<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT in Aws Checkpoint instance in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89525#M2085</link>
    <description>Thanks for the reply. a couple of queries here.&lt;BR /&gt;1) can you please explain a bit more on point 1&lt;BR /&gt;2)I want to host a few webservers each with a dedicated IP.. so instead of hide behind gateway ..can i use hide behind ip address ?</description>
    <pubDate>Tue, 23 Jun 2020 08:12:38 GMT</pubDate>
    <dc:creator>LostBoY</dc:creator>
    <dc:date>2020-06-23T08:12:38Z</dc:date>
    <item>
      <title>NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89514#M2083</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I want to host a web server which is located behind a aws chexkpoint cluster but i am unable to figure outbhow the traffic from internet will hit the firewall vpc..i have elastic ip in that account which i have mapped with the web server via firewall nat.. But when i try to access it from internet there is no traffic on firewall&lt;/P&gt;&lt;P&gt;Any advice on what i am missing here.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 06:27:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89514#M2083</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2020-06-23T06:27:40Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89521#M2084</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/8988"&gt;@LostBoY&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;1) Add a AWS route table to the cluster with the internal networks&lt;BR /&gt;2) Add default route to the internet on the gateway. &lt;BR /&gt;3) Create a NAT rule:&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="n1.JPG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6953iB9D737E5FFD0B073/image-size/large?v=v2&amp;amp;px=999" role="button" title="n1.JPG" alt="n1.JPG" /&gt;&lt;/span&gt;&lt;BR /&gt;4) Creat a access rule&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="r1.JPG" style="width: 981px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6954i2A87D338C0412863/image-size/large?v=v2&amp;amp;px=999" role="button" title="r1.JPG" alt="r1.JPG" /&gt;&lt;/span&gt;5) Hide NAT for Web Server &lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="h1.JPG" style="width: 406px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6955i4DE80B0B4D29A617/image-dimensions/406x159?v=v2" width="406" height="159" role="button" title="h1.JPG" alt="h1.JPG" /&gt;&lt;/span&gt;&lt;BR /&gt;6) Check AWS security groups (NACL) for the Elastic IP. Traffic must be allowed from the internet to Check Point firewall (cluster).&lt;/P&gt;
&lt;DIV id="tinyMceEditorHeikoAnkenbrand_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Tue, 23 Jun 2020 07:18:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89521#M2084</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-06-23T07:18:41Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89525#M2085</link>
      <description>Thanks for the reply. a couple of queries here.&lt;BR /&gt;1) can you please explain a bit more on point 1&lt;BR /&gt;2)I want to host a few webservers each with a dedicated IP.. so instead of hide behind gateway ..can i use hide behind ip address ?</description>
      <pubDate>Tue, 23 Jun 2020 08:12:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89525#M2085</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2020-06-23T08:12:38Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89528#M2086</link>
      <description>&lt;P&gt;What i cant figure out is .. if i have an EIP by which i want to access the web server via Firewall ..then how do i associate that EIP with Firewall. i mean the routing part ..how will the internet know that for this particular EIP it has to reach this Firewall&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 08:20:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/89528#M2086</guid>
      <dc:creator>LostBoY</dc:creator>
      <dc:date>2020-06-23T08:20:37Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/93886#M2087</link>
      <description>&lt;P&gt;If you still need help with this.&lt;/P&gt;&lt;P&gt;ASS now allows you to assign routing tables to the internet gateway in your VPC. So what you do is create a new route table with destination of your internal networks and make the firewalls external interface the hop for these. You then assign the route to the internet gateway. Assign elastic ips like you normally would to the internal hosts. When packets come into your VPC the internet gateway will know to route to the FW instead of directly to your internal host since you created that ingress route table.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Aug 2020 00:58:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/93886#M2087</guid>
      <dc:creator>Ryan_St__Germai</dc:creator>
      <dc:date>2020-08-12T00:58:08Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/160711#M2088</link>
      <description>&lt;P&gt;Hi, how do I have to add the Elastic IP?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have multiple subnets attached via network interface to the checkpoint firewall. I got an Elastic IP associated to the network interface that connects the firewall and the subnet where my app server is.&lt;/P&gt;&lt;P&gt;In the checkpoint firewall I added the public IP as an Alias to the interface, and then I made all the steps you described. I also added an entry in the server SG for all traffic from de checkpoint SG (just for testing purposes) and did not worked.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Oct 2022 22:39:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/160711#M2088</guid>
      <dc:creator>emacias-pronet</dc:creator>
      <dc:date>2022-10-28T22:39:30Z</dc:date>
    </item>
    <item>
      <title>Re: NAT in Aws Checkpoint instance</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/161277#M2089</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Where should EIP configured for Web server? on CheckPoint VM or another load balancer needs to be configured?&lt;/P&gt;</description>
      <pubDate>Fri, 04 Nov 2022 17:52:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT-in-Aws-Checkpoint-instance/m-p/161277#M2089</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-11-04T17:52:23Z</dc:date>
    </item>
  </channel>
</rss>

