> Source: [sk107281](https://support.checkpoint.com/results/sk/sk107281)

# sk107281 - Virtual System sends requests to authentication server with source IP address of VSX Gateway

| Property | Value |
|----------|-------|
| Solution ID | sk107281 |
| Date Created | 2015-08-18 |
| Last Modified | 2024-10-30 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |
| Platform | Intel/PC, 3000, 20, 400 |

## Symptoms

- * Authentication requests sent from a Virtual System to 3rd party authentication servers fail.  

  IP address of this Virtual System is configured on authentication servers as the Client IP address.

* Traffic capture on VSX Gateway shows that requests to authentication servers are sent with source IP address of VSX Gateway / VSX Cluster.

* When VSX deployment is forwarding authentication requests (RADIUS, LDAP, etc.) the requests are sourced from the IP of VS0 instead of the Virtual System.

## Cause

The default configuration for a Virtual System is to send requests to authentication servers with source IP address of VSX Gateway / VSX Cluster:

In SmartDashboard, open Virtual System object - expand "*Other* " in the left pane - click on "*Legacy Authentication* " - refer to section "*Authentication Servers Accessibility (including LDAP)* " - the default is "*Shared (servers are accessible from the VSX gateway/cluster*".

*Example*:

[![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk107281/SKVS1508130756.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk107281/SKVS1508130756.png "Click the image to see it in full size in a new tab/window")

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
