CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA or CCSE One-Week Certification Training Courses with CPUG in Beautiful San Francisco!
    R70 CCSA Courses Starting (2010) 6/7, 7/12, 8/9, 10/11, 11/8, 12/6.  R70 CCSE Courses Starting (2010) 8/16.
2. CPUG CON 2010 EUROPE, the User Conference in Switzerland, September 20th-22nd, 2010!
3. Join Our CPUG Groups On LinkedIn and Facebook.  See Our Channel on YouTube.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > VPN's (Virtual Private Networks)
Register Projects FAQ Members List Social Groups Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 2009-03-03
Junior Member
 
Join Date: 2009-03-02
Posts: 1
Rep Power: 0
n1koolkat has an average reputation (10+)
Default 3G Router and Checkpoint VPN

I am trying to set up a site which is unable to get a phone line access to our corporate network using a 3g router (A vigor 2910). The site has to come in via a Checkpoint NGX firewall and i am not really sure how to set this up. I have browsed this forum and found the VPN and Lan to Lan settings for the Vigor router and the checkpoint firewall however i have'nt been able to get it working (we already have 3 VPN sites however they have static ip addresses)

I know there are two main issues here, 1 the ip address assigned to the Vigor router by the 3G provider (Vodafone) is a private address (i can see the public ip address when i use whatismyip.com) and 2, the address changes every time the router is rebooted, however, i need to make sure this is not possible before i give up on the 3g solution. Has anyone any ideas? Someone suggested using the DNS address when configuring the firewall, however it appears vodafone use several DNS addresses so again, i'm not sure if that'll work. Any suggestion will be useful.

Thanks.
Reply With Quote
  #2 (permalink)  
Old 2009-03-03
Senior Member
 
Join Date: 2007-07-16
Posts: 1,925
Rep Power: 5
Thorpuse has an average reputation (10+)
Default Re: 3G Router and Checkpoint VPN

Get a VPN-1 Edge Device with 3G modem support. The cost you spend getting this will more than cover the time,effort and pain you'll go through trying to make that work.

Plus you'll get a proper FW and management solution for your remote site!
Reply With Quote
  #3 (permalink)  
Old 2009-03-03
Senior Member
 
Join Date: 2005-08-14
Location: Gig Harbor, WA, USA
Posts: 854
Rep Power: 6
PhoneBoy has an average reputation (10+)
Default Re: 3G Router and Checkpoint VPN

What I'm not sure will be solved by the VPN-1 Edge device with 3G modem support is the private IP problem (i.e. getting a Private IP allocated by the mobile operator). However, if the EDGE device functions like SecuRemote does (and my past experience suggests this is the case), then it should work ok.
Reply With Quote
  #4 (permalink)  
Old 2009-03-03
Senior Member
 
Join Date: 2008-07-31
Location: Netherlands, Europe
Posts: 708
Rep Power: 3
msjouw has an average reputation (10+)
Default Re: 3G Router and Checkpoint VPN

We have successfully used Edge boxes behind UMTS modems/routers. You will need to make sure you get a flat fee 3G card and configure Permanent tunnels (1 per gateway pair) when you want to be able to reach anything from the central location to the remote site.
__________________
Regards, Maarten.
P1 R65.4 IPSO SPLAT IOS
Reply With Quote
Reply

Tags
checkpoint, lan to lan, vigor. 3g, vpn

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 06:19.


Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.5.1