Monday, December 21, 2020

Multi IPsec tunnels - Checkpoint

Hey all,

please take a look on the picture,

https://imgur.com/a/dnbCB6O

I want to create 2 separate IPSEC tunnels on FW-Branch.One tunnel with the source IP address of 160.10.10.1And second IPSEC tunnel with source IP address of 80.10.10.1 for internet access.Each tunnel with an encryption domain of 192.168.200.0/24.Currently, both tunnels are with source 160.10.10.1, and this is not what I want, because when eth1 is down I lose both of my tunnels,and I can not create another object because I can not assign the same encryption domain to different objects.

anyone have an idea how to solve this ?



No comments:

Post a Comment