In scenario 1, is there a route for the 192.168.220.x network to the
firewall? In other words, if you are on a workstation without SecureClient
and do a

tracert 192.168.220.5

does it go to the firewall internal interface? I assume you're getting the
VPNPOOL IP in scenario 1 as well. Is that correct?

Ray Pesek, CISSP


From: kypros Politis <[EMAIL PROTECTED]>
Reply-To: Mailing list for discussion of Firewall-1
<[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: [FW-1] Problem with SecureClient
Date: Fri, 30 Jan 2004 17:01:59 +0200

Hello guys ,


I have the following scenario :


Lan:10.0.0./8------FW1-------(INTERNET)------ROUTER----LAN:10.0.0.0/8----SR_
CLIENT
VPNPOOL: 192.168.220.0/24

When I connect with secureclient from  the other side of the router I can
create the site but I cannot connect to the site with office mode.

If I try the following scenario is working fine , I get assigner an ip
address from the VPNPOOL.

Lan:10.0.0./8------FW1-------(INTERNET)------ROUTER----LAN:192.168.0.0/8----
SR_CLIENT
VPNPOOL: 192.168.220.0/24

Any ideas why the first scenario is not working ?


Regards,


Kypros Politis
Senior Systems Engineer

eNet Solutions Ltd

Tel:  +357 22 551200
Direct Line: +357 22 551231
Fax: +357 22 379931
92 Ifegenias Str
P.O.Box 25126
CY-1307 Nicosia
Cyprus

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

_________________________________________________________________ Learn how to choose, serve, and enjoy wine at Wine @ MSN. http://wine.msn.com/

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to