<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Logical Server not working (R.80.30) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81486#M80725</link>
    <description>That helps.&lt;BR /&gt;What do you see on a tcpdump when you try and access 10.0.0.35 from the internal interface?&lt;BR /&gt;What does fw ctl arp say?&lt;BR /&gt;In general, a proxy-arp should be created, but perhaps it's not in this case.</description>
    <pubDate>Thu, 09 Apr 2020 20:05:35 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2020-04-09T20:05:35Z</dc:date>
    <item>
      <title>Logical Server not working (R.80.30)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81255#M80722</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created several logical servers for load balancing traffic to a group of Internal servers.&lt;/P&gt;&lt;P&gt;The logical servers with Public Virtual IP addresses inwards to the Internal servers work fine, but the logical servers with Internal Virtual IP addresses&amp;nbsp; towards internal servers are not working.&amp;nbsp;&lt;/P&gt;&lt;P&gt;All the Virtual IP addresses are on same subnets as the Gateways interfaces.&lt;/P&gt;&lt;P&gt;Only difference being that the addresses on the Public Interface has entries in $FWDIR/conf/local.arp.&lt;/P&gt;&lt;P&gt;Should I create entries for the Internal Virtual IP addresses in $FWDIR/conf/local.arp ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards PM&lt;/P&gt;</description>
      <pubDate>Wed, 08 Apr 2020 05:50:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81255#M80722</guid>
      <dc:creator>P_M</dc:creator>
      <dc:date>2020-04-08T05:50:00Z</dc:date>
    </item>
    <item>
      <title>Re: Logical Server not working (R.80.30)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81387#M80723</link>
      <description>I'm confused what you mean by "internal virtual IP addresses."&lt;BR /&gt;There should be servers that answer on those IP addresses.&lt;BR /&gt;Can you describe your configuration in more detail?&lt;BR /&gt;Screenshots and network diagrams would also help.</description>
      <pubDate>Thu, 09 Apr 2020 00:09:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81387#M80723</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-09T00:09:37Z</dc:date>
    </item>
    <item>
      <title>Re: Logical Server not working (R.80.30)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81451#M80724</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Sorry I was not clear, and hereby make another attempt to explain my dilemma.&lt;/P&gt;&lt;P&gt;Below are the screenshots of the rule and the configuration for the Logical Server. I attach a diagram of the Network Topology.&lt;/P&gt;&lt;P&gt;The Internal VIP (Logical Server) has a private IP address&amp;nbsp; of 10.0.0.35 and is on a subnet on one of the FireWall Interface. Behind the Logical Server are two servers (servergroup) that are on the Internal network.&lt;/P&gt;&lt;P&gt;The Clients are on the Internal network, with private IP addresses, i.e. 10.1.2.29 for example, and the servers are in a Firewall segment (DMZ).&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="P_M_0-1586423450158.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5474i0006228AB76AD79F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="P_M_0-1586423450158.png" alt="P_M_0-1586423450158.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="P_M_1-1586423450165.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5475i1A4C228CB9FF83DF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="P_M_1-1586423450165.png" alt="P_M_1-1586423450165.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The External Logical server (with Public IP address) works, and on the External Interface there is Proxy Arp configured for the IP address for the Logical server.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Internal Logical server (with Private IP address) does not work, and if I understood CheckPoints Help manual right, then a Proxy Arp for this Logical Server would automatically be created during Publishing/Installation of the rule?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards&amp;nbsp;&lt;/P&gt;&lt;P&gt;Peter&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Apr 2020 13:40:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81451#M80724</guid>
      <dc:creator>P_M</dc:creator>
      <dc:date>2020-04-09T13:40:49Z</dc:date>
    </item>
    <item>
      <title>Re: Logical Server not working (R.80.30)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81486#M80725</link>
      <description>That helps.&lt;BR /&gt;What do you see on a tcpdump when you try and access 10.0.0.35 from the internal interface?&lt;BR /&gt;What does fw ctl arp say?&lt;BR /&gt;In general, a proxy-arp should be created, but perhaps it's not in this case.</description>
      <pubDate>Thu, 09 Apr 2020 20:05:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Logical-Server-not-working-R-80-30/m-p/81486#M80725</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-09T20:05:35Z</dc:date>
    </item>
  </channel>
</rss>

