<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Routing vs NAT help - please be gentle in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231394#M44596</link>
    <description>&lt;P&gt;An example of some NO NAT rules actually appears in the Demo Mode policy (though I added an object to it).&lt;BR /&gt;You add them above the auto-generated rules, as shown here.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28291i5CDC5BFDE3A8CFD7/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 31 Oct 2024 15:09:20 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-10-31T15:09:20Z</dc:date>
    <item>
      <title>Routing vs NAT help - please be gentle</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231281#M44561</link>
      <description>&lt;P&gt;We have a Checkpoint R81.20 Gaia Security Gateway that is also our firewall and router. The Management server for the Security Gateway is a Cloud-1 controller. The firewall is running Gaia OS on a VM on ESXi 8.&lt;/P&gt;&lt;P&gt;I have the network divided into VLANs and then they all access each other through the R81.20 firewall. Each VLAN has a network interface on the gateway with a unique subnet. Everything is currently NATed between each network. I would like to find a way to route between the networks instead of NATing between the networks. For example if I look at SSH logs for connections between a client and a server, all of the client IPs show as coming from the gateway IP and not the IP Address of the client in the other VLAN.&lt;/P&gt;&lt;P&gt;I understand that this is probably a bit of a basic question and that if I don't understand routing vs NAT completely, I should find a consultant, which I may do. However, please let me know if what I describe next is totally wrong or if I am headed down the correct path.&lt;/P&gt;&lt;P&gt;Can Gaia act as our firewall for clients in the VLANs to access the internet AND allow me to route between the VLANs without having to use NAT?&lt;/P&gt;&lt;P&gt;Any help is most apprecaiated.&lt;/P&gt;&lt;P&gt;_Rob&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2024 19:40:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231281#M44561</guid>
      <dc:creator>Rob_Wood</dc:creator>
      <dc:date>2024-10-30T19:40:18Z</dc:date>
    </item>
    <item>
      <title>Re: Routing vs NAT help - please be gentle</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231300#M44572</link>
      <description>&lt;P&gt;Yes, this is possible, it's just a matter of configuring NAT correctly.&lt;BR /&gt;You will need to define some manual NO NAT rules (where original source/destination are specified and translated source/destination are "Original").&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2024 21:30:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231300#M44572</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-10-30T21:30:48Z</dc:date>
    </item>
    <item>
      <title>Re: Routing vs NAT help - please be gentle</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231304#M44575</link>
      <description>&lt;P&gt;Wow, the man, the myth, and the legend himself! Thank you&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;!&lt;/P&gt;&lt;P&gt;I will search for those settings and test some things out with some unpopulated VLANs.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2024 22:27:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231304#M44575</guid>
      <dc:creator>Rob_Wood</dc:creator>
      <dc:date>2024-10-30T22:27:18Z</dc:date>
    </item>
    <item>
      <title>Re: Routing vs NAT help - please be gentle</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231394#M44596</link>
      <description>&lt;P&gt;An example of some NO NAT rules actually appears in the Demo Mode policy (though I added an object to it).&lt;BR /&gt;You add them above the auto-generated rules, as shown here.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28291i5CDC5BFDE3A8CFD7/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2024 15:09:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Routing-vs-NAT-help-please-be-gentle/m-p/231394#M44596</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-10-31T15:09:20Z</dc:date>
    </item>
  </channel>
</rss>

