You can create such rules in your Policy by manually
adding non-NAT rules at the top as you desire.
I do something similar, but not quite the same way
you're inquiring about.
I non-NAT between our internal LANs and our DMZ.
HTH -- Chris
--- John Qian <[EMAIL PROTECTED]> wrote:
> Hi all,
> I'm using NAT from Internal network 10.10.0.0 to
> External network 207.x.x.0 (Hide & Static). Now I
> try to use DMZ 198.x.x.0 which has public ip
> addresses. My plan is not to NAT bet. DMZ &
> External, No NAT bet. Internal & DMZ, just keep
> existing NAT bet. Internal & External.
> I noticed my traffic from Internal to DMZ is
> translated to Hide ip address ( 207.x.x.x) before it
> reach DMZ host.
> Is my plan ok ?
> How can I make sure traffic Bet. Internal & DMZ go
> straight without NAT ?
> Anyone has sample rule config ?
>
> Thanks
> John Qian
>
__________________________________________________
Do You Yahoo!?
Yahoo! Auctions - Buy the things you want at great prices.
http://auctions.yahoo.com/
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================