| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| I have a server which I have a static NAT setup for right on the object in SmartDashboard. I can see the NAT rule in the address translation window, and it the policy installs fine on the FW. The problem I'm having is this: Connections coming into the public IP of this server from the outside work fine and get translated correctly and hit the server as they are supposed to, however connections from this server outbound are translated using the Hide NAT I have for my regular internet traffic. Other NAT rules are working fine, I've verified that the addressing is correct and I didn't mis-type something or use it somewhere else. I'm rather confused, anyone have any ideas? I'm running SPLAT NGX R62 Thanks. |
| |||
| Move the NAT rule for this particular object above the NAT rule for the regular hide NAT. |
| |||
| The hide nat is a manual rule and the static nat is an automatic so I can't move the hide below it. If I change it from a manual rule and set the NAT properties on my GW would that effectively solve my problem? That should put the rule below. |
| |||
| Yes you can. The Automatic rule placement stumped me at first also but you can right click and create a new rule above or below the entire block of Auto NAT rules. __________________ There's no place like 127.0.0.1 |
| |||
| So it appears you can, I tried it but couldn't get it to work initially, I ended up having to drag another rule down and modifying it, I'll push the policy later today and see if it works. Thanks! |
| |||
| an alternative to dragging and dropping is to right click in the number column of the rule you want to move > select cut right click in the number column of the rule below the position you want > select Paste Rule > Above |
| |||
| You can also "Add rule to the top" or "Add rule to the bottom". Usually I have the "non-NAT" rules at the top, then the automatic static NATs and then a manual Hide NAT at the bottom. |
![]() |
| Thread Tools | |
| Display Modes | |
| |