<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT64 with R80.40 in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88537#M2245</link>
    <description>My understanding is that IPv6 is not supported in CloudGuard Gateways in Public Cloud, currently.&lt;BR /&gt;You can see it listed as a known limitation here:&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160753" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160753&lt;/A&gt;</description>
    <pubDate>Mon, 15 Jun 2020 03:25:17 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2020-06-15T03:25:17Z</dc:date>
    <item>
      <title>NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88453#M2244</link>
      <description>&lt;P&gt;This is my first IPv6 implementation on Azure&lt;/P&gt;&lt;P&gt;Lab setup is&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ext win10: fd5d:7ce8:b6d5:1::4 (10.20.1.6)&lt;BR /&gt;&lt;BR /&gt;fw Ext (eth0): fd5d:7ce8:b6d5:1::a14:205 (10.20.1.4)&lt;BR /&gt;fw Int (eth1): fd5d:7ce8:b6d5:2::4 (10.20.2.4)&lt;/P&gt;&lt;P&gt;webs1: 10.20.2.5&lt;/P&gt;&lt;P&gt;My NAT64 rule is&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NAT.jpg" style="width: 1361px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6739i87897206C7879735/image-dimensions/1361x83?v=v2" width="1361" height="83" role="button" title="NAT.jpg" alt="NAT.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="v6-dst.jpg" style="width: 447px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6740iB760F1FAF555989D/image-dimensions/447x181?v=v2" width="447" height="181" role="button" title="v6-dst.jpg" alt="v6-dst.jpg" /&gt;&lt;/span&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="snat-v4range.jpg" style="width: 362px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6741i03CB062BEB320B92/image-dimensions/362x180?v=v2" width="362" height="180" role="button" title="snat-v4range.jpg" alt="snat-v4range.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Log shows xlate dst as expected but xlate_src is empty&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Snat-missing.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6743iB28C0A0561D3457D/image-size/large?v=v2&amp;amp;px=999" role="button" title="Snat-missing.jpg" alt="Snat-missing.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;fw6 monitor and tcpdump on eth0 shows fw is sending reset&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fwmonitor.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6744i6867A5CA41B66702/image-size/large?v=v2&amp;amp;px=999" role="button" title="fwmonitor.jpg" alt="fwmonitor.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Any help is appreciated!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 13 Jun 2020 22:14:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88453#M2244</guid>
      <dc:creator>pal</dc:creator>
      <dc:date>2020-06-13T22:14:09Z</dc:date>
    </item>
    <item>
      <title>Re: NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88537#M2245</link>
      <description>My understanding is that IPv6 is not supported in CloudGuard Gateways in Public Cloud, currently.&lt;BR /&gt;You can see it listed as a known limitation here:&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160753" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160753&lt;/A&gt;</description>
      <pubDate>Mon, 15 Jun 2020 03:25:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88537#M2245</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-15T03:25:17Z</dc:date>
    </item>
    <item>
      <title>Re: NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88545#M2246</link>
      <description>&lt;P&gt;Appreciate your response.&amp;nbsp; I read MDM, MUH v2 and IPv6 for Management interface are not supported.&amp;nbsp; Security Gateway limitations mention about default kernel value and some commands.&amp;nbsp; Please correct me if I missed the feature ID you are referring to.&lt;/P&gt;&lt;P&gt;Setup of (IPv6 LAN - Firewall - IPv6 LAN) end to end communication is working fine on Azure.&lt;/P&gt;&lt;P&gt;I redeployed everything locally with a 4600 appliance and seeing same behavior&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="snat-missing1.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6755iAD0D1C1B0534A2EF/image-size/large?v=v2&amp;amp;px=999" role="button" title="snat-missing1.jpg" alt="snat-missing1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I am wondering if any additional configuration is required for source NAT range to take effect.&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jun 2020 05:58:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88545#M2246</guid>
      <dc:creator>pal</dc:creator>
      <dc:date>2020-06-15T05:58:07Z</dc:date>
    </item>
    <item>
      <title>Re: NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88546#M2247</link>
      <description>This is stated in: VSECC-1097&lt;BR /&gt;But if you can see it in a physical appliance, I recommend a TAC case.</description>
      <pubDate>Mon, 15 Jun 2020 06:05:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88546#M2247</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-15T06:05:07Z</dc:date>
    </item>
    <item>
      <title>Re: NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88547#M2248</link>
      <description>&lt;P&gt;&lt;SPAN&gt;VSECC-1097 applies to&amp;nbsp;&lt;/SPAN&gt;R80.20 and below correct?&lt;/P&gt;&lt;P&gt;I have a TAC case open and waiting to be assigned, thanks again.&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jun 2020 06:12:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88547#M2248</guid>
      <dc:creator>pal</dc:creator>
      <dc:date>2020-06-15T06:12:40Z</dc:date>
    </item>
    <item>
      <title>Re: NAT64 with R80.40</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88548#M2249</link>
      <description>If it's in the "Known Limitations" SK for R80.40, it applies there as well.&lt;BR /&gt;R80.20 was the first version it was documented in (meaning this isn't a new limitation).</description>
      <pubDate>Mon, 15 Jun 2020 06:17:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/NAT64-with-R80-40/m-p/88548#M2249</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-15T06:17:09Z</dc:date>
    </item>
  </channel>
</rss>

