behind the CP GW, CP_LAN then consists of 192.168.10.xxx and 192.168.10.yyy...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thank You for feedback.
Gaetano
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sorry, my answer was for a GAiA GW, so all the dashboard configuration can not be used ! Just try to follow it as is possible in Embedded GAiA WebGUI...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
No problem. I had already understood that I need to adapt the tutorial to the embedded Gaia WebGui
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Additionally, your XG encoding domain may need to have the SMB Advanced setting VPN Site to Site global settings - Join adjacent subnets in IKE Quick Mode set to false (sk98604).
I also think that many CheckMates would appreciate a short document of how you did succeed in configuration 😉
