<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139824#M21390</link>
    <description>&lt;P&gt;fw unloadlocal - Fixed "Secure Connection Failed" and I can get back into GAIA.&lt;BR /&gt;SmartConsole is still (Certificate Revoked).&lt;/P&gt;</description>
    <pubDate>Fri, 28 Jan 2022 13:09:09 GMT</pubDate>
    <dc:creator>IWishIKnewMore</dc:creator>
    <dc:date>2022-01-28T13:09:09Z</dc:date>
    <item>
      <title>R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139647#M21336</link>
      <description>&lt;P&gt;I have a 3100 updated to R81.10.&lt;BR /&gt;&lt;BR /&gt;Right now I'm upgrading from an older 600, but noticing Gaia is less friendly to the novice - so bare with the stupid questions.&lt;BR /&gt;On my 600 there was literally a WAN/DHCP mode you could turn on for an interface - the 3100 doesn't seem to have this.&lt;BR /&gt;&lt;BR /&gt;What setting/configurations to I need get going to I can achieve the same functionality.&lt;BR /&gt;I can't seem to find any guides to this end - I'm guessing this is so basic as to be laughable to have a guide.&lt;BR /&gt;&lt;BR /&gt;Any help appreciated.&lt;BR /&gt;&lt;BR /&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 03:14:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139647#M21336</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-27T03:14:56Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139719#M21348</link>
      <description>&lt;P&gt;Please refer to&amp;nbsp;&lt;SPAN&gt;sk92768 for instructions for the WebUI / CLISH.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;But in case you meant using the Gateway itself as a DHCP server this is also possible refer:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/DHCP-Server-Gaia-Clish.htm" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/DHCP-Server-Gaia-Clish.htm&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Note the interfaces on a 3100 are not switch ports like that on a 600 however.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;NAT is configured within SmartConsole along with your access policy &amp;amp; interface topology. For NAT the simple option is to enable the check box on the gateway object though this is not as flexible as defining manual hide-NAT&amp;nbsp;rules&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 16:18:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139719#M21348</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-01-27T16:18:18Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139740#M21353</link>
      <description>&lt;P&gt;If specify my internet source as another router - it all works fine.&lt;BR /&gt;But if I try to use the modem per sk92768:&lt;BR /&gt;&lt;STRONG&gt;Could not connect to the Check Point Cloud. Check your connection settings (Default Gateway, DNS, Proxy)&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 18:30:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139740#M21353</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-27T18:30:19Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139771#M21357</link>
      <description>&lt;P&gt;Try this: In the gaia web interface, go down to 'Advanced Routing -&amp;gt; Routing Options' and enable the checkbox for 'Kernel Routes' - this will allow the gateway to import the dynamically learned default route that it received from DHCP.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 21:54:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139771#M21357</guid>
      <dc:creator>Joseph_Audet</dc:creator>
      <dc:date>2022-01-27T21:54:11Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139774#M21359</link>
      <description>&lt;P&gt;No change in the error - still:&lt;BR /&gt;&lt;STRONG&gt;Could not connect to the Check Point Cloud. Check your connection settings (Default Gateway, DNS, Proxy)&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;With or without the Modem IP hardcoded.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 23:31:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139774#M21359</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-27T23:31:48Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139779#M21361</link>
      <description>&lt;P&gt;Once the routing has been verified further to Joseph's suggestion some other diagnostic measures may include:&lt;/P&gt;
&lt;P&gt;External Interface topology: If the address you receive isn't static try specifying a dummy address of 0.0.0.0/32&lt;/P&gt;
&lt;P&gt;Global properties: Menu &amp;gt; Gloabl Properties &amp;gt; FireWall &amp;gt; Access outgoing packets originating from Gateway: First.&lt;/P&gt;
&lt;P&gt;Whilst on this screen its probably also beneficial to you to enable "Log Implied Rules".&lt;/P&gt;
&lt;P&gt;Click OK and install policy.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 01:24:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139779#M21361</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-01-28T01:24:35Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139780#M21362</link>
      <description>&lt;P&gt;That error literally always mean that gateway can't reach cp update server. So try curl_cli updates.checkpoint.com and curl_cli cws.checkpoint.com commands and see what you get.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 02:00:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139780#M21362</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-01-28T02:00:00Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139783#M21365</link>
      <description>&lt;P&gt;I felt like I was making progress - I finally got cert errors figured out and cpconfig enabled correctly.&lt;BR /&gt;I was into smart console:&lt;BR /&gt;- Enabled the Hide Nat Setting&lt;BR /&gt;- Enabled Autonomous IPS&lt;BR /&gt;-Enabled Base Firewall&lt;BR /&gt;&lt;BR /&gt;Now I can't connect to SmartConsole anymore (Certificate Revoked).&lt;BR /&gt;GAIA via browser is "Secure Connection Failed"&lt;BR /&gt;&lt;BR /&gt;It seems like if I do a cpstop/cpstart - there is a short window when I get the UI back, but then back to cert errors.&lt;BR /&gt;&lt;BR /&gt;Two steps forward - one step.&lt;BR /&gt;&lt;BR /&gt;Thanks for all the assistance - look forward to trying more things once I can get off just a putty connection &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 05:11:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139783#M21365</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T05:11:38Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139784#M21366</link>
      <description>&lt;P&gt;Does "fw unloadlocal" from the CLI allow you back in to correct your policy/config.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 05:29:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139784#M21366</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-01-28T05:29:03Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139824#M21390</link>
      <description>&lt;P&gt;fw unloadlocal - Fixed "Secure Connection Failed" and I can get back into GAIA.&lt;BR /&gt;SmartConsole is still (Certificate Revoked).&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 13:09:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139824#M21390</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T13:09:09Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139825#M21391</link>
      <description>&lt;P&gt;Can you attach a screenshot of the smart console error? Try this...ssh into mgmt server and once you type cpconfig from expert mode, just click option for administrators and add new admin (this is for dashboard). Once you do this, it may ask to do cprestart and then try log in with that newly created user.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 13:12:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139825#M21391</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-01-28T13:12:11Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139828#M21392</link>
      <description>&lt;P&gt;fw unloadlocal -&amp;gt; GAIA -&amp;gt; Certificate Authority Reset -&amp;gt; cprestart - Got rid of the "revoked" messaged.&lt;BR /&gt;&lt;BR /&gt;Back to "Unable to Connect" or "The Operation Timed Out".&lt;BR /&gt;&lt;BR /&gt;cpconfig -&amp;gt; re-add admin -&amp;gt; restart == didn't get any improvement.&lt;BR /&gt;^ (originally that's how I got into past those errors and into SmartConsole to begin with).&lt;BR /&gt;&lt;BR /&gt;At least I can get into GAIA again, but a little unsure how to proceed from here.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Untitled.png" style="width: 0px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15148i3898A7F33F91FF6A/image-size/small?v=v2&amp;amp;px=200" width="0" height="0" role="button" title="Untitled.png" alt="Untitled.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 13:53:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139828#M21392</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T13:53:45Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139829#M21393</link>
      <description>&lt;P&gt;Ok, thats what I figured. So try do what I suggested and see if you can log in. Also, on mgmt server, run cpwd_admin list, as well as cd $FWDIR/scripts and then ./cpm_status.sh&lt;/P&gt;
&lt;P&gt;Those commands would tell us if there is an issue with any process on your management server.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 13:52:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139829#M21393</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-01-28T13:52:31Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139830#M21394</link>
      <description>&lt;P&gt;Miraculously SmartConsole just kicked over...didn't change anything from 5 minutes ago...but not going to argue it.&lt;BR /&gt;I guess my next question is what do I check for or set that I don't have to run telnet to "fw unloadlocal" and play firewall reset everytime the CP services restart....then maybe back to getting the modem connecting..sigh.. nothing is ever easy &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 14:00:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139830#M21394</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T14:00:03Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139831#M21395</link>
      <description>&lt;P&gt;I hear ya brother : - ). Well, technically, every time firewall reboots, it should fetch latest known policy, so if you apply correct policy from mgmt server, than that's what would be on it after reboot. That way, you would never have to run fw unloadlocal command.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 14:04:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139831#M21395</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-01-28T14:04:24Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139832#M21396</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Unfortunately Certificate Revoked has became a classic issue in Management server. Good news is that CheckPoint knows how to fix this:&amp;nbsp;&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113744" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113744&lt;/A&gt;&lt;/P&gt;&lt;P&gt;That link just explains the problem, bu it will take you to a second sk with the solution procedure:&lt;/P&gt;&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk20905" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk20905&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hope it helps you.&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 14:04:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139832#M21396</guid>
      <dc:creator>RS_Daniel</dc:creator>
      <dc:date>2022-01-28T14:04:56Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139833#M21397</link>
      <description>&lt;P&gt;I honestly never had that problem in 15 years dealing with CP. But, good links for the reference. Don't want to jinx it now : - )&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 14:07:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139833#M21397</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-01-28T14:07:22Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139855#M21408</link>
      <description>&lt;P&gt;I think I have some kind of lead on the modem - our least oddity:&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk104417" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk104417&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;dhcp.leases is blank for me. (with automatic ipv4 set or static set)&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 22:20:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139855#M21408</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T22:20:16Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139856#M21409</link>
      <description>&lt;P&gt;I figured out what happened. There is a "clean-up" rule. That applies when you enable the firewall blade. But neglects to set allow route for MGMT. The smartconsole logs were showing the dropped packets. With 192.168.X.0 to host address Accept defined - problem seems to have corrected.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 22:53:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139856#M21409</guid>
      <dc:creator>IWishIKnewMore</dc:creator>
      <dc:date>2022-01-28T22:53:42Z</dc:date>
    </item>
    <item>
      <title>Re: R81.10 - How to Setup WAN with Modem on eth1 and NAT/DHCP to eth2-5</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139857#M21410</link>
      <description>&lt;P&gt;Your Firewall is a DHCP client?&lt;/P&gt;
&lt;P&gt;The SK is referring to it being set as a server for allocating IPs to LAN hosts.&lt;/P&gt;
&lt;P&gt;Do you see a default route when you get the dynamic address or have you tried configuring one manually?&lt;/P&gt;
&lt;P&gt;Can you ping the next-hop?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ifconfig -a ethX&lt;/P&gt;
&lt;P&gt;netstar -nr&lt;/P&gt;
&lt;P&gt;ping a.b.c.d&lt;/P&gt;
&lt;P&gt;What IP Range should you receive from the modems DHCP, does it conflict with the existing firewall LAN addressing?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jan 2022 23:50:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R81-10-How-to-Setup-WAN-with-Modem-on-eth1-and-NAT-DHCP-to-eth2/m-p/139857#M21410</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-01-28T23:50:12Z</dc:date>
    </item>
  </channel>
</rss>

