<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Translate destination on client side in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47356#M12916</link>
    <description>&lt;P&gt;My Lab topology is show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lab.png" style="width: 425px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/146i5CAD49B69F429F15/image-size/large?v=v2&amp;amp;px=999" role="button" title="lab.png" alt="lab.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I create 2 NAT rule :&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nat rule.png" style="width: 919px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/145i3D320194504E5D43/image-size/large?v=v2&amp;amp;px=999" role="button" title="nat rule.png" alt="nat rule.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When translate on client side is check, I can revived web portal. fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor client.png" style="width: 915px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/147i1CB0FAF16CA1EA68/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor client.png" alt="fw monitor client.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When translate on client side is uncheck, fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitoe server.png" style="width: 886px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/148iA2D71F6C63A8A5A2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitoe server.png" alt="fw monitoe server.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but O is not current, it should be eth0, show I add routing as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="routing.png" style="width: 833px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/149i9E086B7BB766CFF2/image-size/large?v=v2&amp;amp;px=999" role="button" title="routing.png" alt="routing.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;fw monitor:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor add route.png" style="width: 908px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/150i1501FF2975388EFE/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor add route.png" alt="fw monitor add route.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;now it looks current interface, but still can't received web portal.&lt;/P&gt;&lt;P&gt;so I add web server second IP 10.8.2.80. and it is work. I can received web portal. fw monitor is show as below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor.png" style="width: 871px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/152iBEC94087053917F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor.png" alt="fw monitor.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my lab, is it connection or route issue with access web portal even I add route?&lt;/P&gt;&lt;P&gt;or this is current configuration for this lab (translate on server side) ?&lt;/P&gt;</description>
    <pubDate>Mon, 18 Mar 2019 06:38:29 GMT</pubDate>
    <dc:creator>Jarvis_Lin</dc:creator>
    <dc:date>2019-03-18T06:38:29Z</dc:date>
    <item>
      <title>Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47169#M12911</link>
      <description>&lt;P&gt;Hi CheckMates,&lt;/P&gt;&lt;P&gt;Per&amp;nbsp;&lt;SPAN&gt;sk85460 says:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Detailed example:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nat1.jpg" style="width: 425px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/105i4C48892106187005/image-size/large?v=v2&amp;amp;px=999" role="button" title="nat1.jpg" alt="nat1.jpg" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Server side scenario:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2019-03-17_011421.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/106i5634A46328516E55/image-size/large?v=v2&amp;amp;px=999" role="button" title="2019-03-17_011421.png" alt="2019-03-17_011421.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;If the correct static host/network route for "Destination/Server" was added into the routing table of the underlying operating system, the packet will be routed corrected to the outbound interface eth1.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;I add 172.16.0.100 as below, but not work.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2019-03-17_010656.png" style="width: 297px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/102i9B7834E592E02F1B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2019-03-17_010656.png" alt="2019-03-17_010656.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;In this case, what routed I should add ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 16 Mar 2019 17:18:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47169#M12911</guid>
      <dc:creator>Jarvis_Lin</dc:creator>
      <dc:date>2019-03-16T17:18:21Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47272#M12912</link>
      <description>&lt;P&gt;If the NAT IP is 172.16.0.100 and the real IP is 10.0.0.100, you would add a route for 172.16.0.100 with 10.0.0.100 configured as the nexthop.&lt;/P&gt;
&lt;P&gt;That said, I'm not sure why you're doing this as the the default configuration (with Translate Destination on Client Side enabled) does not require a route like this.&lt;/P&gt;</description>
      <pubDate>Sun, 17 Mar 2019 15:52:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47272#M12912</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-17T15:52:02Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47315#M12913</link>
      <description>&lt;P&gt;Please remove this manual route and configure Static NAT in the properties of the Object of your server entering it's "Public" IP in the NAT tab.&lt;/P&gt;
&lt;P&gt;This will create an automatic Proxy ARP entry on the "external" interface and will accept and forward traffic to the destination.&lt;/P&gt;
&lt;P&gt;As far as routes go, both, Internal and External networks are going to be shown in your "Connected Routes".&lt;/P&gt;</description>
      <pubDate>Sun, 17 Mar 2019 19:49:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47315#M12913</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2019-03-17T19:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47334#M12914</link>
      <description>&lt;P&gt;Hi PhoneBoy,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I just LAB (&lt;SPAN&gt;Translate destination on client side /&amp;nbsp;Translate destination on server side&lt;/SPAN&gt;), because in this case (&lt;SPAN&gt;Translate destination on server side&lt;/SPAN&gt;) I can not LAB &lt;SPAN&gt;success.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;"If the correct static host/network route for "Destination/Server" was added into the routing table of the underlying operating system, the packet will be routed corrected to the outbound interface eth1."&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 03:38:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47334#M12914</guid>
      <dc:creator>Jarvis_Lin</dc:creator>
      <dc:date>2019-03-18T03:38:23Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47338#M12915</link>
      <description>You add the route with the nexthop of an IP address, not an interface. The IP address will be on eth1, which will cause the traffic to be routed out eth1. Make sense?</description>
      <pubDate>Mon, 18 Mar 2019 04:03:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47338#M12915</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-18T04:03:08Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47356#M12916</link>
      <description>&lt;P&gt;My Lab topology is show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lab.png" style="width: 425px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/146i5CAD49B69F429F15/image-size/large?v=v2&amp;amp;px=999" role="button" title="lab.png" alt="lab.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I create 2 NAT rule :&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nat rule.png" style="width: 919px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/145i3D320194504E5D43/image-size/large?v=v2&amp;amp;px=999" role="button" title="nat rule.png" alt="nat rule.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When translate on client side is check, I can revived web portal. fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor client.png" style="width: 915px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/147i1CB0FAF16CA1EA68/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor client.png" alt="fw monitor client.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When translate on client side is uncheck, fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitoe server.png" style="width: 886px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/148iA2D71F6C63A8A5A2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitoe server.png" alt="fw monitoe server.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but O is not current, it should be eth0, show I add routing as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="routing.png" style="width: 833px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/149i9E086B7BB766CFF2/image-size/large?v=v2&amp;amp;px=999" role="button" title="routing.png" alt="routing.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;fw monitor:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor add route.png" style="width: 908px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/150i1501FF2975388EFE/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor add route.png" alt="fw monitor add route.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;now it looks current interface, but still can't received web portal.&lt;/P&gt;&lt;P&gt;so I add web server second IP 10.8.2.80. and it is work. I can received web portal. fw monitor is show as below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor.png" style="width: 871px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/152iBEC94087053917F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor.png" alt="fw monitor.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my lab, is it connection or route issue with access web portal even I add route?&lt;/P&gt;&lt;P&gt;or this is current configuration for this lab (translate on server side) ?&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 06:38:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47356#M12916</guid>
      <dc:creator>Jarvis_Lin</dc:creator>
      <dc:date>2019-03-18T06:38:29Z</dc:date>
    </item>
    <item>
      <title>Re: Translate destination on client side</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47397#M12917</link>
      <description>&lt;P&gt;My Lab topology is show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lab.png" style="width: 425px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/146i5CAD49B69F429F15/image-size/large?v=v2&amp;amp;px=999" role="button" title="lab.png" alt="lab.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I create 2 NAT rule :&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nat rule.png" style="width: 919px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/145i3D320194504E5D43/image-size/large?v=v2&amp;amp;px=999" role="button" title="nat rule.png" alt="nat rule.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When translate on client side is check, I can revived web portal. fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor client.png" style="width: 915px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/147i1CB0FAF16CA1EA68/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor client.png" alt="fw monitor client.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;When translate on client side is uncheck, fw monitor show as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitoe server.png" style="width: 886px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/148iA2D71F6C63A8A5A2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitoe server.png" alt="fw monitoe server.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but O is not current, it should be eth0, show I add routing as below:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="routing.png" style="width: 833px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/149i9E086B7BB766CFF2/image-size/large?v=v2&amp;amp;px=999" role="button" title="routing.png" alt="routing.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;fw monitor:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor add route.png" style="width: 908px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/150i1501FF2975388EFE/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor add route.png" alt="fw monitor add route.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;now it looks current interface, but still can't received web portal.&lt;/P&gt;&lt;P&gt;so I add web server second IP 10.8.2.80. and it is work. I can received web portal. fw monitor is show as below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="fw monitor.png" style="width: 871px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/152iBEC94087053917F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="fw monitor.png" alt="fw monitor.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my lab, is it connection or route issue with access web portal even I add route?&lt;/P&gt;&lt;P&gt;or this is current configuration for this lab (translate on server side) ?&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 10:22:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Translate-destination-on-client-side/m-p/47397#M12917</guid>
      <dc:creator>Jarvis_Lin</dc:creator>
      <dc:date>2019-03-18T10:22:59Z</dc:date>
    </item>
  </channel>
</rss>

