<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213970#M40831</link>
    <description>&lt;P&gt;Indeed I'm suggesting this is the likely cause for the error reported.&lt;/P&gt;</description>
    <pubDate>Sun, 12 May 2024 15:28:18 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2024-05-12T15:28:18Z</dc:date>
    <item>
      <title>NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213911#M40797</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;My 5800 checkpoint LAN IP is 10.103.253.10 and LAN subnet is 10.100.0.0/16,&amp;nbsp; then i have 2 vpn site to site to azure and the tunnel already established.&lt;/P&gt;&lt;P&gt;Now i have requirement to change that the traffic from LAN subnet if want go to 1st VPN tunnel (Subnet 10.200.0.0/16) will go directly without any NAT.&lt;/P&gt;&lt;P&gt;Then i also need traffic from LAN subnet if want go to 2nd VPN Tunnel (Subnet 10.150.0.0/16) should be NATted using interface ip address (10.103.255.10).&lt;/P&gt;&lt;P&gt;Anyone here know how to make that NAT?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 May 2024 14:18:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213911#M40797</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2024-05-11T14:18:32Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213928#M40807</link>
      <description>&lt;P&gt;You can simply make manual nat rules in smart console based on those requirements.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 11 May 2024 18:18:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213928#M40807</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-11T18:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213930#M40808</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;So my NAT setting is :&lt;/P&gt;&lt;P&gt;Original source : 10.100.0.0/16&lt;/P&gt;&lt;P&gt;Original destination : 10.150.0.0/16&lt;/P&gt;&lt;P&gt;And what should i choose on translate source so the traffic will be translated to my checkpoint interface?&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 03:54:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213930#M40808</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2024-05-12T03:54:46Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213940#M40814</link>
      <description>&lt;P&gt;Whatever the IP is that needs to be translated to.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 12:18:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213940#M40814</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-12T12:18:42Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213952#M40819</link>
      <description>&lt;P&gt;Hi..&lt;/P&gt;&lt;P&gt;Already try with configuration below but have error&amp;nbsp;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;Original source : 10.100.0.0/16&lt;/P&gt;&lt;P&gt;Original destination : 10.150.0.0/16&lt;/P&gt;&lt;P&gt;Translated Source : 10.103.107.1&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 13:33:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213952#M40819</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2024-05-12T13:33:16Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213954#M40821</link>
      <description>&lt;P&gt;Let me test it in the lab and will let you know.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 13:37:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213954#M40821</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-12T13:37:46Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213959#M40825</link>
      <description>&lt;P&gt;Works for me.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/25629i5E8DB6CCD12C38B4/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 13:53:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213959#M40825</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-12T13:53:41Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213966#M40828</link>
      <description>&lt;P&gt;Did you set it as hide or static?&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 15:23:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213966#M40828</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-05-12T15:23:06Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213967#M40829</link>
      <description>&lt;P&gt;Im fairly sure that can ONLY work with hide nat.&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 15:24:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213967#M40829</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-12T15:24:27Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213970#M40831</link>
      <description>&lt;P&gt;Indeed I'm suggesting this is the likely cause for the error reported.&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 15:28:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213970#M40831</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-05-12T15:28:18Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213971#M40832</link>
      <description>&lt;P&gt;Yup, agree!&lt;/P&gt;</description>
      <pubDate>Sun, 12 May 2024 15:32:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213971#M40832</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-12T15:32:57Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213984#M40840</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I change the static nat to hide and the error was gone, but actually when i try RDP from 10.100.50.25 to Azure windows VM&amp;nbsp; 10.50.10.10 then i check in the task manager, the source is still from host 10.100.50.25 and not from 10.103.107.1.&lt;/P&gt;&lt;P&gt;What i can see on the log there only decrypt message and in the message detail there are no NAT rule.&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2024 01:16:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213984#M40840</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2024-05-13T01:16:32Z</dc:date>
    </item>
    <item>
      <title>Re: NAT</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213985#M40841</link>
      <description>&lt;P&gt;In such a case that you described, ONLY hide nat rule would work, as you cant do static nat from subnet to subnet translation, for the lack of the better term.&lt;/P&gt;
&lt;P&gt;If IP is different, just change the natted IP in the translated packet, push policy and test.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2024 01:18:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/NAT/m-p/213985#M40841</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-13T01:18:43Z</dc:date>
    </item>
  </channel>
</rss>

