NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] routes ?



	Hi,

	I have the FireWall-1 Gateway and my system is:

		Internet
		   |
		 Router
		   |
		   | (1)
		  FW1
		   |
		   | (2)
		   |
        --------------
	 |      |       |
	 |      |       |
      serv.  Serv.   Serv.
	web	 mail   DNS,FTP

	the segment net (1) is: 210.160.188.0 / 255.255.255.240
	and the segment net (2) is: 212.170.188.16 / 255.255.255.240

	The ethernet interface in the Cisco router has the ip = 210.160.188.1 and
the external interface in the firewall 	is 210.160.188.2 I have a static
rule in the CISCO router
		ip route 212.170.188.16 255.255.255.240 210.160.188.2

	With this rule all traffic to the segment (2) is routed to the firewall and
the firewall filters that traffic.

	Is it necessary to route the trafic to the firewall or can I remove this
static rule in the router and in the firewall? Could the firewall work fine
without the static rule in the router?

	-----------------------------------------------
XXXXXXXXXXX   -------------------------------------------

	And if I used NAT in the FireWall with rules like this
		source		destination	service	|	source		destination	service
		   any	      210.160.188.5	   any	|	   any	       212.170.188.20	 any
		   any         210.160.188.8	   any    |	   any	       212.170.188.19	 any

	would it be necessary a static rule like this in the router?

		ip route 210.160.188.0  255.255.255.240  210.160.188.2

	---------------------------------------------
 XXXXXXXXXXX  ----------------------------------------------

	Thank You.







================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.