Might be a routing issue... not sure I understand your comment about
seeing traffic.

Do you have SR configured to send ALL traffice down the VPN?  If so, and
it doesn't quite work, you might try IP Pools for a test, if it doesn't
mess up active SR users.  This would give your SR session an internal IP
address at Site A, like Office Mode for SecureClient.  So it would look
like the traffic from your SR client destined for Site B is originating
within Site A, then get routed via your existing mechanism to Site B,
and back.  There are reported problems with using IP Pools this way, so
I only suggest it as a test.  If this works, you might be best off
getting SecureClient licenses & using Office Mode for this application.

--
David Strom

Robert Geller wrote:

Group:

I have a site A which has access to site B.  I want to be
able to terminate SR connections at site A and access site B.
Site A and B have connectivity over the internet only.

The problem I see is that this doesnt work when sending
the traffic back out the external interface.  I have done this
in the past routing through internal interfaces.

Im not sure if this is possible with SecuRemote.  I see
my Securemote connections being decrypted, but it never
makes it back out the external interface.  I dont
see anything significant in the logs.  It looks like the
traffic is just dying after the decrypt.

Any ideas / suggestions are appreciated.

-Rob






-- This message has been scanned for viruses and dangerous content, and is believed to be clean.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================

Reply via email to