Hi Checkmates,
I have a standalone box on VM, I'm trying to create a DNAT rule for servers that are directly connected to CP box.
#################
Firewall interfaces :
10.10.10.101 -eth0
20.20.20.101- eth2
#################
I have servers behind each of these interfaces, I'm trying to create a DNAT for the web server manually, Below are the steps that I followed.
1>Created a DNAT rule.
2>Created a proxy ARP entry in WebUI.
3>Enabled manual proxy in global config.
4>Installed policy.
Web server 10.10.10.10
Client - 20.20.20.10
##############
Below is the proxy arp o/p from cli
[Expert@CheckPoint_SA:0]# fw ctl arp
(20.20.20.105) at 00-0c-29-12-90-66
[Expert@CheckPoint_SA:0]# ifconfig eth2
eth2 Link encap:Ethernet HWaddr 00:0C:29:12:90:66
inet addr:20.20.20.101 Bcast:20.20.20.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:2854 errors:0 dropped:0 overruns:0 frame:0
TX packets:180 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:265199 (258.9 KiB) TX bytes:10990 (10.7 KiB)
==========
I have attached screenshots for the NAT rule and the access rule .
Can someone please help me figure out what's happening here!
=========
WR,
FH