<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.10 - SRC NAT and DST NAT in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88979#M11052</link>
    <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/47807"&gt;@DFW&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;should be possible. Create a manual NAT rule like this:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NAT_double.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6835i68B4B5B5AAB93919/image-size/large?v=v2&amp;amp;px=999" role="button" title="NAT_double.PNG" alt="NAT_double.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Wolfgang&lt;/P&gt;</description>
    <pubDate>Thu, 18 Jun 2020 07:15:41 GMT</pubDate>
    <dc:creator>Wolfgang</dc:creator>
    <dc:date>2020-06-18T07:15:41Z</dc:date>
    <item>
      <title>R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88952#M11050</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are running 12400 with R80.10 and we have specific scenario that we would like to achieve, and so far we are unable to get this done using CP gateways, while possible with other vendors. We want just to have soure and destination NAT at the same time (full NAT).&lt;/P&gt;&lt;P&gt;This is the network flow we are trying to get working:&lt;/P&gt;&lt;P&gt;SRC: Device on the Internet = 80.1.1.1 &amp;gt; DST:internal server public IP (40.40.40.40)&lt;/P&gt;&lt;P&gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt; Firewall SRC NAT &lt;STRONG&gt;80.1.1.1 TO 10.0.0.10&lt;/STRONG&gt; and DST NAT &lt;STRONG&gt;40.40.40.40 TO 10.1.1.5&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Then normal routing takes place inside our network. So basicially we want the SRC and DST to become internal IP addresses.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Today DST NAT works with no issue, but we want all internal communication to happen on prviate networks and no external network go inside our network.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Nazar&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jun 2020 21:48:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88952#M11050</guid>
      <dc:creator>DFW</dc:creator>
      <dc:date>2020-06-17T21:48:26Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88957#M11051</link>
      <description>What precise steps did you try to achieve this configuration?&lt;BR /&gt;You can definitely do this with manual NAT rules.&lt;BR /&gt;</description>
      <pubDate>Thu, 18 Jun 2020 02:44:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88957#M11051</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-18T02:44:33Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88979#M11052</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/47807"&gt;@DFW&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;should be possible. Create a manual NAT rule like this:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NAT_double.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/6835i68B4B5B5AAB93919/image-size/large?v=v2&amp;amp;px=999" role="button" title="NAT_double.PNG" alt="NAT_double.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Wolfgang&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jun 2020 07:15:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/88979#M11052</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2020-06-18T07:15:41Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89056#M11053</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1447"&gt;@Wolfgang&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the response but our target is to set the Source to "Any"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jun 2020 15:07:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89056#M11053</guid>
      <dc:creator>DFW</dc:creator>
      <dc:date>2020-06-18T15:07:01Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89057#M11054</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;We try to set the source as Any and the translated source to a private IP but we getting an error that it should be only Any to Original&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jun 2020 15:09:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89057#M11054</guid>
      <dc:creator>DFW</dc:creator>
      <dc:date>2020-06-18T15:09:50Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89076#M11055</link>
      <description>Use the object All_Internet instead of Any.</description>
      <pubDate>Thu, 18 Jun 2020 17:20:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89076#M11055</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-18T17:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: R80.10 - SRC NAT and DST NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89093#M11056</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot, replacing Any with the All-internet object solved the issue!!!&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jun 2020 19:49:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-10-SRC-NAT-and-DST-NAT/m-p/89093#M11056</guid>
      <dc:creator>DFW</dc:creator>
      <dc:date>2020-06-18T19:49:28Z</dc:date>
    </item>
  </channel>
</rss>

