If you setup a group or if your internal interface is of that IP space, lets say you are using 192.168.1.0/24 network then that network will be dropped as spoofing on external interface. But 192.168.2.0/24 should not be dropped as a spoof
----- Original Message ----- From: "Dachicourt, Fabien" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, May 04, 2004 9:32 AM Subject: [FW-1] spoofing and rfc1918 > Hello everyone, > i have a question about how anti-spoofing work on checkpoint firewall NG > AI. > If I configure on the topology tab of my gateway one interface as > external, does that mean private ip (rfc1918) coming from this interface > will be consider as spoofing or not ? > > Thank you and regards > Fabien Dachicourt > > ================================================= > To set vacation, Out-Of-Office, or away messages, > send an email to [EMAIL PROTECTED] > in the BODY of the email add: > set fw-1-mailinglist nomail > ================================================= > To unsubscribe from this mailing list, > please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================= > If you have any questions on how to change your > subscription options, email > [EMAIL PROTECTED] > ================================================= > ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
