Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Geomix7
Collaborator

Access Role - NAT (original source)

Can you please inform me if we can use access role as an original source for NAT ?

on R80.20 

0 Kudos
4 Replies
_Val_
Admin
Admin

No, you cannot

0 Kudos
Timothy_Hall
Legend Legend
Legend

Val is correct, in fact I don't personally consider the NAT rulebase a "real" policy layer like all the others.  You are confined to using host/network/range IP addresses along with port numbers (and groups of these) in NAT rules, and can't use most of the more advanced object types introduced later such as Access Roles, Security Zones, and Applications/URL Categories.  Updatable Objects can be used in NAT rules, but only if they just consist of a list of IP addresses/networks.  

Attend my Gateway Performance Optimization R81.20 course
CET (Europe) Timezone Course Scheduled for July 1-2
0 Kudos
MartinTzvetanov
Advisor

What about R81? I can't find any info about this.

0 Kudos
MartinTzvetanov
Advisor

Found it

https://checkpoint.engineer/releases/check-point-releases-r81/


NAT Rule Base
*Support for Domain objects, Updatable objects, Security Zones, Access Roles and Data Center objects.
*Hit count for NAT rules.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 20 May 2025 @ 11:30 AM (PDT)

    Las Vegas: Check Point Hybrid Mesh

    Wed 21 May 2025 @ 11:30 AM (MST)

    Tempe, AZ: Check Point Hybrid Mesh

    Tue 03 Jun 2025 @ 06:00 PM (EDT)

    Montreal: CPX Recap

    Tue 10 Jun 2025 @ 06:00 PM (EDT)

    Quebec City: CPX Recap
    CheckMates Events