On Tue, 4 Sep 2007, Sergio Alvarez wrote:
I believe instead of IP Pool NAT, what you need is Office Mode.
You can find details about it in the VPN pdf document you will find in your
installation disks and is also available at the Check Point website.
There is a limitation. back connections to SecureClient over visitor mode
connections is not fully supported. When we ran into this we ended up by
filing a feature request. So I very much doubt it will work perfectly for
any current version of Check Point.
Check Point claimed it takes too much CPU cycles from the firewall to do
this. (I can vouch for the fact that visitor mode needs significantly
more CPU cycles compared to normal NAT traversal Seen it on many
installations.)
Hugo.
--
[EMAIL PROTECTED] http://hugo.vanderkooij.org/
This message is using 100% recycled electrons.
Some men see computers as they are and say "Windows"
I use computers with Linux and say "Why Windows?"
(Thanks JFK, for this quote of George Bernard Shaw.)
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================