| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Got a problem routing from two LANS on separate interfaces on one firewall to another LAN on a different firewall. IPSO4_2 & CPR_62. Here is the diagram and ruleset (any service between LANS). LAN3 10.226.16.0/23 LAN1 10.226.193.0/24 LAN2 10.226.194..0/24 DRS Link is a direct connection over microwave - 10.226.192.0/24 FW1 = main corporate FW2 = Disaster Recovery Site Ping/Traceroute don't make it to hosts behind FW1 from hosts behind FW2. Will need to recheck the routing tables on both firewalls to verify. From FW2 - Internet access and FW3 routing are alright! What do you think? Last edited by flontous; 2007-05-13 at 18:55. Reason: add more info |
| |||
| > What do you think? I don't know what the problem is. Can you give an example, please? Since these are private addresses, would you please put all of the numbers in? What does DRS stand for? Ray |
| |||
| FW1 Routing Table: 10.5.1.0/24 eth-s2p2c0 CGUX eth-s2p2c0 10.5.1.0 eth-s2p2c0 CGHU eth-s2p2c0 10.5.1.1 eth-s2p2c0 CGHU eth-s2p2c0 10.5.1.7 CGHLU eth-s2p2c0 10.5.1.40 0:9:8a:1:1:f6 CGHLU eth-s2p2c0 10.5.1.40 10.5.1.40 HLUW eth-s2p2c0 10.5.1.42 0:9:8a:1:1:f5 CGHLU eth-s2p2c0 10.5.1.70 0:d:60:4e:a:b3 CGHLU eth-s2p2c0 10.5.1.109 0:9:8a:1:10:56 CGHLU eth-s2p2c0 10.5.1.110 0:9:8a:1:10:57 CGHLU eth-s2p2c0 10.5.1.111 0:9:8a:1:10:58 CGHLU eth-s2p2c0 10.5.1.245 0:d:60:9c:bb:b9 CGHLU eth-s2p2c0 10.5.1.255 eth-s2p2c0 CGHU eth-s2p2c0 10.226.192.0/24 eth1c0 CGUX eth1c0 10.226.192.0 eth1c0 CGHU eth1c0 10.226.192.1 0:a0:8e:7b:90:b0 CGHLU eth1c0 10.226.192.2 eth1c0 CGHU eth1c0 10.226.192.255 eth1c0 CGHU eth1c0 10.226.193.0/24 eth1c0 CGUX eth1c0 10.226.193.0 eth1c0 CGHU eth1c0 10.226.193.1 eth1c0 HUWX eth1c0 10.226.193.2 eth1c0 CGHU eth1c0 10.226.193.9 eth1c0 RCGHU eth1c0 10.226.193.9 10.226.193.9 RHUW eth1c0 10.226.193.17 eth1c0 HUWX eth1c0 10.226.193.255 eth1c0 CGHU eth1c0 10.226.194.0/24 eth1c0 CGUX eth1c0 10.226.194.0 eth1c0 CGHU eth1c0 10.226.194.2 eth1c0 CGHU eth1c0 10.226.194.255 eth1c0 CGHU eth1c0 The 10.5.1.0/24 network is the Local SAN. I need to route from there to 10.226.194.0? Going to get the FW2 Routing table shortly |
| |||
| Look like the packets are going from the internal network, out the external interface, and then back into the firewall for delivery to the destination over the proper interface. Or they are picking up the external ip due to NAT, but I don't have that configuration set up. |
![]() |
| Thread Tools | |
| Display Modes | |
| |