Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Blason_R
Leader
Leader

How do I NAT separate EPM server so that clients can connect over internet

Hi Team,

 

I have setup EPM R81 as a dedicated server while my perimeter firewalls are Check Point 6400 cluster with Magmt server. Now since I setup EPM server wondering how do I setup NAT so that clients connecting to EPM can connect over internet?

EPM server does not have a NAT option hence wondering what option should I apply? I do not have any Policy server.

 

TIA

Blason R

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
5 Replies
Chris_Atkinson
Employee Employee
Employee

Manual, static where needed.

There is a white paper here that describes an approach including NAT.

https://community.checkpoint.com/t5/Endpoint/White-Paper-R80-20-Endpoint-Policy-Server-in-DMZ-for-Ex...

CCSM R77/R80/ELITE
0 Kudos
Blason_R
Leader
Leader

Agree and thanks for the paper - However is it mandatory that we need to have policy server to NAT the traffic? What if customer has not purchased a policy server license?

 

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
Chris_Atkinson
Employee Employee
Employee

Not mandatory to my knowledge. Note that policy server licenses entitlements may already be covered depending on your EPM license, refer: sk61832

 

CCSM R77/R80/ELITE
0 Kudos
Blason_R
Leader
Leader

Surprisingly - I followed that and I am on R81. However I am not seeing NAT tab in smart console for my policy server. Is something changed in R81?

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
Blason_R
Leader
Leader

This is really weird. NAT Tab is not appearing in my smart console. Is this a  bug or anything that needs to be activated?

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events