If you setup a group or if your internal interface is of that IP space, lets
say you are using 192.168.1.0/24 network then that network will be dropped
as spoofing on external interface.
But 192.168.2.0/24 should not be dropped as a spoof

----- Original Message -----
From: "Dachicourt, Fabien" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Tuesday, May 04, 2004 9:32 AM
Subject: [FW-1] spoofing and rfc1918


> Hello everyone,
> i have a question about how anti-spoofing work on checkpoint firewall NG
> AI.
> If I configure on the topology tab of my gateway one interface as
> external, does that mean private ip (rfc1918) coming from this interface
> will be consider as spoofing or not ?
>
> Thank you and regards
> Fabien Dachicourt
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================
>

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to