Hi Andrew,

You can use IpRoute2 and you define your source policy routing.

I have 2 LAN which access to Internet through 2 ISP links.
My FW NG is installed on SPLAT.

Regards
Yohann

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of Read,
Andrew
Sent: vendredi, 7. mai 2004 08:47
To: [EMAIL PROTECTED]
Subject: Re: [FW-1] Zebra - Routing on SecurePlatform


Thanks for your response,

I only want to use Zebra to do some source based routing on the firewall
(2 ISP links). I don't want to dynamically change routes. Would I run
into any problems with this?

Andrew

-----Original Message-----
From: Crist Clark [mailto:[EMAIL PROTECTED]
Sent: Friday, 7 May 2004 2:54 a.m.
To: [EMAIL PROTECTED]
Subject: Re: [FW-1] Zebra - Routing on SecurePlatform

Read, Andrew wrote:

> Hi All,
>
> Has anyone one used Zebra on their SecurePlatform box?

This is not Zebra specific, but the real challenge to doing dynamic
routing on a Check Point enforcement module is the "Topology" and
"Anti-Spoofing." Unless you deactivate anti-spoofing (which given the
way the GUI policy manager works is really bad), dynamically changing
routes won't work until you update the Topology.
--
Crist J. Clark                               [EMAIL PROTECTED]
Globalstar Communications                                (408) 933-4387

************************************************************
The information contained in this email is confidential and
may be legally privileged. If the reader of this message is
not the intended recipient you are hereby notified that any use,
dissemination, distribution, or reproduction of this message is
prohibited. If you have received this message in error please notify the
sender and delete all copies of this message including any attachments
it may contain. The email or its content does not necessarily represent
the views of the company.
************************************************************

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to