<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Dnat issue in the firewall in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224098#M42999</link>
    <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm running checkpoint firewall with R81 version in cluster mode.&lt;/P&gt;&lt;P&gt;My servers and security gateway subnets are different.&lt;/P&gt;&lt;P&gt;When I'm trying to use destination nat from&amp;nbsp; outside interface eth1-03 to eth1-01(servers lan interface) http traffic is accepted in the logs but web page not opening.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Servers interface 10.179.8.0/25 with gateway 10.179.8.1 connected to l3 switch.&lt;/P&gt;&lt;P&gt;From there connected to Eth1-01 interface ip 10.179.8.125&lt;/P&gt;&lt;P&gt;Cluster on eth1 interface is 10.179.8.123 and 124 and vip 126&lt;/P&gt;&lt;P&gt;Security gateway interface on mgmt port is 1.179.8.194/28 gateway 10.179.8.193&lt;/P&gt;&lt;P&gt;Public ip interface on eth1-03 interface with 218.248.240.66/26&lt;/P&gt;&lt;P&gt;Nat ip 218.248.240.65/32. And server ip 10.179.8.81/32.&lt;/P&gt;&lt;P&gt;Traffic has been accepted and nat translation also fine.&lt;/P&gt;</description>
    <pubDate>Tue, 20 Aug 2024 18:02:52 GMT</pubDate>
    <dc:creator>Surya24d</dc:creator>
    <dc:date>2024-08-20T18:02:52Z</dc:date>
    <item>
      <title>Dnat issue in the firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224098#M42999</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm running checkpoint firewall with R81 version in cluster mode.&lt;/P&gt;&lt;P&gt;My servers and security gateway subnets are different.&lt;/P&gt;&lt;P&gt;When I'm trying to use destination nat from&amp;nbsp; outside interface eth1-03 to eth1-01(servers lan interface) http traffic is accepted in the logs but web page not opening.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Servers interface 10.179.8.0/25 with gateway 10.179.8.1 connected to l3 switch.&lt;/P&gt;&lt;P&gt;From there connected to Eth1-01 interface ip 10.179.8.125&lt;/P&gt;&lt;P&gt;Cluster on eth1 interface is 10.179.8.123 and 124 and vip 126&lt;/P&gt;&lt;P&gt;Security gateway interface on mgmt port is 1.179.8.194/28 gateway 10.179.8.193&lt;/P&gt;&lt;P&gt;Public ip interface on eth1-03 interface with 218.248.240.66/26&lt;/P&gt;&lt;P&gt;Nat ip 218.248.240.65/32. And server ip 10.179.8.81/32.&lt;/P&gt;&lt;P&gt;Traffic has been accepted and nat translation also fine.&lt;/P&gt;</description>
      <pubDate>Tue, 20 Aug 2024 18:02:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224098#M42999</guid>
      <dc:creator>Surya24d</dc:creator>
      <dc:date>2024-08-20T18:02:52Z</dc:date>
    </item>
    <item>
      <title>Re: Dnat issue in the firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224142#M43019</link>
      <description>&lt;P&gt;See if the routing works both ways and also ARPs. The only reason it is not working is about connectivity. Run traces on GW side and server side to see where it's failing&lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2024 08:23:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224142#M43019</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2024-08-21T08:23:01Z</dc:date>
    </item>
    <item>
      <title>Re: Dnat issue in the firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224156#M43024</link>
      <description>&lt;P&gt;I agree with &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;but to be sure is the server really using a /32 netmask does it have multiple NICs?&lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2024 11:52:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Dnat-issue-in-the-firewall/m-p/224156#M43024</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-08-21T11:52:10Z</dc:date>
    </item>
  </channel>
</rss>

