You will need a route on your firewall that states all traffic destined to
the dmz network goes through the dmz interface. The problem may lie in where
you are using real IP address space for your private DMZ network, if that is
the case you will need to re-evaluate the private addressing of your dmz
network
-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, June 14, 2000 12:27 PM
To: [EMAIL PROTECTED]
Subject: [FW1] How to change the NAT interface?
I have the following networks/interfaces
1-external interface (real IP)
2-DMZ Public (real IP)
3-DMZ Private (real IP)
4-Internal Network (10.0.0.0)
I am using 'hide' for all address on the 4 network but these are getting
translated on the DMZ's also.
How can I move the translation to activate on the 1 interface ONLY for the
internal network?
In other words how can I get my internal machines to get to the DMZ's
without
being NAT'ed?
Paul
----------------------------------------------------------------------------
----------------
C. Paul Simons
Corporate Network Services
IHS Energy Group, Englewood, CO.
Main: +1 303 736 3000
Direct: +1 303 736 3451
Fax: +1 303 736 3860
Mobile: +1 303 748 5242
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
PG&E Generating, PG&E Energy Trading and any other
company referenced herein that uses the PG&E name or
logo are not the same company as Pacific Gas and
Electric Company, the regulated California utility. Neither
PG&E Gen, PG&E Energy Trading nor these other
referenced companies are regulated by the California Public
Utilities Commission. Customers of Pacific Gas and Electric Company
do not have to buy products from these companies in order
to continue to receive quality regulated services from the utility.
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================