> 1. Do you give the firewall a public address

  Why?  Does anything besides the router need to connect to its
"outside" interface?  (i.e., are you terminating a VPN on it?)

> 2. Can you do something on the router forward packets to the
> firewall, where there you can implement NAT

  Yes, tell the router that the outside interface of the firewall
is the next hop toward the block of public addresses you're using
for NAT.  The router doesn't care how the firewall delivers the
packets to those destinations.

> This e-mail and any attachment is for authorised use by the
> intended recipient(s) only. It may contain proprietary
> material, confidential information and/or be subject to legal
> privilege. It should not be copied, disclosed to, retained or
> used by, any other party. If you are not an intended
> recipient then please promptly delete this e-mail and any
> attachment and all copies and inform the sender. Thank you.

  Assuming that this is boilerplate mandated by your employer,
you appear to be writing from an email account for which participation
in online fora (such as mailing lists like this one) is not
appropriate.  I recommend using a free account, such as are offered by
Yahoo or HotMail, to avoid this misguided policy.

David Gillett

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to