If you're running Hide NAT and your internal web browsers run through it, you might have an issue. We ran into a vendor site that wouldn't work right if we didn't have forwardand reverse DNS entries for the Hide NAT address. I can't think of anything off hand that would affect Check Point, though.

Ray

From: J Jayavenkatesh <[EMAIL PROTECTED]>
Reply-To: Mailing list for discussion of Firewall-1 <[email protected]>
To: [email protected]
Subject: [FW-1] DNS entry for the VPN gateway
Date: Wed, 22 Jun 2005 14:40:59 +0800

Hi all,

Is there any specific use of using DNS entry for the VPN Gateway Ip address?
If you change the ip address, does the secureclient really do a
resolution everytime,
and updating the ip address whenever the DNS ip change?

I tested it, and found that, secureclient does the resolution at the
first time , after which the secureclient uses the ip resolved in the
first time. If so what is the purspose of using DNS entry for VPN
Gateway ip?

Thanks in advance!

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to