<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Manual NAT rule with ISP redundancy in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/188003#M34660</link>
    <description>&lt;P&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk25152" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk25152&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 28 Jul 2023 21:10:55 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-07-28T21:10:55Z</dc:date>
    <item>
      <title>Manual NAT rule with ISP redundancy</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/187988#M34653</link>
      <description>&lt;P&gt;Hello Everyone,&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are getting 2nd ISP link and I am going to enable ISP redundancy on R81.10 GW cluster (Active/standby) .&amp;nbsp;&lt;/P&gt;&lt;P&gt;My MGMT server also talks to some of the Gateway over the internet, right now I am using Manual NAT rule where MGMT server is using one of the Public ip addresses. So current setup is :&lt;/P&gt;&lt;P&gt;FW ip: 1.1.1.1&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mgmt server has internal IP but when it wants to go to internet , it uses a public ip 1.1.1.2 . 1.1.1.2 has proxy arp entry and has manual NAT rule defined.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Source : MGMT(Internal IP)10.0.0.1&lt;/P&gt;&lt;P&gt;Dest:Any&lt;/P&gt;&lt;P&gt;Service: Any&lt;/P&gt;&lt;P&gt;Translated source : MGMT Public IP 1.1.1.2&lt;/P&gt;&lt;P&gt;Dest: Original&lt;/P&gt;&lt;P&gt;Service: Original&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question: When having second ISP , how can I make sure when the ISP flips, and new&amp;nbsp; Public ip's comes to play, My MGMT server will NAT to new IP which i will configure under Proxy arp and manual NAT?&amp;nbsp;&lt;BR /&gt;I am confused on how to make this work. I can make 2 new NAT rules just like my existing one's but will the traffic from my MGMT hit my new rule so it can use new ISP's public ip (the one assigned to mgmt) when the ISP failover happen?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 17:47:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/187988#M34653</guid>
      <dc:creator>ajsingh</dc:creator>
      <dc:date>2023-07-28T17:47:54Z</dc:date>
    </item>
    <item>
      <title>Re: Manual NAT rule with ISP redundancy</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/188003#M34660</link>
      <description>&lt;P&gt;See:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk25152" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk25152&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2023 21:10:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/188003#M34660</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-07-28T21:10:55Z</dc:date>
    </item>
    <item>
      <title>Re: Manual NAT rule with ISP redundancy</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/188006#M34661</link>
      <description>&lt;P&gt;I would agree that sk Phoneboy have is a good reference.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 29 Jul 2023 00:21:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Manual-NAT-rule-with-ISP-redundancy/m-p/188006#M34661</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-29T00:21:23Z</dc:date>
    </item>
  </channel>
</rss>

