Here is the scenario: I have 3 interfaces on my enforcement module. One external, one DMZ, one internal. All different subnets. Natting takes place for the DMZ, with internal addresses on the objects.
How can I set up my rules so traffic from the internal network -> DMZ does not get natted as it goes through the EM? But taffic from the DMZ -> External does (as well as external->dmz)? Right now I have static natting set on the single object for the hosts in the DMZ. I have tried setting up two hosts, instead, and doing a manual NAT, however that didn't work out real well. Ideas? Erik Decker Network Administrator Town of Normal (309) 454-9515 ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
