you can use IP ranges only with NAT. Ether you define a network object or
all 20 hosts in a group.

g*

Dominique Puenter
Consultant Network Security
_____________________________________________________
Dominique Puenter     Systemberater Netzwerksicherheit
IQproducts GmbH      Max-Planck-Str. 5, 80609 Dornach
Tel.: ++49 89 944940-0        Fax.: ++49 89 944940-50
eMail: [EMAIL PROTECTED] http://www.iqproducts.de
_____________________________________________________
Bitte beachten Sie fuer Ihre Supportanfragen:
Tel.: ++49 89 944940-77  eMail: [EMAIL PROTECTED]


-----Ursprüngliche Nachricht-----
Von: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]Im Auftrag von
Langa Kentane
Gesendet: Dienstag, 9. Januar 2001 11:33
An: Firewall-1 Mailing List (E-mail)
Betreff: [FW1] IPRanges in policy



Greetings.
I want to add an IP range to a rule to allow everything on that range to ftp
to anywhere.
The problem is that when I try to select the IP range on the source field, I
cannot find it there but the object has been created and when I go manage
network objects, I can actually see it.

How would I get around this, I dont want to have to create a host for each
address on the range and creating a network object sounds risky to me
because only 20 hosts from the network are to connect.

The network is 192.168.2.0, the host are 1 - 20 and the netmask is
255.255.255.0, please help.

Thanks in advance
Ciao

__________________________________________________________
Langa Kentane           | TEL: (011) 290 3218
Security Administrator  | Cell: 082 606 1515
DISCOVERY HEALTH                | http://www.discoveryhealth.co.za
__________________________________________________________________



============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to