In Check Point, Domain-based VPN’s take precedence over route-based VPN. If implementing a route-based VPN, what is one configuration step you must make on the gateway object taking part in the route-based VPN?
A. You should remove the gateway from all communities.
B. Check Point does not support route-based VPN’s.
C. You need to create a new simple group with no objects in it and apply this as the VPN domain under that gateway’s topology tab.
D. You should check the "Use route-based VPN" checkbox in the community properties.
C
To force Route Based VPN to take priority, you must create a dummy (empty) group and assign it to the VPN domain
https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm?topic=documents/R77/CP_R77_VPN_AdminGuide/14048