NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] single static IP for NAT



I came across a similar problem - FW-1 won't let you NAT any direct requests
to the external IP address of the firewall.  You need another IP address.

----- Original Message -----
From: Kai Kretschmann <[email protected]>
To: <[email protected]>
Sent: 15 February 2001 08:26
Subject: [FW1] single static IP for NAT


>
> Once more and more detailed question:
> I reduced my rules to the bare nedded once. I have a rule for incoming
http
> which I permit to a internal host which has a private IP.
>
> It is static NATed to the firewalls external interface. I can see the
> accepted packets in the log and they even get translated from the old
> destination (the firewall) to the new one (the internal host). I can see
> via snoop on the external i/f the incoming request but I don't see
anything
> going out of the firewall again via snoop on the internal device.
>
> Is there anything I missed with routing, arp etc? I don't think it should
> be needed, as the two interfaces on the firewall are well known to
solaris,
> the servers can be pinged happily.
>
> I really need a detailed example of a working very simple net, one real
IP,
> a private local net and one service (http) allowed to come in.
> Please, :-)
>
>
> --
> "The software said it requires Windows 95 or better, so I installed Linux"
>
> M.I.T newmedia              Tel. 06172-7100-139
> Am Zollstock 1              FAX  06172-7100-10
> D- 61381 Friedrichsdorf
>
>
>
>
============================================================================
====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>
============================================================================
====
>


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.