<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Port redirection not working? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119606#M16914</link>
    <description>&lt;P&gt;Seems like rule is being hit, if you do fw monitor, do you even see traffic working? Have you tried disabling securexl?&lt;/P&gt;</description>
    <pubDate>Thu, 27 May 2021 16:08:28 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2021-05-27T16:08:28Z</dc:date>
    <item>
      <title>Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119605#M16913</link>
      <description>&lt;P&gt;So im having quite some issues regarding opening ports/creating nat rules for when i need to remotely access inside ressources on their default port, but using a different remote port.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Example down below:&lt;/P&gt;&lt;P&gt;Trying to access a Terminal-Server. where the usual port 3389 is not available. so its due to hit on port 8889 and then be translated to the inside server at port 3389.&lt;/P&gt;&lt;P&gt;When i check the firewall rule, traffic is allowed and i can also see hits, but nothing ever responds when trying to access it "outside"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 20:31:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119605#M16913</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T20:31:36Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119606#M16914</link>
      <description>&lt;P&gt;Seems like rule is being hit, if you do fw monitor, do you even see traffic working? Have you tried disabling securexl?&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 16:08:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119606#M16914</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-05-27T16:08:28Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119608#M16915</link>
      <description>&lt;P&gt;Since I am still in the learning phase of checkpoint I do not know what secureXL is.. and I see see it’s being hit.. if I do a wire shark capture on the terminal server then nothing arrives at it unless it’s local traffic.. so for some reason my GW isn’t forwarding the traffic..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;btw what is fw monitor?&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 16:38:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119608#M16915</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T16:38:03Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119609#M16916</link>
      <description>&lt;P&gt;This would be good place to check on it if you are not familiar, but in essence, its supposed to accelerate the traffic:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk32578&amp;amp;partition=Advanced&amp;amp;product=SecureXL" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk32578&amp;amp;partition=Advanced&amp;amp;product=SecureXL&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In some cases, it could cause traffic issues, so one way to confirm, would be if you run fwaccel off on the gateways and then test again, no need to push the policy. To turn it back on, just run fwaccel on&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 16:43:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119609#M16916</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-05-27T16:43:50Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119610#M16917</link>
      <description>&lt;P&gt;Turning off SecureXL didnt make a difference &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 17:16:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119610#M16917</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T17:16:46Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119611#M16918</link>
      <description>&lt;P&gt;&amp;nbsp;Ok, try this...fe ctl zdebug + drop | grep 3389&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Message me privately, lets do remote later on.&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 17:24:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119611#M16918</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-05-27T17:24:34Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119612#M16919</link>
      <description>&lt;P&gt;THANK YOU!!!&lt;BR /&gt;Ill fire off the command NOW&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 17:26:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119612#M16919</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T17:26:27Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119616#M16920</link>
      <description>&lt;P&gt;And i've also sent you a private message&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 17:51:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119616#M16920</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T17:51:43Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119621#M16921</link>
      <description>&lt;P&gt;Did you allow both IPs (original and translated destination) in your rule?&lt;/P&gt;
&lt;P&gt;Are you aware of the returning packets, they should be NATed to seen external with the external IP.&amp;nbsp;&lt;BR /&gt;And at last, has your terminalserver a route through the gateway to access the external world?&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 18:51:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119621#M16921</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-05-27T18:51:22Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119626#M16923</link>
      <description>&lt;P&gt;Hi Wolfgang.&lt;BR /&gt;about the retur packet.. would you care to show me an example by using the attached picture i had in the original topic?&lt;BR /&gt;I should have nat return though, but i could have made a mistake..&lt;BR /&gt;My terminalserver can access the internet perfectly.. and its hidden behind nat&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 19:44:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119626#M16923</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T19:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119628#M16924</link>
      <description>&lt;P&gt;The shown picture is only a rule for NAT. You have to configure a rule in the network layer to allow the traffic from external to your destination hosts.&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 19:54:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119628#M16924</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2021-05-27T19:54:17Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119631#M16925</link>
      <description>&lt;P&gt;I've attached photos here..&lt;BR /&gt;the firewall accept's the traffic, but it just doesnt go any further.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;if i do a wiresharp capture on the terminal server, no traffic arrives..&lt;BR /&gt;but if i try to connect from an internal server to the terminal server, traffic arrives and can be seen on the wireshark capture.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 20:31:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119631#M16925</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T20:31:22Z</dc:date>
    </item>
    <item>
      <title>Re: Port redirection not working?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119632#M16926</link>
      <description>&lt;P&gt;i think ive managed to find the issue.&lt;BR /&gt;as soon as i renamed the object with fewer characters it started working&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After renaming the object from 17 Character to a few and pushed policy the NAT rule started working correctly&amp;nbsp;&lt;BR /&gt;thank you for the help everyone &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 May 2021 20:32:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-redirection-not-working/m-p/119632#M16926</guid>
      <dc:creator>skandshus</dc:creator>
      <dc:date>2021-05-27T20:32:14Z</dc:date>
    </item>
  </channel>
</rss>

