[2 days left] What’s wrong with your cloud strategy? Learn why multicloud solutions matter with Nimble Storage.Register Now

x
?
Solved

Check Point Firewall NG with Win-2K Advancd Server

Posted on 2002-06-19
6
Medium Priority
?
259 Views
Last Modified: 2013-11-16
Hi all,

I installed Check Point firewall on my Windows 2000 Advanced Server, the scenario is like this:

Firewall has 2 Ethernet interfaces : one is connected to the Router and another interface is connected to local network, we have 14 Legal IP's. so my router is having ip address as 200.200.84.193(assume this is my public ip), and firewall external is 200.200.84.194. in my local network i have a web server and having ip 192.168.1.2. I did NAT for web server on the firewall with 200.200.84.195.
I can ping from firewall to both interface IPs and web server also, But i can not ping the NAT address i.e 200.200.84.195 from my firewall as well as from outside also, this is the problem.
and i can ping 200.200.84.195 from web server. I created a rule under policy editor as any-any-any accept.

Steps alredy taken:
1.Enabled RRAS under win-2k server. before installing firewall i tested the routing, it was ok.
2. Modified registry setting under Hkey_local_machine\system\cu.controlset\services\tcpip\parameters\IPenable router key, I enable this key (1).
3. No other services running under this win2K-server. This server is purly for firewall only.

pls find me the solution for this problem,
Thanks in advance to all.

Regards
Suresh.
0
Comment
Question by:creativesv
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
6 Comments
 
LVL 63

Expert Comment

by:SysExpert
ID: 7096781
I would call your Firewall support in this case.
Check point should be able to help you.

I would Check their Docs, and FAQs on their site also.

I hope this helps !
0
 
LVL 63

Expert Comment

by:SysExpert
ID: 7096782
I would call your Firewall support in this case.
Check point should be able to help you.

I would Check their Docs, and FAQs on their site also.

I hope this helps !
0
 
LVL 16

Expert Comment

by:The--Captain
ID: 7103126
Indeed - since checkpoint reams you financially, you should at least take advantage of their support.

Or, upgrade to astaro - I can tell you how do do anything you want with one of those boxes, and you will save big $$ in the long term.

Cheers,
-Jon
0
 

Accepted Solution

by:
creativesv earned 0 total points
ID: 7103151
Hi all,

Thanks for your time on me,i solve the problem,
The solution which i did is :
1.In the first place we can not ping the NAT address from the firewall, (same as Cisco router, we cant ping the WANIP from the same router)like this...
we can not ping the NAT IP, from the same firewall.
2. I can ping my NAT address from outside after reset my switch and my router(ARP cache). now i can ping from outside to my NAT address.

thats all...

Thanks to all.

Regards
Suresh
0
 
LVL 5

Expert Comment

by:zenlion420
ID: 9711588
Hey people,

No comment has been added in roughly 1 year, so it's time to clean up this TA.
I will leave a recommendation in the Cleanup topic area that this question
be PAQ'd and pts refunded.
Please leave any comments here within the next seven days.

PLEASE DO NOT ACCEPT THIS COMMENT AS AN ANSWER!

Zenlion420
EE Page Editor
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A new hacking trick has emerged leveraging your own helpdesk or support ticketing tools as an easy way to distribute malware.
An overview of cyber security, cyber crime, and personal protection against hackers. Includes a brief summary of the Equifax breach and why everyone should be aware of it. Other subjects include: how cyber security has failed to advance with technol…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
In a question here at Experts Exchange (https://www.experts-exchange.com/questions/29062564/Adobe-acrobat-reader-DC.html), a member asked how to create a signature in Adobe Acrobat Reader DC (the free Reader product, not the paid, full Acrobat produ…

656 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question