add the valid ip (static ip) address to an "antispoofing-group" and assign this group 
to the dmz-interface of your fw-1 module.
 
bye
andre
 
 
-----Urspr�ngliche Nachricht----- 
Von: Satana [mailto:[EMAIL PROTECTED]] 
Gesendet: Di 22.01.2002 17:52 
An: [EMAIL PROTECTED] 
Cc: 
Betreff: [FW-1] NAT & Rule 0



        Hi all!
        I need to publish an internal LAN machine over Internet and I'm doing it via
        NAT. I made translation rules, ARPed and manually routed the addresses and
        put everything on.
        Now everything works fine (I'm able to extablish connections on SSH,
        SMTP,FTP and POP3), but as soon as I try to establish a connection on HTTP
        (port 80) I see that my packets go dropped by FW1 with an error on
        "infamous" rule0 (it says local interface address spoofing) between my
        Gateway and Public IP.
        What should  do ?
        
        Thanx in advance
        
        Lorenzo
        
        =================================================
        To set vacation, Out Of Office, or away messages,
        send an email to [EMAIL PROTECTED]
        in the BODY of the email add:
        set fw-1-mailinglist nomail
        =================================================
        To unsubscribe from this mailing list,
        please see the instructions at
        http://www.checkpoint.com/services/mailing.html
        =================================================
        If you have any questions on how to change your
        subscription options, email
        [EMAIL PROTECTED]
        =================================================
        

================================================To set vacation, Out Of Office, or 
away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
================================================To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================If you have any questions on how to 
change your
subscription options, email
[EMAIL PROTECTED]
================================================

Reply via email to