Any help on the below please?
Client is running a small network however part of the LAN network goes through a internal gateway device where that portion of that LAN subnet is terminated.
That GW device then NAT's those addresses behind its direct connection it has to the Checkpoint Firewall using a /30 address range
When I look at the FW logs I only see that GW devices IP <10.0.8.2>, the Firewall then also does not apply any of the policies to the devices behind that internal GW
Is there anyway for the Firewall to see that Natted subnet so polices can be applied?
It did initially pick up that subnet as spoofed addresses, however I disabled that in the CLI so now it only see the internal GW address and any devices that are directly connected to the firewall on the WiFi
Device<10.0.2.6 --- GW<10.0.2.1> NAT GW direct connection to fw <10.0.8.2> ---- <10.0.8.1>FW --- WAN fibre breakout