- CheckMates
- :
- Products
- :
- CloudMates Products
- :
- Cloud Network Security
- :
- Discussion
- :
- Cloudguard NAT
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Jump to solution
Cloudguard NAT
Hi,
We are implementing AWS Cloudguard Ingress gateway as below:
Public -> NLB -> Cloudguard -> ALB
Traffic from NLB, we are seeing the destination is our firewall IP Address. Is this normal?
We tried to do NAT and translate it to the ALB object, the problem is NAT rule doesn't accept this because destination translation cannot use LB objects.
Can't find a guide for this.
1 Solution
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, the traffic is directed to the firewall IP.
I suspect you will need to follow the instructions here: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...
Yes, this is for ELBs on the inside, but the concept/configuration should be the same.
The Logical Server object does the necessary NAT in this case.
I suspect you will need to follow the instructions here: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...
Yes, this is for ELBs on the inside, but the concept/configuration should be the same.
The Logical Server object does the necessary NAT in this case.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
Thank you so much for your reply, will try it out immediately.