Riccardo,

   I was using this solution too, till I found this was causing the
 Automatic Synchronization of my two Management Servers to fail. I then
 used a solution found in the CheckPoint knowledgebase and it works just
 fine today with it.

   The KB article is called : What to do when modules are not logging to
 a static NATed management (Solution ID: sk11292)

Met vriendelijke groeten - Bien � vous - Kind regards
Guy ROELANDTS
EMEA GS Internet Expertise Centre - CCSE-NG
Hewlett-Packard Belgium B.V.B.A./S.P.R.L.
E-mail : [EMAIL PROTECTED]
Tel: +32(02)729.77.44 (options 3 - 3 - 1)
Fax: +32(02)729.77.65
==========================================================
This message may contain confidential and/or proprietary information,
and is intended only for the person/entity to whom it was originally
addressed. The content of this message may contain private views and
opinions which do not constitute a formal disclosure or commitment
unless specifically stated. Should you receive this message by mistake
please inform the sender immediately.
==========================================================



-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: 09 January 2003 11:04
To: [EMAIL PROTECTED]
Subject: [FW-1] NG loggers


Hi all,


i have a little problem with loggers definition in remote FW1 module.


Management -- Firewall -- Internet -- Firewall


Remote Firewall still try to send logs to private IP address of Management.


In old 4.1 version i use loggers file with valid IP address.


I've found this workaround:


2 NAT rules applied to remote module, like this:


Src             Dst             Src             Dst
Fw              Mngt-private    Fw              Mngt-public
Mngt-public     Fw              Mngt-private    Fw


or


creating a Checkpoint object with public Management IP address, enabling it
as Log server and setting in remote Firewall as Log server.


Anybody have found one more clean solution?


Thanks


Riccardo

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to