Hello all,

Thanks for reading. I have been trying to run fw1 on Linux but have found it
to be way too instable, so to cut a long story short I have decided to put
it on NT. Unfortunately for me I have limited experience with NT networking
and using nt as a gateway. So here are my problems/questions..

I have two network cards installed in my NT box and have set one up with a
real internet ip, and the other card has a made up address on the range of
my LAN. In the default gateway should they both have the address of my
router? ie real ip 195.92.236.90, default gateway 195.92.236.89, and card
two, pretend ip 192.9.200.181, default gateway 195.92.236.89. Is that
correct? I have also been to tcp/ip properties and enabled routing. I have
no experience with using NT as a gateway, so is this all I need do? At this
point I can access the internet from the gateway machine and also access my
local lan from the gateway. I then tried to access the net through the
gateway, putting 192.9.200.181 as the default gateway on a couple of pc's,
unfortunately they could not access the net. Is this because NT cannot do
NAT out of the box, or am missing something? I also tried installing fw1 at
this point onto the gatway and made a quick policy, localnet > any > allow..
This also didnt work. Can anyone tell me at which point my routing etc is
incorect?

The fw disk also installed meta ip and some others. Do I need these? They
where not present on the Linux version.

Finally I asume I need to set up some static routes on the gateway and some
arp's. I guess I need a local.arp and need  to add a route under nt. is it
as simple as route add 195.92.236.92 192.9.200.167 -p?

Sorry for all these questions but I am up to the ears in fw1 at the mo...
Any other windows specific tips would be great :-)

Cheers,

Steve



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to