add the valid ip (static ip) address to an "antispoofing-group" and assign this group
to the dmz-interface of your fw-1 module.
bye
andre
-----Urspr�ngliche Nachricht-----
Von: Satana [mailto:[EMAIL PROTECTED]]
Gesendet: Di 22.01.2002 17:52
An: [EMAIL PROTECTED]
Cc:
Betreff: [FW-1] NAT & Rule 0
Hi all!
I need to publish an internal LAN machine over Internet and I'm doing it via
NAT. I made translation rules, ARPed and manually routed the addresses and
put everything on.
Now everything works fine (I'm able to extablish connections on SSH,
SMTP,FTP and POP3), but as soon as I try to establish a connection on HTTP
(port 80) I see that my packets go dropped by FW1 with an error on
"infamous" rule0 (it says local interface address spoofing) between my
Gateway and Public IP.
What should do ?
Thanx in advance
Lorenzo
=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================
================================================To set vacation, Out Of Office, or
away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
================================================To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================If you have any questions on how to
change your
subscription options, email
[EMAIL PROTECTED]
================================================