- CheckMates
- :
- Products
- :
- CloudMates Products
- :
- Cloud Network Security
- :
- Discussion
- :
- Cloudguard Hide NAT in Azure
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Cloudguard Hide NAT in Azure
Hi want to use 3 x different public ip address for hide nat in Azure.
The traffic is initiated from the server in Azure to external .
The servers so not provide external services so the static nat is not sutable .
Can i do sub interfaces of the external interface of the firewall & Assign the additional public ips's?
Any help here is appreciated
Rule
source destination services
server 1 any any
server 2 any any
server 3 any any
Nat Rule
original source translated source (hide)
server 1 public 1
server 2 public 2
server 3 public 3
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
apologies on the long delay, this solution worked perfectly.
This was on a single gateway
Many thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
R80.20 is the version
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi thanks for the reply,
it still does answer my question, how do i apply 3 separate hide nat's using three different public ip addresses.
I cannot use public addresses in policy as external & internal interfaces are private.
I need to know if this is possible please.
Best Regards,
Tom
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
However, in this case, the final NAT to public IPs is done via Azure, not by the Check Point gateway.
If I understand how Azure works, you have to assign the VM a private IP for each Public IP you want.
Your HIDE NAT rules would, therefore, be in terms of these private IPs.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
for a single Gateway, this should work:
https://community.checkpoint.com/t5/CloudGuard-IaaS/STATIC-NAT-in-Azure-Checkpoint/m-p/75802#M1635
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi I will test this asap & get back to you
very appreciated
Tom
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Are you using a cluster? Does that work in that scenario?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
apologies on the long delay, this solution worked perfectly.
This was on a single gateway
Many thanks