- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
I've been tasked with configuring our gateways to support Cisco Expressway architecture with Hairpin/Reflected NAT?
I followed sk110019, but it doesn't have all the information I'm looking for. Has anybody have done this before that I can pick their brain?
Are you trying to access a public IP/resource which is NATed to an actually resource on your LAN/DMZ ?
Probably something like the answer I gave here: https://community.checkpoint.com/t5/Security-Gateways/Traffic-flow-in-between-C-to-S-via-Firewall-Ho...
Thanks, but TBH it's not a lot more helpful than the sk. I'm looking specifically for someone who has configured CP gateways to support the Cisco Expressway solution. I must be the only one! 😊
From the diagrams you’ve attached, which should have been done inline instead, it seems like Cisco Expressway might do some application aware stuff.
In which case, simple NAT rules may not work.
It also tells us nothing about your specific environment or what precisely you expect the gateway to do.
Regardless, it would help to know precisely what you configured, what didn’t work, and what troubleshooting steps (with precise results) you did.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY