> Source: [sk167116](https://support.checkpoint.com/results/sk/sk167116)

# sk167116 - How to configure Site-to-Site VPN between two SMB Gateways using hostname

| Property | Value |
|----------|-------|
| Solution ID | sk167116 |
| Date Created | 2020-06-01 |
| Last Modified | 2022-07-20 |
| Technical Level | General |
| Products | Spark Firewall (Locally Managed) |
| Versions | R81.10.X |
| Platform | 6, 20, 400, 110, 1500, 1600, 1800, 910 |

## Solution

When using hostnames for Site-to-Site VPN, use IKEv2 and the peer gateway identifier.  

1. To find the identifier, go to **VPN** \> **Site to Site - Advanced** \> **Encryption Method.**  
![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1590679746878/gatewayid20200528113820.png)

2. In the VPN profile, go to the **Advanced** tab \> set the **Encryption method** to **IKEv2** and use the peer identifier:  

![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk167116/ikev220200528113947.png)
**Notes** :   

* Refer to the IKEv2 known limitations for R77.20.x ([sk105380](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk105380&partition=General&product=Small)) and R80.20.x ([sk159772](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk159772)).
* It is common on DAIP using host names to have the WAN IP NAT'd (documented in known limitations).
* In locally managed appliances, the parameter "vpn_force_nat_t" does not force NAT-T if the remote site is configured using a hostname. Refer to [sk162472](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk162472) for more information.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
