CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 52 attendees signed up from 14 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > NAT (Network Address Translation)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-04-17
1q2w3e 1q2w3e is offline
Member
 
Join Date: 2006-02-10
Posts: 37
Rep Power: 0
1q2w3e has an average reputation (10+)
Default NAT Addressing and Original

Hello All

I have a device that has been configured with a public ip address in the NAT setting and this device uses the NAT ip addresses to access the remote website. e.g.

172.26.30.1 <---> NAT <---> 90.1.1.1
service port 234

Now I want to use the same device 172.26.30.1 to ftp to another site. I have added this to the rulebase and allowed ftp but it does not work as it (I think) using the NAT’ed address?

Pls how can I use just the 172.26.30.1 address to ftp. I know the non nat'ed original address works as I have another device 172.26.30.2 not having a nat'ed address working?

Thanks
Reply With Quote
  #2 (permalink)  
Old 2007-04-18
MarioL MarioL is offline
Senior Member
 
Join Date: 2007-01-18
Location: London
Posts: 375
Rep Power: 2
MarioL has an average reputation (10+)
Default Re: NAT Addressing and Original

Create a manual NAT rule above the automatic NAT ones that reads:
172.26.30.1 | FTPserver | any | = | = | =

That will prevent NAT to that specific destination and solve your problem.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 17:21.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0