<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can't access static NATTed server behind remote peer network in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Can-t-access-static-NATTed-server-behind-remote-peer-network/m-p/113616#M21291</link>
    <description>&lt;P&gt;What log messages show on one or both ends when this happens?&lt;BR /&gt;Even if the guest network isn’t in the encryption domain, the NAT address for the guest network probably is in the encryption domain (implicitly).&lt;/P&gt;
&lt;P&gt;My guess is the guest network also needs to be in the encryption domain to fix this.&lt;BR /&gt;You should be able to prevent the guest network from accessing other things using access rules.&lt;/P&gt;</description>
    <pubDate>Tue, 16 Mar 2021 04:37:04 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-03-16T04:37:04Z</dc:date>
    <item>
      <title>Can't access static NATTed server behind remote peer network</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Can-t-access-static-NATTed-server-behind-remote-peer-network/m-p/113613#M21290</link>
      <description>&lt;P&gt;Hello mates.&lt;/P&gt;
&lt;P&gt;There is ipsec VPN tunnel between two checkpoints. Branch has two networks for staff and guests. Staff network 192.168.1.0/24 is on the VPN domain and guest network 192.168.2.0/24 is not added to the VPN domain. web server is behind headquarter firewall and static NATted. We can access that server from internet everywhere but just can't access from branch guest network. How to access that static NATted web server from guest network.?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="topl2.png" style="width: 801px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/11011i04D69D380313E163/image-size/large?v=v2&amp;amp;px=999" role="button" title="topl2.png" alt="topl2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;DIV id="tinyMceEditorBaasanjargal_Ts_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Mar 2021 01:51:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Can-t-access-static-NATTed-server-behind-remote-peer-network/m-p/113613#M21290</guid>
      <dc:creator>Baasanjargal_Ts</dc:creator>
      <dc:date>2021-03-16T01:51:06Z</dc:date>
    </item>
    <item>
      <title>Re: Can't access static NATTed server behind remote peer network</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Can-t-access-static-NATTed-server-behind-remote-peer-network/m-p/113616#M21291</link>
      <description>&lt;P&gt;What log messages show on one or both ends when this happens?&lt;BR /&gt;Even if the guest network isn’t in the encryption domain, the NAT address for the guest network probably is in the encryption domain (implicitly).&lt;/P&gt;
&lt;P&gt;My guess is the guest network also needs to be in the encryption domain to fix this.&lt;BR /&gt;You should be able to prevent the guest network from accessing other things using access rules.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Mar 2021 04:37:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Can-t-access-static-NATTed-server-behind-remote-peer-network/m-p/113616#M21291</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-03-16T04:37:04Z</dc:date>
    </item>
  </channel>
</rss>

