| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Need to define network objects for static NAT? Contributed by BenSmith Published in geeklog Tuesday, June 24 2003 @ 01:21 PM EST Published in oldfaq 2002-Nov-11 00:24 dwelchATphoneboyDOTcom For each translated address, you will have to define two network objects. For example, if your machine has an illegal address 126.0.10.50 that will be translated to legal address 206.99.98.2.
Use the original address as the 'Source' in outgoing rule; use the translated address as the 'Destination' in incoming rule. For example, No. Source Destination Service Action Track Install On 1 126.0.10.50 Any ftp Accept Long Gateways 2 Any 206.99.98.2 telnet Accept Long Gateways
If you are using Automatic NAT rules in 4.0 SP5 and later, you do not have to do this. However, I have never advocated the use of Automatic NAT rules. -- RayLodato - 07 Jan 2004 FAQForm FAQs.Class: NetworkAddressTranslationFAQs FAQs.OS: FAQs.Version: |
![]() |
| Thread Tools | |
| Display Modes | |
| |