J,

One issue that you may have is the fact that your network range is
incorrect.

Using a .248 netmask the following networks are valid:
      Network     First Host  Last Host   Broadcast
      x.x.x.72    x.x.x.73    x.x.x.78    x.x.x.79
      x.x.x.80    x.x.x.81    x.x.x.86    x.x.x.87
      x.x.x.88    x.x.x.89    x.x.x.94    x.x.x.95

Using a .240 netmask the following networks are valid:
      Network     First Host  Last Host   Broadcast
      x.x.x.64    x.x.x.65    x.x.x.78    x.x.x.79
      x.x.x.80    x.x.x.81    x.x.x.94    x.x.x.95

Using a .224 netmask the following networks are valid:
      Network     First Host  Last Host   Broadcast
      x.x.x.64    x.x.x.65    x.x.x.94    x.x.x.95

Another may be that the netmask your are using is only for 6 hosts (plus
network & broadcast) and would not cover your stated range of "x.x.x.78 -
x.x.x.92"

Also, what is your environment ie hardware, operating system, FW-1 version,
distributed or stand-alone installation, etc?

Regards,

Ken...



Mailing list for discussion of Firewall-1
<[EMAIL PROTECTED]> wrote on 16/05/2004 07:52:22:

> So here's my situation:
>
> I am trying to get NAT working for one of my servers but I may be missing
> something... so here's what I have:
>
> 1. I have 5 allocatted IP addresses with the following info:
>
> Range - x.x.x.78 - x.x.x.92
> Subnet - 255.255.255.248
> Gateway - x.x.x.77
> WAN - x.x.x.82
> Local - 192.168.1.1
>
> 2. I setup a static route for x.x.x.76 network with a subnet mas of
> 255.255.255.248 with a gateway of x.x.x.77
>
> 3. I setup NAT for x.x.x.78 to point to an internal address -
192.168.1.10
>
> Everything else works fine on the Edge box, traffic is passing through
> without an issue... but from an internal machine, when I do a ping or
> tracert x.x.x.78 which is the external address for the NAT, it gives me a
> "destination host unreachable" and stops at the firewall... I would
assume
> if it was translating at all, it would either give me a reply or
"Requested
> Timed Out"?  Am I missing something here?
>
> Thank you in advance for any guidance...
>
> -J
>
> _________________________________________________________________
> Best Restaurant Giveaway Ever! Vote for your favorites for a chance to
win
> $1 million! http://local.msn.com/special/giveaway.asp
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================


WARNING - This email and any attachments may be confidential. If received in error, 
please delete and inform us by return email.

Because emails and attachments may be interfered with, may contain computer viruses or 
other defects and may not be successfully replicated on other systems,
you must be cautious. Westpac cannot guarantee that what you receive is what we sent. 
If you have any doubts about the authenticity of an email by Westpac,
please contact us immediately.

It is also important to check for viruses and defects before opening or using 
attachments. Westpac's liability is limited to resupplying any affected attachments.

Westpac Banking Corporation ABN is 33 007 457 141.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to