<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: firewall setup on 2 non-routeable networks in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17411#M596</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you describe should work without any configuration whatsoever, assuming a factory default configuration.&lt;/P&gt;&lt;P&gt;This is because:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;LAN to WAN traffic is by default permitted&lt;/LI&gt;&lt;LI&gt;LAN/LAN traffic is generally not filtered at all&lt;/LI&gt;&lt;LI&gt;Traffic destined to the WAN from the LAN should be hidden behind the WAN IP&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's what you should see in the NAT and Policy screens:&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-2 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76485_pastedImage_2.png" /&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76484_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should try to ping the relevant hosts from the gateway to ensure you're not experiencing some other sort of connectivity issue.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 18 Dec 2018 22:29:52 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2018-12-18T22:29:52Z</dc:date>
    <item>
      <title>firewall setup on 2 non-routeable networks</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17407#M592</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;I am still new to Checkpoints so forgive me if this seems dumb. I have 2 private networks but want to limit and restrict more access to the second network (LAN) side and only allow access to the DC ETC... this should be fairly straight forward but I am struggling with it. the WAN side is the regular business network. I can also move the WAN connection and reconfigure LAN port 4 if its easier.&amp;nbsp; thanks&lt;/P&gt;&lt;P&gt;&lt;IMG alt="example" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76466_example.jpg" /&gt;_&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 16:43:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17407#M592</guid>
      <dc:creator>Lee_Doran</dc:creator>
      <dc:date>2018-12-18T16:43:01Z</dc:date>
    </item>
    <item>
      <title>Re: firewall setup on 2 non-routeable networks</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17408#M593</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;also it is a 1200 r with &lt;SPAN lang="EN"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;R77.20.81&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 18:17:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17408#M593</guid>
      <dc:creator>Lee_Doran</dc:creator>
      <dc:date>2018-12-18T18:17:52Z</dc:date>
    </item>
    <item>
      <title>Re: firewall setup on 2 non-routeable networks</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17409#M594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It would help if you state your requirements in terms of:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;What host initiates the communication (LAN or WAN side)&lt;/LI&gt;&lt;LI&gt;What host will be the recipient of the connection (LAN or WAN side)&lt;/LI&gt;&lt;LI&gt;What services you intend to permit&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since you mention a DC (I assume you mean Datacenter) I assume the hosts may not be on the same subnet as your WAN interface.&lt;/P&gt;&lt;P&gt;That suggests you will have to adjust routing so hosts on your WAN know how to reach the LAN on your gateway.&lt;/P&gt;&lt;P&gt;Or you need to utilize NAT.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 18:25:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17409#M594</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-12-18T18:25:08Z</dc:date>
    </item>
    <item>
      <title>Re: firewall setup on 2 non-routeable networks</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17410#M595</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Dameon,&lt;/P&gt;&lt;P&gt;here are some answers to your questions&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;What host initiates the communication (LAN side )&lt;/LI&gt;&lt;LI&gt;What host will be the recipient of the connection (LAN for some WAN for others)&lt;/LI&gt;&lt;LI&gt;What services you intend to permit RDP/SQL/AD/WSUS server/Antivirus Will ping work?(probably not if using NAT)&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 21:22:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17410#M595</guid>
      <dc:creator>Lee_Doran</dc:creator>
      <dc:date>2018-12-18T21:22:46Z</dc:date>
    </item>
    <item>
      <title>Re: firewall setup on 2 non-routeable networks</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17411#M596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you describe should work without any configuration whatsoever, assuming a factory default configuration.&lt;/P&gt;&lt;P&gt;This is because:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;LAN to WAN traffic is by default permitted&lt;/LI&gt;&lt;LI&gt;LAN/LAN traffic is generally not filtered at all&lt;/LI&gt;&lt;LI&gt;Traffic destined to the WAN from the LAN should be hidden behind the WAN IP&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's what you should see in the NAT and Policy screens:&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-2 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76485_pastedImage_2.png" /&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76484_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should try to ping the relevant hosts from the gateway to ensure you're not experiencing some other sort of connectivity issue.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Dec 2018 22:29:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/firewall-setup-on-2-non-routeable-networks/m-p/17411#M596</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-12-18T22:29:52Z</dc:date>
    </item>
  </channel>
</rss>

