| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Hi, I have 5 Vlans for local network. All Vlans connects to internet via CP NGX R60. I have one external interface on gateway. Today i create Vlan6 and same setting apply like other Vlans for Vlan 6. I am using Hide Nat all Vlans. But Vlan 6 not reach internet or DMZ. All connections dropped and "dropped packet forwarded between two external interface" message is appear in log. Why generate this message? |
| |||
| Check the topology on vlan6 in the gateway's object. The gateway thinks this is an external interface and that you are running a limited node license, which doesn't allow you to route between external interfaces. |
| |||
| Please explain this a little more. Thanks. |
| |||
| Of course, #sysconfig and select routing and add network routing for Vlan's routing table is below . . . 192.168.7.0 192.168.2.1 255.255.255.0 UG 0 0 0 eth6 192.168.8.0 192.168.2.1 255.255.255.0 UG 0 0 0 eth6 192.168.9.0 192.168.2.1 255.255.255.0 UG 0 0 0 eth6 192.168.10.0 192.168.2.1 255.255.255.0 UG 0 0 0 eth6 . . . 192.168.x.0 are Vlans 192.168.2.1 is my internal network's gateway |
![]() |
| Thread Tools | |
| Display Modes | |
| |