<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LAN to LAN NAT setup but no traffic in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/LAN-to-LAN-NAT-setup-but-no-traffic/m-p/249959#M12723</link>
    <description>&lt;P&gt;A Server object will use the WAN IP as a HIDE NAT address when you tick the "F&lt;SPAN&gt;orce all traffic back to this gateway."&lt;BR /&gt;It definitely requires translating the source (HIDE behind LAN IP) and destination (STATIC) in a single rule.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 27 May 2025 20:15:45 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2025-05-27T20:15:45Z</dc:date>
    <item>
      <title>LAN to LAN NAT setup but no traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/LAN-to-LAN-NAT-setup-but-no-traffic/m-p/249900#M12714</link>
      <description>&lt;P&gt;I have setup a NAT to expose a web server but it needs to be exposed to another LAN port rather than the internet.&amp;nbsp; Each LAN port has its own network etc and the NAT and Policy all seems to be configured ok.&amp;nbsp; When I test I can see the traffic in the security log and it is accepted and has the correct translations etc but no traffic ever hits the web server.&amp;nbsp; I tried using the tcpdump tools with various filters but it never captures any packets for the destination?&lt;/P&gt;&lt;P&gt;I tried to use the add server wizard but when I select to force all traffic back to this gateway it uses the external wan IP as the translated source and not the LAN address hence I had to setup the NAT manually.&lt;/P&gt;&lt;P&gt;Is this configuration supported?&lt;/P&gt;&lt;P&gt;Summary:&lt;/P&gt;&lt;P&gt;Destination IP is NAT`d from 10.80.16.8 to 10.101.52.75&lt;/P&gt;&lt;P&gt;Source IP is NAT`d from any on 10.215.0.0 to FW IP on web server network 10.101.52.254&lt;/P&gt;&lt;P&gt;Static route on firewall to send traffic to 10.215.0.0 out via 10.80.16.1&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 10:43:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/LAN-to-LAN-NAT-setup-but-no-traffic/m-p/249900#M12714</guid>
      <dc:creator>Martin13</dc:creator>
      <dc:date>2025-05-27T10:43:50Z</dc:date>
    </item>
    <item>
      <title>Re: LAN to LAN NAT setup but no traffic</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/LAN-to-LAN-NAT-setup-but-no-traffic/m-p/249959#M12723</link>
      <description>&lt;P&gt;A Server object will use the WAN IP as a HIDE NAT address when you tick the "F&lt;SPAN&gt;orce all traffic back to this gateway."&lt;BR /&gt;It definitely requires translating the source (HIDE behind LAN IP) and destination (STATIC) in a single rule.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 20:15:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/LAN-to-LAN-NAT-setup-but-no-traffic/m-p/249959#M12723</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-27T20:15:45Z</dc:date>
    </item>
  </channel>
</rss>

