Link to home
Start Free TrialLog in
Avatar of adragon218
adragon218

asked on

can't ping dmz zone ip through checkpoint firewall

we have a  checkpoint firewall 4.0 running in nt 4.0 ,

and we divid three zone in firewall so dmz , internal ,

and internet external zone . From internet , people can

ping the real ip and access the web server which in dmz ,

but in internal zone , we can't . we have check our

internal zone 's ip have all permission to access anywhere

through the firewall .HOw can we ping and access the real

ip which is in dmz zone .

Avatar of Member_2_231077
Member_2_231077

Are you trying to ping the servers in the DMZ by name or by IP address? If it works OK by address then probably you will have to put hosts files on all the local PCs or have an internal DNS server.
Can you give us a detailed IP map?

You say that you can't ping, but can you do anything else? Could it be that you need routes set up on the firewall?
you should list a map here of how things are layed out and also post the rule base.  That would make it very easy.  Without them everyone will just be making guesses.
Check your rules, and make sure that ICMP packets are passed from the DMZ BACK to your internal network.
ASKER CERTIFIED SOLUTION
Avatar of mikecr
mikecr
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ADMINISTRATION WILL BE CONTACTING YOU SHORTLY.  Moderators Computer101 or Netminder will return to finalize these if still open in seven days.  Please post closing recommendations before that time.

Question(s) below appears to have been abandoned. Your options are:
 
1. Accept a Comment As Answer (use the button next to the Expert's name).
2. Close the question if the information was not useful to you. You must tell the participants why you wish to do this, and allow for Expert response.
3. Ask Community Support to help split points between participating experts, or just comment here with details and we'll respond with the process.
4. Delete the question. Again, please comment to advise the other participants why you wish to do this.

For special handling needs, please post a zero point question in the link below and include the question QID/link(s) that it regards.
https://www.experts-exchange.com/jsp/qList.jsp?ta=commspt
 
Please click the Help Desk link on the left for Member Guidelines, Member Agreement and the Question/Answer process.  https://www.experts-exchange.com/jsp/cmtyHelpDesk.jsp

Please click you Member Profile to view your question history and keep them all current with updates as the collaboration effort continues, to track all your open and locked questions at this site.  If you are an EE Pro user, use the Power Search option to find them.

To view your open questions, please click the following link(s) and keep them all current with updates.
https://www.experts-exchange.com/questions/Q.20066320.html
https://www.experts-exchange.com/questions/Q.20077437.html
https://www.experts-exchange.com/questions/Q.20077440.html
https://www.experts-exchange.com/questions/Q.20090027.html
https://www.experts-exchange.com/questions/Q.20100231.html
https://www.experts-exchange.com/questions/Q.20114643.html
https://www.experts-exchange.com/questions/Q.20120132.html
https://www.experts-exchange.com/questions/Q.20071195.html
https://www.experts-exchange.com/questions/Q.20149689.html
https://www.experts-exchange.com/questions/Q.20162087.html
https://www.experts-exchange.com/questions/Q.20164390.html
https://www.experts-exchange.com/questions/Q.20169921.html
https://www.experts-exchange.com/questions/Q.20184141.html
https://www.experts-exchange.com/questions/Q.20235450.html
https://www.experts-exchange.com/questions/Q.20236629.html
https://www.experts-exchange.com/questions/Q.20241715.html
https://www.experts-exchange.com/questions/Q.20242281.html
https://www.experts-exchange.com/questions/Q.20251302.html
https://www.experts-exchange.com/questions/Q.20230721.html
https://www.experts-exchange.com/questions/Q.20258985.html
https://www.experts-exchange.com/questions/Q.20263165.html


To view your locked questions, please click the following link(s) and evaluate the proposed answer.
https://www.experts-exchange.com/questions/Q.20094421.html
https://www.experts-exchange.com/questions/Q.20237806.html
https://www.experts-exchange.com/questions/Q.20254761.html
https://www.experts-exchange.com/questions/Q.20254818.html

PLEASE DO NOT AWARD THE POINTS TO ME.  
 
------------>  EXPERTS:  Please leave any comments regarding your closing recommendations if this item remains inactive another seven (7) days.  Also, if you are interested in the cleanup effort, please click this link https://www.experts-exchange.com/jsp/qManageQuestion.jsp?ta=commspt&qid=20274643
 
Thank you everyone.
 
Moondancer
Moderator @ Experts Exchange

P.S.  For any year 2000 questions, special attention is needed to ensure the first correct response is awarded, since they are not in the comment date order, but rather in Member ID order.
Admin notified of User neglect. Force-accepted by
Netminder
CS Moderator