- Products
- Learn
- Local User Groups
- Partners
- More
The State of Ransomware Q1 2026
Key Trends and Their Impact
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
In a VLAN trunk? Product does not currently allow this.
See related discussion here:
Redundant connection to switch with 802.1q tag based VLAN on 730
Thank you for your answer. I couldn't believe there isn't any workaround. I missed that discussion because there was something about bonding, lacp and rendundand connections etc and I was looking simple access switch feature.
Lets assume that on small remote office we have 4 users with 4 IP Phones. Normally on switch you configure every access port as unntaged for computers and tagged for Phones or on site where we have 2 Acess Points that have 2 ssid mapped to VLANs. In that cases we have to put switch and this is not cost effective. It is really strange limitation.
Normally on switch you configure every access port as unntaged for computers and tagged for Phones or on site where we have 2 Acess Points that have 2 ssid mapped to VLANs. In that cases we have to put switch and this is not cost effective. It is really strange limitation.
But a Checkpoint gateway is not a switch so it is an odd comparison. You can't have several Layer 3 interfaces in the same network (where would the packet be routed), it would be the same for any router for example.
Benjamin Carrier napisał(-a):
But a Checkpoint gateway is not a switch so it is an odd comparison.
For me it is not odd comparision, please take look in datasheet or in manual or any flayer where there is information about:
1430/1450 - LAN Switch 6x 10/100/1000Base-T RJ-45 ports
1470/1490 - LAN Switch 16x 10/100/1000Base-T RJ-45 ports (total)
Tell me what for are 16 ports on device 1470, adding PoE on few ports, adding spannig tree configuration if we have to think about 1400 series as ONLY gateway layer 3 not as switch also??
It won't be the same for any SMB router, check any model form TP-Link to Cisco You would be suprise.
I missed that your question was for SMB appliances. I never used these but it looks like it is indeed a weird mix of router/firewall and switch.
I am almost sure 1470/1490 SMBs does not have real LAN switch inside. It is like one hardware chip that is handling all LAN ports and another one for WAN/DMZ. Switching is mostly software based. I would really like to see test on 1470 switching capacity by the way Not that this is a limitation to do what you are asking for but just a thought on what device it is actually.
I am myself using VLANs on our 1470s but that is because I am limited on number of ports on core switches. If not, I would drop the VLANs because that is causing a lot of slow-to-handle software interrupts on SMB with limited CPU support.
Port aggregation+trunking?
On 1400 ? See sk105380 - Check Point R77.20 for 600 / 700 /1100 / 1200R / 1400 Appliance Known Limitations
| Blade / Feature | Locally managed |
Centrally managed |
Comments |
| Bond / Link aggregated interface | No | No | Refer to sk114217 |
I was not talking about Bond / Link aggregated interface.
Once again if you want to have two ports configured in that same way for example :
port 1 and 2:
vlan 1 untagged
vlan 2 tagged
You can't do that!
Administrator wanted to configure all LAN ports as follow: untagged Users vlan and tagged Voice vlan just not to worry about that phone should be only on that ports and computer on other. It standard set up on any switch or branch router but You cant do that on 1400 devices.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 3 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Tue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceWed 13 May 2026 @ 11:00 AM (EDT)
TechTalk: The State of Ransomware Q1 2026: Key Trends and Their ImpactThu 14 May 2026 @ 07:00 PM (EEST)
Under the Hood: Presentando Check Point Cloud Firewall como ServicioTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY