Hi All,

I'm testing out  the following dual NAT configuration:

src: internal PC ---> dst: virtual ip on FW-1 internal network, which translates
in src: FW-1 ----> dst: real server outside. This seems to work only with spoof
protection disabled. The virtual ip is defined as part of the internal network
(which it is, to my common sense), but taking into account that NAT is performed
last, I'm thinking of defining this ip as part of the outside. Does someone have
a similar setup? Should I define this as internal, external, or both?

Thanks,
Ken







________________________________________________________________________________





===================================================================
This communication is confidential and is intended for use only by
the addressee. Jardine Fleming accepts no responsibility for any
mistransmission of, or interference with, this communication.
===================================================================




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to