<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Access Policy local subnets in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133995#M6025</link>
    <description>&lt;P&gt;Hi PhoneBoy&lt;/P&gt;&lt;P&gt;I am managing the 1530 R80.20&amp;nbsp; from Smart-1 Cloud so using the Access Policy from there&lt;BR /&gt;would the same still apply?&lt;BR /&gt;&lt;BR /&gt;thank you&lt;/P&gt;</description>
    <pubDate>Sun, 14 Nov 2021 11:00:57 GMT</pubDate>
    <dc:creator>Bazz_Tars</dc:creator>
    <dc:date>2021-11-14T11:00:57Z</dc:date>
    <item>
      <title>Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133769#M6019</link>
      <description>&lt;P&gt;Hi&lt;BR /&gt;&lt;BR /&gt;Need&amp;nbsp; clarification please&lt;/P&gt;&lt;P&gt;I have the following local network&amp;nbsp; LAN ports&amp;nbsp; configured on a SMB 1530&amp;nbsp; and managed via smart 1 Cloud&lt;/P&gt;&lt;P&gt;-&amp;nbsp; no vlan&amp;nbsp; - no bridge , running as separate networks&lt;/P&gt;&lt;P&gt;&amp;nbsp;port 2&amp;nbsp; - 192.168.8.254 /24&lt;/P&gt;&lt;P&gt;&amp;nbsp;port 3&amp;nbsp; - 172.16.1.254&amp;nbsp; /24&lt;/P&gt;&lt;P&gt;&amp;nbsp;port 4&amp;nbsp; &amp;nbsp; &amp;nbsp;172.16.2.254&amp;nbsp; /24&lt;/P&gt;&lt;P&gt;For these LAN subnets to communicate&amp;nbsp; with each other:&lt;/P&gt;&lt;P&gt;1. Do I need to create an allow Access control rules between the subnets&lt;/P&gt;&lt;P&gt;2. Since I am doing&amp;nbsp; HIDE NAT on the those subnets do I then need to add a manual NAT keeping the original source IP address ?&lt;BR /&gt;&lt;BR /&gt;I did some initial tests and seems I can route between those subnets without the&amp;nbsp; above in place&lt;/P&gt;&lt;P&gt;Just need to know what is best practice&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Nov 2021 21:53:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133769#M6019</guid>
      <dc:creator>Bazz_Tars</dc:creator>
      <dc:date>2021-11-10T21:53:21Z</dc:date>
    </item>
    <item>
      <title>Re: Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133965#M6020</link>
      <description>&lt;P&gt;Depends on this setting:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14265i8B35817C01E46B92/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;If you have it set to standard, it operates as it's working for you now.&lt;BR /&gt;If you have it set to strict, then you need to configure specific rules (both for access and NAT).&lt;/P&gt;</description>
      <pubDate>Sat, 13 Nov 2021 00:41:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133965#M6020</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-13T00:41:59Z</dc:date>
    </item>
    <item>
      <title>Re: Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133982#M6023</link>
      <description>&lt;P&gt;Set up brand new 1530 for customer recently, what phoneboy said is exactly right!&lt;/P&gt;</description>
      <pubDate>Sun, 14 Nov 2021 03:57:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133982#M6023</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-11-14T03:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133995#M6025</link>
      <description>&lt;P&gt;Hi PhoneBoy&lt;/P&gt;&lt;P&gt;I am managing the 1530 R80.20&amp;nbsp; from Smart-1 Cloud so using the Access Policy from there&lt;BR /&gt;would the same still apply?&lt;BR /&gt;&lt;BR /&gt;thank you&lt;/P&gt;</description>
      <pubDate>Sun, 14 Nov 2021 11:00:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/133995#M6025</guid>
      <dc:creator>Bazz_Tars</dc:creator>
      <dc:date>2021-11-14T11:00:57Z</dc:date>
    </item>
    <item>
      <title>Re: Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/134017#M6026</link>
      <description>&lt;P&gt;Is a similar screen accessible from the local appliance in that case?&lt;BR /&gt;&lt;SPAN&gt;I don’t have a centrally managed SMB appliance handy to check.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Nov 2021 00:04:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/134017#M6026</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-15T00:04:58Z</dc:date>
    </item>
    <item>
      <title>Re: Access Policy local subnets</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/134028#M6027</link>
      <description>&lt;P&gt;No - you will only see the tabs:&lt;/P&gt;
&lt;DIV class="page" title="Page 57"&gt;
&lt;DIV class="layoutArea"&gt;
&lt;DIV class="column"&gt;
&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Home&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;-&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Device&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;-&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Users &amp;amp; Objects&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;-&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Logs &amp;amp; Monitoring&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;So all other configuration is managed from Cloud Dashboard.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Mon, 15 Nov 2021 06:38:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Access-Policy-local-subnets/m-p/134028#M6027</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-11-15T06:38:37Z</dc:date>
    </item>
  </channel>
</rss>

