- CheckMates
- :
- Products
- :
- CloudMates Products
- :
- Cloud Network Security
- :
- Discussion
- :
- src/dst check for RDS instances in AWS
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
src/dst check for RDS instances in AWS
Hi there,
As you know when deploying CloudGuard in AWS, you must turn off src/dst check. When dealing with RDS instances you cannot turn this option off. It looks like the only way a server behind a CloudGuard gateway can access an RDS instance on a different subnet is to create a NAT rule nat'ing the src IP to that of an IP on the same subnet as the RDS instance.
Is this true? Or is there another way?
Thx,
Ryan
0 Replies