Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Firewall_Head
Explorer

A simple question on Anti-spoofing ?

Hi Checkmates,

First, please have a look at the snap of my topology.Anti-spoofing.jpg
1> When I try to take SSH of the interface eth2 from PC1, why am I not denied the access by anti-spoofing, because I come with a different IP (10.10.10.10) to eth2 interface.

2> Will my request get internally routed within the Check Point GW and get accepted ?

Can somebody help me with my simple question.

Thanks in advance !

======

WR,

FH

0 Kudos
4 Replies
Alex-
Leader Leader
Leader

You come from eth1 with subnet 10.10.10.0/24 with an IP in that range, so anti-spoofing won't block you there.

The access control policy could allow or block you.

Anti-spoofing, depending how it's configured, will check the validity of the source IP incoming on any given interface, to put it simply.

 

Eth2 would perform anti-spoofing if you came in with 10.10.10.10 as source on that interface if you choose to match interface IP and range for instance.

0 Kudos
Firewall_Head
Explorer

Thanks for the reply @Alex- ,

So how many times is the traffic inspected at the firewall, won't it check the SRC IP is 10.10.10.10 and the DST is 20.20.20.0/24 and block it.

Can you put this step by step please ?

====

WR,

FH

0 Kudos
Timothy_Hall
Legend Legend
Legend

See here:

A Primer on Anti-spoofing

Attend my online "Be your Own TAC: Part Deux" CheckMates event
March 27th with sessions for both the EMEA and Americas time zones
0 Kudos
the_rock
Legend
Legend

Hey brother,

@Alex- is 100% right. Btw, check below, I find its basic, but an EXCELLENT reference.

Andy

https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topi...

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 18 Mar 2025 @ 09:30 AM (EET)

    CheckMates Live Greece

    Tue 25 Mar 2025 @ 12:00 PM (MDT)

    Salt Lake City: CPX 2025 Recap

    Tue 08 Apr 2025 @ 12:00 PM (MDT)

    Denver: CPX 2025 Recap
    CheckMates Events