- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hello people,
anyone need to run this sk
in environment the cluster and the IP was not directly linked to the VIP interface, a range ip, I have some NAT on this IP on high ports and works, but the request the remote access on port 80/443 I only see it coming, I don't see the cluster responding.
exemplo, my internet range is 192.168.0.0/24
member01.: 192.168.0.201
member02.: 192.168.0.202
vip: 192.168.0.254
IP I tried to atributed to link selection as per sk: 192.168.0.100 (static NAT work when I use)
You'll probably need a proxy arp if you set the Link Selection to an IP address that isn't associated with the gateway or an automatic NAT rule.
Where precisely are you observing the gateway "not responding?"
Hello @PhoneBoy ,
yes, I had a proxy arp, this IP with static NAT work very well, but when I tried to follow the SK to have one IP only to Remote Access that doesn't the VIP, doesn't work
Hello,
Did you check if there is any drop in this communication?
As this IP is not associated with the Firewall I think it will not match the implied rule, so maybe you need to create a rule to accept this traffic.
One more thing the you can check is recreate the site and see if it connects for the first time and fail in the second time. If so you will need some adjusts to fix it.
Kind regards,
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY