<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Manual static NAT query in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34908#M7339</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here you can find a flowchart of how nat is implemented:&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" data-containerid="2030" data-containertype="14" data-objectid="3041" data-objecttype="102" href="https://community.checkpoint.com/docs/DOC-3041-r80x-security-gateway-architecture-logical-packet-flow"&gt;R80.x Security Gateway Architecture (Logical Packet Flow)&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;Otherwise Timothy described it well.&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" data-containerid="-1" data-containertype="-1" data-objectid="55229" data-objecttype="3" href="https://community.checkpoint.com/people/h.ank2614aef2-c5d1-3f73-bbbd-45c59b9e2728"&gt;Heiko&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 03 Aug 2018 11:19:54 GMT</pubDate>
    <dc:creator>HeikoAnkenbrand</dc:creator>
    <dc:date>2018-08-03T11:19:54Z</dc:date>
    <item>
      <title>Manual static NAT query</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34906#M7337</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;STRONG&gt;Dear Mates ...I have a silly question. I configured below manual static NAT in my checkpoint firewall&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Src&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Destination&amp;nbsp; &amp;nbsp; Src (Static NAT)&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Dest (Static NAT)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;10.10.10.10&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;20.20.20.20&amp;nbsp; &amp;nbsp; &amp;nbsp;30.30.30.30&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 40.40.40.40&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In this case if I want to allow connection from Source = 40.40.40.40&amp;nbsp; dest= 30.30.30.30, do I need to configured reverse Manual Static NAT statement to allow this traffic OR does above NAT rule will be sufficient as it's configured as manual static.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 28 Jun 2018 12:58:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34906#M7337</guid>
      <dc:creator>Shivraj_Alure</dc:creator>
      <dc:date>2018-06-28T12:58:48Z</dc:date>
    </item>
    <item>
      <title>Re: Manual static NAT query</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34907#M7338</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Assuming you are already allowing traffic from 10.10.10.10 to 20.20.20.20 in your Firewall/Network access layer policy, connections initiated from 10.10.10.10 to 20.20.20.20 will automatically have the return traffic NATted back to what it needs to be without a second NAT rule.&amp;nbsp; However if you want 20.20.20.20 to be able to initiate new connections to 10.10.10.10 you will need a second NAT rule (and explicitly permit it in the Firewall/Network access layer as well).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;--&lt;BR /&gt; Second Edition of my "Max Power" Firewall Book&lt;BR /&gt; Now Available at &lt;A href="http://www.maxpowerfirewalls.com" target="_blank"&gt;http://www.maxpowerfirewalls.com&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 28 Jun 2018 15:34:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34907#M7338</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2018-06-28T15:34:54Z</dc:date>
    </item>
    <item>
      <title>Re: Manual static NAT query</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34908#M7339</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here you can find a flowchart of how nat is implemented:&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" data-containerid="2030" data-containertype="14" data-objectid="3041" data-objecttype="102" href="https://community.checkpoint.com/docs/DOC-3041-r80x-security-gateway-architecture-logical-packet-flow"&gt;R80.x Security Gateway Architecture (Logical Packet Flow)&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;Otherwise Timothy described it well.&lt;/P&gt;&lt;P style="min-height: 8pt;"&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" data-containerid="-1" data-containertype="-1" data-objectid="55229" data-objecttype="3" href="https://community.checkpoint.com/people/h.ank2614aef2-c5d1-3f73-bbbd-45c59b9e2728"&gt;Heiko&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2018 11:19:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Manual-static-NAT-query/m-p/34908#M7339</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2018-08-03T11:19:54Z</dc:date>
    </item>
  </channel>
</rss>

