Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
GigaYang
Contributor

Static NAT problem

Dear All,
We added a Static NAT setting in the firewall yesterday, other hosts from the Internet can connect to the our company's specific Server.

During the test, we can see the allow log of the connection, but in fact the connection does not pass normally. And you can see the following message from the Log:
"Connection terminated before detection: Insufficient data passed. To learn more see sk113479."

We have intercepted packets with wireshark on the intranet, and we have seen many "tcp retransmission tcp port reused..." error messages. We have suggested to refer to the following two articles to deal with it, but it doesn’t work.
https://support.checkpoint.com/results/sk/sk24960
https://community.checkpoint.com/t5/General-Topics/TCP-port-reuse-between-Check-Point-Remote-Access-...

So I was wondering if anyone else had a similar problem?


Thanks

0 Kudos
3 Replies
Chris_Atkinson
Employee Employee
Employee

How exactly is the NAT configured auto/manual, and did you setup a proxy arp?

CCSM R77/R80/ELITE
0 Kudos
GigaYang
Contributor

Hi Chris,

It is Auto static NAT, so we did not set proxy arp.

0 Kudos
CheckPointerXL
Advisor

is the policy created inside a layer with appc/urlf enabled?

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events