Hello all 
i have a problem with secure remote server configuration. i want to
configure sr access in 
following environment:


                          fw1 (us)
                         /   !
                    av-tunnel! 
                       /     !
                      /     ike
             altavista (jp)  !      sr
                      \      !     /
                    av-tunnel!    ike
                        \    !   /
                         \   !  /
                          fw1 (eu) 

i could connect via sr to FW1(EU) and have a transparent access to local EU-
and JP-networks
JP-networks are connected to EU and US via a special altavista tunnel server
(this server is located in the local network and works like a nat router). i
realize this SR<->JP-connection with a nat-pool installed on the firewall in
US and EU. 

SR-users (connected to FW1(EU)) should have tranpartent access to the local
network in US via fw1(EU) like local users in EU has. when i try to access
the local network of US it will not be tunneled by SR, because the local
US-networks are not member of the encryption-domain in FW1(EU). I could not
connect the SR to FW1(US), because the jp-networks are in the local
encrytion domains of both FW1.

I do not want to replace the FW1(EU)-FW1(US) VPN by an
altavista-tunnel-connection which will work.

have you got any idea

thanx
frank
                              


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to