View Single Post
  #4 (permalink)  
Old 2008-06-16
jsmwalker jsmwalker is offline
Junior Member
 
Join Date: 2008-04-15
Posts: 6
Rep Power: 0
jsmwalker has an average reputation (10+)
Default Re: ISP LoadBalance / VPN Site to Site

Ok, seem to now have got this working, however, it seems that using the VPN link selection works, but I seem to have to apply the primary/backup interfaces, apply this, then deselect the correct VPN link selection, apply, then select the correct link selection and all works.

But this has left me with one problem, with Static Nat's on one server, this server is now unable to communcate with the outside world (another server seems unaffected so not sure why) However reading the documentation it appears I need to setup a Hidden Nat, which is fine and the server can communcate with the outside world, however the nat does not appear to work on the backup route (4mb line)

This is all getting quite frustrating, am sure its my inexperience with the Checkpoint, but there does appear to be some weirdness' here (guess all equipment has its strange behaviour)

Basically the server that needs access to the outside world is 192.168.1.1 for example, and only needs smtp published, surely i just create a hide rule saying:

Destination Outside 4mb IP
Port Smtp
Translated 192.168.1.1
Port smtp

And that should all work?

Any help sooooo gratefully received.

J
Reply With Quote