- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- VPN Site-to-Site with 3rd party.
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
VPN Site-to-Site with 3rd party.
I have a VPN Site-to-Site with 3rd party. The goal is to route all traffic from the remote site (3rd party VPN) via the main site (CP.)
Tunnel is up and I can see traffic from the remote site; Internet-bound traffic from the remote site is failing/denied with the following error:
Encryption Failure: according to the policy the packet should not have been decrypted.
Question: How can I route ALL internet traffic (or at least http. https) from remote site via main site (CP.)
is it something with the encryption domain ?
-ed
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Version/JHF?
What is the encryption domain at each end?
Pretty certain the only way to get this to work is to use a route-based VPN (implies VTIs) with an empty encryption domain.
