- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hi,
I have a customer with a 1590 - locally managed version R80.20.40.
Their main internet circuit is Ethernet with fixed IP. Dedicated VoIP circuit is PPPoE with dynamic IP.
Automatic Hide NAT for outgoing traffic is OFF as it was interfering with their SIP traffic.
We have source-based static route via PPPoE interface for their VoIP, but in order to NAT it we have to modify the src_adtr object every time the circuit goes down and up again. There appears to be no "This firewall" or even better "This Internet Interface" to create a manual Hide NAT rule with.
Is there a way to do the hide NAT better?
Thanks
Jamie
Possible way to achieve this is with a host object for the IP address of 0.0.0.0.
@AntoinetteHodes can you advise?
Hello @stallwoodj, I am not sure if this is possible due to the dynamic IP setup you mention. Static is preferred. The best and quickest way forward would be opening a TAC case as this might be the only workaround.
Thanks, I'll raise an RFE for a "This Gateway" source as Hide NAT.
With a centrally managed 1590, you could use the "LocalMachine" dynamic object with NAT and it should work fine.
Unfortunately, those dynamic objects are not exposed in local management, thus an RFE would be required.
Possible way to achieve this is with a host object for the IP address of 0.0.0.0.
Thanks PhoneBoy, I tested this in the lab and it worked straight away!
Whether this is supported or not is a separate question of course, but glad to hear it worked for you!
sk40637 brings back some related memories 😜
Considering that SK originated from Nokia, and I know the guy who wrote the article...yeah, I feel you. 🙂
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY