All Checkpoint gurus:

I want to allow http into an internal webserver. The
IP address of the firewall external interface is
1.2.3.1., the internal is 10.0.208.5. The web server
is 10.0.208.9, with static mapping to 1.2.3.10 which
is visible from world. According to Checkpoint FP3
with automatic arp configuration, I shouldn't need to
put the static entry. However, when I ping any
external IP address from webserver, the ping doesn't
go through. I allow outgoing in firewall. The firewall
should log going out, but nothing comes back. I am
pretty sure it's routing issue. So, I have

route add 1.2.3.10 MASK 255.255.255.255 10.0.208.5
and arp -s 1.2.3.10 10-be-05-0f-02-0a

Still have no clue. Please give me advise.
Thanks.

__________________________________________________
Do you Yahoo!?
Yahoo! Mail Plus - Powerful. Affordable. Sign up now.
http://mailplus.yahoo.com

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to