Did you test with virtual interfaces, in the external NIC?
This virtual interfaces must be your  static NATs.
I worked fine with this configuration.



Claudia Cordova
Soporte Tecnico
SEFISA-GRUPONETCOM
[EMAIL PROTECTED]
Tel:  (503)2890097
Fax: (503)2788992


-----Mensaje original-----
De: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] En nombre de Valles,
Antonio
Enviado el: Tuesday, May 04, 2004 7:29 AM
Para: [EMAIL PROTECTED]
Asunto: Re: [FW-1] R55 on windows 2003 and local.arp

The local.arp file let's the Firewall answer arp requests for IP's that you
specify. For example if you have assigned a webserver an external IP, your
local.arp file will have the valid IP and the MAC address of the external
NIC on you firewall. Copy this file to the CONF directory and do a CPSTOP
and CPSTART....I think. Reboot if you don't think it took. Hope this helps.
To test, you should be able to ping the valid address from your external
router and have the firewall answer the ping.

Antonio Valles
Network Communications Specialist
East Coast Migrant Headstart Project

-----Original Message-----
From: Moon, Curtis [mailto:[EMAIL PROTECTED]
Sent: Monday, May 03, 2004 1:50 PM
To: [EMAIL PROTECTED]
Subject: [FW-1] R55 on windows 2003 and local.arp

I have checkpoint firewall NG FP3 on Win2k. We want to move it to R55 with
HFA on Windows 2003 server.  Using export/import to bring our rules into the
R55 firewall.  Also need to change external ip address to a different
subnet.
We tried to do this all at once and had some problems with just a few of our
static Nats working.  Has anyone tried to use local.arp with R55 on Windows
2003?  If so how would I set it up.  Any suggestions, directions would be
helpful.  Everything on the R55 firewall seemed to work except for some
static Nats.  We always flush the ext. routers arp cache when we do this.

thanks,
Curtis Moon
[EMAIL PROTECTED]

=================================================
To set vacation, Out-Of-Office, or away messages, send an email to
[EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages, send an email to
[EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to