Debra James:

Have you made a static NAT for the Database server. If no, configure it first. If yes, are you able to ping the database server with external IP? Are you using the VPN also or not?

First make a rule, drop any service to the destiona then try to connect it and find the required service.

 

Tika Mahata

Kathmandu, Nepal

 Debra James <[EMAIL PROTECTED]>wrote:

Good afternoon,

I am very new to the Checkpoint FW and I appreciate any and all suggestions.
I need to setup a rule to allow a remote DBA access to a database server
using PCAnywhere. Access to the server from inside is working terrific.
But I think I have a problem with the translation rules.

I created two objects, DBinternal and DBexternal

The rule base is:

Source Destination Action
RemoteDBA DBexternal accept

DBinternal Any accept
DBexternal Any accept


The translation rule is:
Source Destination Service Source
Destination Service
DBexternal Any Any DBinternal
Original Original

Any DBexternal Any Original
DBinternal Original


So far, I cannot get through. However, oddly enough, the Firewall log
doesn't show anything to the external address dropping either. It is as
though the traffic does ! not exist. I have all rules set to log.

I appreciate any suggestions you may have.
Thank you

Deborah James
St Network Technician
Richard Bland College
Iformation Technology Services
(804) 862 6259
[EMAIL PROTECTED]
"I won't be wronged, I won't be insulted, and I won't be laid a hand on. I
don't do these things to other people, and I require the same from them."
John Wayne in the Shootist

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner@ts.! checkpoint.com
=================================================



Do you Yahoo!?
New DSL Internet Access from SBC & Yahoo!

Reply via email to