Home
Getting Started
Workshop Logistics
GWLBe Options
Initial Setup
Test Host Login
Tips and tricks
Traffic Flow Demonstrations
Centralized E/W across Spokes
Centralized Egress
Distributed Subnet to Subnet
Distributed Ingress & Egress
Centralized Ingress (Inspection Second)
Centralized Ingress (Inspection First)
More
Check Point AWS GWLB SecureKnowledge(SK) article
Check Point GitHub Repo for AWS GWLB Architectures
Check Point/AWS GWLB Architecture Diagram
Clear History
Privacy
|
Site Terms
|
CC BY-SA 4.0
Check Point CloudGuard Network Security - Integration with AWS Gateway Load Balancer
>
Traffic Flow Demonstrations
> Centralized E/W across Spokes
Centralized E/W across Spokes
Flow Description & Diagram
#
Hop description
1
DB host to SS host, 0/ –> TGW
2
TGW Attachment RT 0/ –> Sec VPC
3
Sec VPC TGW Attach RT 0/ –> GWLBe
4
GWLBe magic: GWLB (GENEVE) –> CGNS and return back to GWLBe
5
GWLBe RT Spoke –> TGW
6
TGW Propagated RT –> SS Spoke/Host
Testing Procedure
SSH to any of the EC2 hosts in Database or Shared Services VPC
Ping one of the other EC2 hosts with its private IP
Search the Check Point logs for the internal IPs of the EC2 Host you’re sending the ping from and to