- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Re: Port Forward to internal Server
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Port Forward to internal Server
Hello,
I want to apply a port forward to our new voip server which is locally behind the checkpoint appliance.
We established an alias (1.1.1.1) on the interface of the external IP (2.2.2.2) which we want to use.
The voip server has the IP 5.5.5.5 and ports 443 and 9000 need to be forwarded.
Only connections to the alias (1.1.1.1) should be forwarded to the internal server:
1.1.1.1:443 -> 5.5.5.5:443
1.1.1.1:9000 -> 5.5.5.5:9000
How do I set this up ? Its my first time tinkering around with Port Forwarding with the checkpoint appliance.
Regards
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I got the solution: I configured it manually and used the 1.1.1.1 as "Original Destination". Also there was a rule missing in the Access Policy that allows the traffic.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
UUHU
i've been there.
the reason you cant find info about it is because its called NATTING in "real life"
that's what you need to search for 🙂
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi ! Thank you for the answer. I know that it is NAT, but I still had no luck.
Here is what I tried:
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It works when I use automatic rules:
The problem is this rule forwards all ports and I cant edit the rule to only forward ports 443 and 9000.
When I try to manually recreate those automatic rules I am not able to set up the forward only to apply for the interface alias 1.1.1.1.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I got the solution: I configured it manually and used the 1.1.1.1 as "Original Destination". Also there was a rule missing in the Access Policy that allows the traffic.
