> Source: [sk121193](https://support.checkpoint.com/results/sk/sk121193)

# sk121193 - How to configure specific VPN site to use secondary internet connection on locally managed SMB appliances

| Property | Value |
|----------|-------|
| Solution ID | sk121193 |
| Date Created | 2017-11-09 |
| Last Modified | 2022-07-24 |
| Technical Level | General |
| Products | Spark Firewall (Locally Managed) |
| Versions | R81.10.X |
| Platform | 1500, 1600, 1800, 910 |

## Solution

1. Configure link selection:  

   1. Go to VPN tab and select Advanced in Site to Site block
   2. Set Outgoing interface selection according to the routing table.

   <br />

   <br />

2. Set manual route to external IP and all encryption domains of other site of the tunnel:  

   1. Go to Device tab and choose Routing in Network block
   2. Go to New and set destination as external IP or encryption domain of other site -\> Set next hop as needed interface
   3. Set metric more than 0

   <br />

   <br />

3. Reestablish the VPN tunnel  

4. Open terminal of the device and enter the Expert mode.  

5. Delete the relevant Ike:  

   #vpn tu  
   Select option "7"  
   Enter IP address of the site

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
