Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
MCVas
Contributor

VPN Overlaped

Hello friends

Has anyone ever done a site-to-site VPN with overlapping networks

GW-A
Public IP: 1.1.1.1
encryption domain:
192.168.2.0/24
192.168.3.0/24


GW-B
Public IP:1.1.1.2

Encription domain:
192.168.3.0/25

or some method to do it in CHeck Point, it is worth mentioning that the two GW have SO Gaia r80.40 and managed by a single Management

I really appreciate your help checkpoint teachers.

0 Kudos
6 Replies
firewall1-gx
Contributor

Hi Robl,

Overlap is bad when we talk about vpn., it's like ip or networks duplicated in your local network.

My consideration is perform NAT to change network or ask your vpn partner to change network him.

Warm Regards,

Alisson Lima 

_Val_
Admin
Admin

You need to NAT the overlapping part on one of the sites for this to work

MCVas
Contributor

Hi _Val_, Any SK to follow the settings? Thank you

0 Kudos
_Val_
Admin
Admin

Not as I am aware of

0 Kudos
G_W_Albrecht
Champion
Champion

Better change one network ! Without NAT this could run much smoother 😎!

0 Kudos
MCVas
Contributor

 I found this  sk170812   but it does not come with details of how to do it, the VTI VPN I already have it working but without overlap 

0 Kudos