> Source: [sk102296](https://support.checkpoint.com/results/sk/sk102296)

# sk102296 - How to activate inspection on internal traffic on Spark Firewall appliances

| Property | Value |
|----------|-------|
| Solution ID | sk102296 |
| Date Created | 2014-09-02 |
| Last Modified | 2024-03-04 |
| Technical Level | General |
| Products | Spark Firewall (Locally Managed) |
| Versions | R81.10.X |
| Platform | 6, 20, 400, 110, 1500, 1600, 1800 |

## Solution

By default, LAN to LAN traffic is not inspected by deep inspection blades.   

**To turn on deep inspection:**

**For Locally Managed appliances:**

1. In the WebUI, go to **Device** \> **Advanced Settings**.

2. Search for these **Stateful Inspection** attributes:

   * Perform deep packet inspection on LAN to LAN traffic

   * Perform deep packet inspection on traffic between LAN and DMZ networks

3. For each one, double click the attribute name.

4. In the window that opens, select the checkbox and click **Apply**.

**For Centrally Managed appliances:**

1. Connect to the Security Management Server with the [GuiDBedit Tool](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk13009).

2. Go to **Global Properties** \> **properties** \> **firewall_properties** and locate a property called `dpi_lan_lan` or `dpi_lan_dmz`.

3. Set the relevant property to `true`.

4. Save the changes: go to the **File** menu and click **Save All**.

5. Close the GuiDBedit Tool.

6. Install the policy on your device.

**Note:**The LAN interfaces should be set to separate network and unassigned from the internal switch. Traffic between two LAN interfaces which are assigned to the switch will not be inspected even when the above settings are applied.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
