- CheckMates
- :
- Products
- :
- Quantum
- :
- SMB Gateways (Spark)
- :
- Re: NAT not able to access from internal network
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
NAT not able to access from internal network
Hi,
I have a question about setting up NAT on checkpoint 450.
So after I used the wizard on "Active Devices", save as a machine to "server". I was able to connect to the server from external network. However, from within the network, I am unable to.
Here's some more of the settings I set:
Access - All Zones
NAT - Hide behind gateway.
Any pointers?
Thanks!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I assume you mean a 750, which is an SMB appliance.
In your server object, did you check the option under Advanced?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes that was checked but still didn't work
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you done a tcpdump to see what the traffic looks like?
I suspect you'll have to get the TAC involved.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
I think i figured it out. I think there's a UI bug somewhere.
If you create your server node from the "active device" page, I believe the routes are configured differently when you create the server node from the actual server page. After multiple attempts, if I create the server object from the actual server page, it works.
Bug?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
How could you do that ? On my 730, Home > Monitoring > Active Devices has no option to add a server, and neither has Logs & Monitoring > Status > Active Devices ...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Right-click on the object in the Active Devices view, choose Save-As > Server.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@PhoneBoy wrote:
Right-click on the object in the Active Devices view, choose Save-As > Server.
I see - i can not do that, also not from menue, as this is only possible for IPs without defined objects. Definitely a bug, this feature should make defining servers more handy but actually makes servers partly unusable...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I suppose what would be a nice addition would be a way to convert from one to the other.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Do you have a response from TAC yet ?
