- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi all,
I have two locally managed DAIP gateways (620 & 730). I need to create a site-to-site VPN between them:
620 -----> NAT device ------> Internet ------> NAT device -----> 730
730 is configured that only remote site opens the connection. 620 is using the hostname to open the connection. Authentication is based on certificates and IKEv1 is used. Using the hostname to connect, NAT-T is not used and so the tunnel is not established. If I temporary change the connection from hostname to IP between static NAT, then the tunnel comes up because NAT-T is used.
My question: how can I force the gateway to use NAT-T when connecting to a hostname instead of an IP?
Many thanks,
Stephan
This is explained in sk162472: How to force NAT-T on Gaia Embedded devices
I will give it a try later on, sounds promising. Thanks!
I gave it a try, but there is a known limitation that seems to match exactly my environment:
ID: 01620625
Does anybody know if there is a workaround or fix available, so would it make sense to open a SR?
Yes, I opened a RFE. Let‘s see what happens. Thanks.
I think that sk105380 and sk162472 contradict each h other - did you try sk162472 yet ?
Yes, sure I tried but it does not work. The contradiction is quite obvious 🙂
RFE is nice, but did you already consult TAC ?
Yes, they confirmed that the limitations is still valid and I need to open a RFE.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY