Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Blason_R
MVP Gold
MVP Gold

How do I NAT separate EPM server so that clients can connect over internet

Hi Team,

 

I have setup EPM R81 as a dedicated server while my perimeter firewalls are Check Point 6400 cluster with Magmt server. Now since I setup EPM server wondering how do I setup NAT so that clients connecting to EPM can connect over internet?

EPM server does not have a NAT option hence wondering what option should I apply? I do not have any Policy server.

 

TIA

Blason R

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
5 Replies
Chris_Atkinson
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Manual, static where needed.

There is a white paper here that describes an approach including NAT.

https://community.checkpoint.com/t5/Endpoint/White-Paper-R80-20-Endpoint-Policy-Server-in-DMZ-for-Ex...

CCSM R77/R80/ELITE
0 Kudos
Blason_R
MVP Gold
MVP Gold

Agree and thanks for the paper - However is it mandatory that we need to have policy server to NAT the traffic? What if customer has not purchased a policy server license?

 

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
Chris_Atkinson
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Not mandatory to my knowledge. Note that policy server licenses entitlements may already be covered depending on your EPM license, refer: sk61832

 

CCSM R77/R80/ELITE
0 Kudos
Blason_R
MVP Gold
MVP Gold

Surprisingly - I followed that and I am on R81. However I am not seeing NAT tab in smart console for my policy server. Is something changed in R81?

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
Blason_R
MVP Gold
MVP Gold

This is really weird. NAT Tab is not appearing in my smart console. Is this a  bug or anything that needs to be activated?

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events