<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Access to DMZ from internet in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/53695#M2100</link>
    <description>&lt;P&gt;&lt;SPAN&gt;Hello all dear. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I would like help setting up an internet access to a web server located in a DMZ. I created a manual NAT to forward packets to NAT. but I can not access the server. Here are my rules and here is my schema:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Outgoin Trafic&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="à.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1223i2C173A35400E3FE0/image-size/large?v=v2&amp;amp;px=999" role="button" title="à.PNG" alt="à.PNG" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.PNG" style="width: 719px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1222iE838A42754C07F22/image-dimensions/719x31?v=v2" width="719" height="31" role="button" title="1.PNG" alt="1.PNG" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1219iB36DDEAA2B2E208F/image-size/large?v=v2&amp;amp;px=999" role="button" title="2.PNG" alt="2.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="checkpoint.png" style="width: 939px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1220i45EE867828082CB7/image-size/large?v=v2&amp;amp;px=999" role="button" title="checkpoint.png" alt="checkpoint.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;thank&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 17 May 2019 13:03:16 GMT</pubDate>
    <dc:creator>Junior</dc:creator>
    <dc:date>2019-05-17T13:03:16Z</dc:date>
    <item>
      <title>Access to DMZ from internet</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/53695#M2100</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello all dear. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I would like help setting up an internet access to a web server located in a DMZ. I created a manual NAT to forward packets to NAT. but I can not access the server. Here are my rules and here is my schema:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Outgoin Trafic&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="à.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1223i2C173A35400E3FE0/image-size/large?v=v2&amp;amp;px=999" role="button" title="à.PNG" alt="à.PNG" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.PNG" style="width: 719px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1222iE838A42754C07F22/image-dimensions/719x31?v=v2" width="719" height="31" role="button" title="1.PNG" alt="1.PNG" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1219iB36DDEAA2B2E208F/image-size/large?v=v2&amp;amp;px=999" role="button" title="2.PNG" alt="2.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="checkpoint.png" style="width: 939px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1220i45EE867828082CB7/image-size/large?v=v2&amp;amp;px=999" role="button" title="checkpoint.png" alt="checkpoint.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;thank&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 17 May 2019 13:03:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/53695#M2100</guid>
      <dc:creator>Junior</dc:creator>
      <dc:date>2019-05-17T13:03:16Z</dc:date>
    </item>
    <item>
      <title>Re: Access to DMZ from internet</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/53822#M2101</link>
      <description>&lt;P&gt;First of all, this looks like an SMB question based on the UI snapshots and the fact you've mentioned , so I'm moving this question there.&lt;BR /&gt;Second, all you've configured access rules, but nothing related to NAT.&lt;BR /&gt;It also looks like you only have one public IP, which is actually assigned to a different router.&lt;BR /&gt;I assume that router is forwarding all traffic to 172.16.10.1.&lt;/P&gt;
&lt;P&gt;In this case, you need to configure a Server object.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-05-19 at 7.02.26 PM.png" style="width: 794px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1230i25F1629B88D0132E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-05-19 at 7.02.26 PM.png" alt="Screen Shot 2019-05-19 at 7.02.26 PM.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-05-19 at 7.02.39 PM.png" style="width: 787px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1231i288E11A91EFE398E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-05-19 at 7.02.39 PM.png" alt="Screen Shot 2019-05-19 at 7.02.39 PM.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-05-19 at 7.02.55 PM.png" style="width: 794px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1232i23CB880ADF151F0E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-05-19 at 7.02.55 PM.png" alt="Screen Shot 2019-05-19 at 7.02.55 PM.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-05-19 at 7.03.12 PM.png" style="width: 788px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1233iA836982E1777ED00/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-05-19 at 7.03.12 PM.png" alt="Screen Shot 2019-05-19 at 7.03.12 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;You will need to use that server object in the rulebase (i.e. to accept the traffic from the Internet).&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2019 02:05:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/53822#M2101</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-05-20T02:05:51Z</dc:date>
    </item>
    <item>
      <title>Re: Access to DMZ from internet</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/54198#M2118</link>
      <description>&lt;P&gt;Hello PhoneBoy,&lt;/P&gt;&lt;P&gt;thank you for your guideline.&lt;/P&gt;&lt;P&gt;i try it now and come back to you.&lt;/P&gt;&lt;P&gt;thank!&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2019 08:03:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-to-DMZ-from-internet/m-p/54198#M2118</guid>
      <dc:creator>Junior</dc:creator>
      <dc:date>2019-05-23T08:03:05Z</dc:date>
    </item>
  </channel>
</rss>

