My IPS just provided me with a 1530 Appliance running R80.20.15, in place of another vendor's appliance which had failed.
In my LAN I am running RRAS on a Microsoft Server 2019 to provide IPSec/LT2P access to my LAN from the Internet. This server is NAT-ed behind the appliance firewall.
My ISP does not know how to enable this. I know nothing about Checkpoint appliances either,
I think what I need to do is:
- Define new Service ESP (IP Protocol 50)
- Define new Service AH (IP Protocol 51)
- Allow UDP Ports 500, 4500, and 1701
- Forward all of the above IP protocols and UDP ports to the RRAS server in the LAN according to its NAT-ed address.
Am I correct? Is there an error in what I wrote? Did I forget something?
If my list of tasks is correct, I would be grateful for painfully explicit instructions as to how to accomplish the above.
TIA!