List Info

Thread: Site to Site VPN R55 and R60 HFA03




Site to Site VPN R55 and R60 HFA03
user name
2006-10-23 19:16:48
We currently have a Site to Site VPN between three different
locations
running Check Point R55. 

 

I'm conducting a test for R60 by creating an Externally
Managed Check
Point Gateway for a Site to Site VPN (Mesh VPN Community),
the following
message appeared:

 

You have chosen the "main IP" method of IP
selection for VPN Link
Selection. However, this gateway's main IP is not a member
of Topology
table. Under this configuration Link select will not be
functional. 

 

Is anyone able to setup a site to site VPN successful
between R55 and
R60 using manual SHARED SECRET? 

 

Sam Nimjareansuk



 


This message contains confidential information and is
intended only for fw-1-mailinglistus.checkpoint.com. If you
are not the named addressee you should not disseminate,
distribute or copy this e-mail. Please notify the sender
immediately if you have received this e-mail by mistake and
please delete this e-mail from your system. Finally, the
recipient should check this email and any attachments for
the presence of viruses. Bond Beebe Advisors &
Accountants accepts no liability for any damage caused by
any virus transmitted by this email. 23/10/2006
Bond Beebe Advisors & Accountants, 4600 East-West
Highway, Suite# 900, Bethesda, MD, 20814-3423, US,
www.bbcpa.com


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERVamadeus.us.checkpoint.com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http:
//www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-ownerts.checkpoint.com
=================================================
Site to Site VPN R55 and R60 HFA03
user name
2006-10-23 20:57:49
The issue you have is not related with the fact that you
have R55 and R60 on
both ends, nor that you are using shared-secret.

First make sure the main IP address you have on the gateway
object
(properties > general tab) is in fact one of the IPs
configured on the
machine NICs and if it is and it is not the external one, or
at least the
one you are using to establish the VPN with the other
gateway, go to the the
Link seleccion options of the gateway object (properties
>Link Selection)
and change the "main IP" method for something
different.

For more info about Link Selection, check out the VPN pdf
document for NGX.

Regards

On 10/23/06, Sam Nimjareansuk <Sambbcpa.com> wrote:
>
> We currently have a Site to Site VPN between three
different locations
> running Check Point R55.
>
>
>
> I'm conducting a test for R60 by creating an Externally
Managed Check
> Point Gateway for a Site to Site VPN (Mesh VPN
Community), the following
> message appeared:
>
>
>
> You have chosen the "main IP" method of IP
selection for VPN Link
> Selection. However, this gateway's main IP is not a
member of Topology
> table. Under this configuration Link select will not be
functional.
>
>
>
> Is anyone able to setup a site to site VPN successful
between R55 and
> R60 using manual SHARED SECRET?
>
>
>
> Sam Nimjareansuk
>
>
>
>
>
>
> This message contains confidential information and is
intended only for
> fw-1-mailinglistus.checkpoint.com. If you are not the
named addressee you
> should not disseminate, distribute or copy this e-mail.
Please notify the
> sender immediately if you have received this e-mail by
mistake and please
> delete this e-mail from your system. Finally, the
recipient should check
> this email and any attachments for the presence of
viruses. Bond Beebe
> Advisors & Accountants accepts no liability for any
damage caused by any
> virus transmitted by this email. 23/10/2006
> Bond Beebe Advisors & Accountants, 4600 East-West
Highway, Suite# 900,
> Bethesda, MD, 20814-3423, US, www.bbcpa.com
>
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERVamadeus.us.checkpoint.com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http:
//www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-ownerts.checkpoint.com
> =================================================
>



-- 
Sergio Alvarez
(506)8301342

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERVamadeus.us.checkpoint.com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http:
//www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-ownerts.checkpoint.com
=================================================
[1-2]

about | contact  Other archives ( Real Estate discussion Medical topics )