> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Markus Schmidt <[EMAIL PROTECTED]> wrote:
>>
>> SO my Question: Can I somehow get it to work that my Firewall accepts
>> non VPN Traffic to NET_C, WHILE LEAVING NET_C in the encryption Domain?
>> (For my German Partners?)
>> I CAN NOT change the configuration of New York or any German partners.
>
> I think in order to accomplish this you will have to change your policy
> to Traditional Mode, and use Encryption rules to specify what traffic
> needs to be encrypted or left unencrypted.  You will not be able to make
> use of VPN Communities with this complicated setup.

The ability to create an encryption domain per VPN community is not yet
possible. But it is my understanding that this is rather high on the
wishlist and may become a feature soon.

Hugo.

-- 


Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to