- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello Mates!
Could you please help me with a question?
I need to configure a Site-to-Site VPN, but for the remote peer (my partner site), a single IP address must arrive and not my entire subnet or subnet group.
For example: I have an 172.16.1.0/24 subnet, but my partner requires that this subnet arrives through the 192.168.1.10 IP.
May I have to put this single IP on VPN domain community by my side? How can I configure that on Check Point solution? And how can I confirm that is working fine?
Thank you!
Your encryption domain must include the “traffic to encrypt” which would be your local subnet.
You configure a manual NAT rule to translate your subnet when communicating to their encryption domain to the relevant IP (hide or source NAT depending on requirement).
Also, to add to what @PhoneBoy said, make sure option for NAT inside VPN community (I believe last tab on the left at the bottom) is not checked where it says "Disable NAT inside VPN community" and then simply create manual NAT rule to reflect changes you want.
Andy
Your encryption domain must include the “traffic to encrypt” which would be your local subnet.
You configure a manual NAT rule to translate your subnet when communicating to their encryption domain to the relevant IP (hide or source NAT depending on requirement).
Also, to add to what @PhoneBoy said, make sure option for NAT inside VPN community (I believe last tab on the left at the bottom) is not checked where it says "Disable NAT inside VPN community" and then simply create manual NAT rule to reflect changes you want.
Andy
That's an important option that I forget exists...and yet can still recall setting up VPNs in Traditional Mode 🙂
No matter what, you are ALWAYS going to be CP guru 🙌
Glad it helped you.
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 20 | |
| 19 | |
| 19 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY