Make sure the encryption rules are installed above your stealth rule (your
Any - Firewall - Any - Drop rule).  To test, try pinging a remote internal
ip address or accessing a service of one of the remote internal machines,
i.e. ftp, telnet, http, etc.  In other words, if one of the networks has
private addressing (i.e. 10.x.x.x.) behind the firewall, the other network
should be able to ping or use a service via the private address.  If it
works, the CP logs will show the communication as decrypt or encrypt,
depending on the direction of travel.

Another thing to check is if the Sonic side is using NAT (private addressing
10.x.x.x.), you must specify the private network address in Checkpoint's
definition for the Sonicwall Network.

Good luck
Gus 


>  -----Original Message-----
> From:         [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]]  On Behalf Of bill
> chmura
> Sent: Tuesday, December 12, 2000 2:04 PM
> To:   [EMAIL PROTECTED]
> Subject:      [FW1] FW1 <-VPN-> Sonicwall
> 
>  << File: BDY.TXT >> 

winmail.dat

Reply via email to