- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hi All,
I tryed to pass pptp vpn through the CP (80.20) from outside use Proxy ARP IP-address. I mean chain Internet --> ProxyARP+HA Cluster--> Internal PPTP server. In logs I see accepted GRE traffic but connection from Internal PPTP server --> External client NATed by cluster external IP and not by IP which I need. And of course pptp connection do not establish in this case. Can CP use Proxy ARP ip addresses for GRE passthrough?
P/S Then I try use cluster IP for publictation this pptp server all works correctly.
I see NATed gre in the Smart console (screenshot attached).
As I understand it, I have to have a NAT rule for GRE, but I cannot create NAT exactly for the GRE protocol (very funny). So all I found is to create a NAT rule with ANY in the source service column and Original in the Translated services column. This is not very convenient if I have several rules for this address.Maybe is there a way to create a NAT rule for the GRE and not for ANY?
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY