Hi,

Please help asap

Does anyone know why there would be any good reason to create vrrp addreses and 
then assign these to the physical interfaces, rather than using manual proxy 
arp entries?.

I have a configuration where there are no manaul proxy arp entries, but there 
is vrrp addreses which are the actual object addresses which are in the nat 
policy on the firewall, these are the addresses that are on the physical 
interfaces

finally is it safe to simply move all these and simply add manual arp entries, 
surely this is best practice to remove and add manual nat and not to have proxy 
addresses assigned to the interfaces with virtual routers etc

Thanks





=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

Scanned by Check Point Total Security Gateway.

Reply via email to