VPn between cisco check point

broken image

Now let's configure Check Point firewall.Ĭheck Point VPN feature have to be licensed and enabled!įirst we have to add BR4-FW-01 and it's internal network on SMS (Security Management Server) as objects. In the next posts I'll show how to deploy a topology running Check Point firewalls (gateways) in a clustered fashion (Cluster_XL and Load Sharing).

broken image

This scenario, assumes that you already have a Check Point environment running. If you read my previous post, you should be familiar with configuration on Cisco ASA by now. We'll build the VPN between Branch-04 and HQ. The CheckPoint was showing this error: Main Mode Failed to match proposal: Transform: AES-256, SHA1, Group 2 (1024 bit) Reason: Wrong value for: Authentication.

broken image
broken image

The HQ has a cluster of Check Point firewalls, the Branch-02 has another cluster of Check Point firewalls, Branch-03 and Branch-04 both have Cisco ASA firewall.

broken image