And don't forget to change your anti-spoofing configuration. The artificial
address should be allowed on the internal interface.
Marcel Knopper.
Bull Benelux.
Amsterdam.
Noldi Schenkel <[EMAIL PROTECTED]> on 19/09/2000 11:47:17
To: "'jayant nashikkar'" <[EMAIL PROTECTED]>
cc: "'[EMAIL PROTECTED]'"
<[EMAIL PROTECTED]> (bcc: Marcel
Knopper/NL/BULL)
Subject: AW: [FW1] local.arp for natting not picking up
20000919as1138
Generally speaking, you need to:
1) have a NAT for your internal workstation object (for instance: automatic
- static)
2) have a routing entry on the OS level (routing the valid, artifical
address to your internal WS)
3) have an ARP entry, which is done in NT by using your .\state\local.arp
file,
with the syntax:
IP_address <TAB> MAC-address_with_dashes
(it is advisable to copy&paste the MAC-address from a dosbox /
ipconfig/all-output)
4) make sure that your target system (internal) is setup correctly, I mean
we happened to have customers that forgot to have a "default
gateway"-entry...
Good luck,
Arnold
-----Urspr�ngliche Nachricht-----
Von: jayant nashikkar [SMTP:[EMAIL PROTECTED]]
Gesendet am: Dienstag, 19. September 2000 11:18
An: [EMAIL PROTECTED]
Betreff: [FW1] local.arp for natting not picking up
hello guys,
Pl. help me inspite of making entries in local.arp in
the state dir of firewall and also adding route on
firewall to point to the natted host what else could be
the problem, iam not getting any way .my scenario is as
follows;
internet(202.54.44.1)
|
|
firewall( www,mail)(202.54.44.2,202.54.44.3)
natted for (192.168.0.2,192.168.0.3)
internal int.of firewall-192.168.0.1
ext.int.of firewall 202.54.44.1
|
|
internal network 192.168.0.0
natting done using xlate.conf ie fwxlconf.
____________________________________________________________________
Get free email and a permanent address at http://www.netaddress.com/?N=1
========================================================================
========
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
========================================================================
========
HIS Software AG is ready to decrypt each encrypted mail and attachement by
our Encryption Server PrivaWall. You will find our public keys by
www.swisskey.ch. Please let us know when you also have a public key so we
will encrypt every mail automatically. Interested in the solution? Feel
free to call us for more information.
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================