<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAT Rule Number 0 R77.30 in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120396#M22381</link>
    <description>&lt;P&gt;fw monitor should show the traffic at each stage of the firewall chain.&lt;BR /&gt;You should be able to see if it is actually natting the traffic appropriately.&lt;/P&gt;</description>
    <pubDate>Fri, 04 Jun 2021 22:32:24 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-06-04T22:32:24Z</dc:date>
    <item>
      <title>NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117428#M21871</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp;We have recently updated our NTP server IP address and on one of the CP Cluster noticed that NTP sync is not happening. While I was checking the logs, the specific NTP traffic is hitting a NAT rule number 0. But on the cluster there is no Hide behind gateway option is not configured. Also I checked the firewall object and NAT is not enabled. What are the other possibilities that result in this behaviour?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;I can see the UUID of the NAT rule. With the help of that can I trace the NAT rule in smart dashboard?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank You in Advance&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 02 May 2021 05:30:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117428#M21871</guid>
      <dc:creator>m4_prashanth</dc:creator>
      <dc:date>2021-05-02T05:30:14Z</dc:date>
    </item>
    <item>
      <title>Re: NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117431#M21872</link>
      <description>&lt;P&gt;It might be possible to search using the UID but I would recommend is upgrading from R77.30 to R80.40 or R81.&lt;/P&gt;
&lt;P&gt;Searching using UID in NAT is possible in current versions.&lt;/P&gt;
&lt;P&gt;We stopped supporting R77.30 in September 2019:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.checkpoint.com/support-services/support-life-cycle-policy/#software-support" target="_blank"&gt;https://www.checkpoint.com/support-services/support-life-cycle-policy/#software-support&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 02 May 2021 05:45:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117431#M21872</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2021-05-02T05:45:43Z</dc:date>
    </item>
    <item>
      <title>Re: NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117434#M21875</link>
      <description>&lt;P&gt;What is the precise source of the NTP traffic?&lt;BR /&gt;If it’s from one of the cluster members, traffic is always hidden behind the cluster IP by default unless disabled by:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk34180&amp;amp;partition=Advanced&amp;amp;product=ClusterXL" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk34180&amp;amp;partition=Advanced&amp;amp;product=ClusterXL&lt;/A&gt;,&lt;/P&gt;
&lt;P&gt;But like my colleague suggests, R77.30 has been End of Support for a while now and you should upgrade to a supported release.&lt;/P&gt;</description>
      <pubDate>Sun, 02 May 2021 06:59:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/117434#M21875</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-05-02T06:59:25Z</dc:date>
    </item>
    <item>
      <title>Re: NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120356#M22374</link>
      <description>&lt;P&gt;Thank you very much for the KB. Actually the traffic was getting NAT to the cluster vip and after allowing the cluster VIP for NTP, firewall was able to sync with NTP server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have couple of questions:&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Though the traffic getting NAT to cluster VIP when I run the tcpdump utility on the gateway I still see the physical ip of the interface ip trying to connect to the NTP server. Is there any other options available to capture the traffic from the egress interface to confirm the source ip?&lt;/P&gt;&lt;P&gt;Further I have noticed though&amp;nbsp;&lt;EM&gt;perform_cluster_hide_fold &lt;/EM&gt;option was enabled for R80.20 cluster similar to R77.20, on the NTP server I’m receiving the traffic on the physical interface ip rather than cluster VIP. Is there any other options that will override the NAT.&lt;/P&gt;&lt;P&gt;Thanks in advance&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jun 2021 12:47:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120356#M22374</guid>
      <dc:creator>m4_prashanth</dc:creator>
      <dc:date>2021-06-04T12:47:00Z</dc:date>
    </item>
    <item>
      <title>Re: NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120396#M22381</link>
      <description>&lt;P&gt;fw monitor should show the traffic at each stage of the firewall chain.&lt;BR /&gt;You should be able to see if it is actually natting the traffic appropriately.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jun 2021 22:32:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120396#M22381</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-06-04T22:32:24Z</dc:date>
    </item>
    <item>
      <title>Re: NAT Rule Number 0 R77.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120400#M22382</link>
      <description>&lt;P&gt;Thank you very much&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 05 Jun 2021 00:11:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/NAT-Rule-Number-0-R77-30/m-p/120400#M22382</guid>
      <dc:creator>m4_prashanth</dc:creator>
      <dc:date>2021-06-05T00:11:03Z</dc:date>
    </item>
  </channel>
</rss>

