> Source: [sk102177](https://support.checkpoint.com/results/sk/sk102177)

# sk102177 - IP addresses that belong to VSX Internal Communication Network appear in routing tables and are published by dynamic routing protocols

| Property | Value |
|----------|-------|
| Solution ID | sk102177 |
| Date Created | 2014-08-25 |
| Last Modified | 2020-10-22 |
| Technical Level | General |
| Products | Security Gateway, Hardware |
| Versions | R82.10, R82, R81.20, Not Version-Specific |
| OS | Gaia |
| Platform | 15000, 3000, 5000 |

## Symptoms

- IP addresses that belong to VSX Internal Communication Network appear in routing tables and are published by dynamic routing protocols (e.g., OSPF).

*Example*:
Output of Clish command '`show ospf database`' shows IP addresses 192.168.196.x

## Solution

When adding new interfaces in VSX Cluster, their VSX Internal IP address will appear as a valid direct route until policy is installed and RouteD daemon is restarted.

To prevent the VSX internal routes from being published to dynamic routing protocols before RouteD daemon is restarted, a 'routemap' should be configured to block them.

**This issue is planned to be fixed in a future version.**

For additional information on how VSX cluster's use internal communication networks \[funny IP's\], please refer to the "Working with Network Address Translation" section of the VSX administration guide. Perform Hide NAT on traffic a Virtual System itself generates in a VSX Cluster, so that the Virtual System could connect to external resources.

**Related solutions:**

* [sk108699 - Output of "ifconfig" command in the context of Virtual Systems shows Internal Communication (Funny) IP addresses instead of Real IP addresses](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk108699)
* [sk92596 - SmartDashboard and 'ifconfig' command show different IP address for interfaces of VSX objects](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92596)
* [sk110345 - Identical IP addresses from VSX "Internal Communication Network" are assigned to interfaces that belong to different Virtual Systems](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk110345)
* [sk112070 - Output of "ifconfig" command in the context of Virtual Router on VSX Cluster members shows different IP address on the Warp interface than was assigned in SmartDashboard](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk112070)
* [sk90860 - How to configure SNMP on Gaia OS - section III-2](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk90860&partition=Basic&product=Security#Query%20VSX%20Gateway%20over%20SNMP%20-%20Important%20Notes)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
