Great Circle Associates Firewalls
(July 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: FW-1 DESTINATION IP Address Translation
From: "Martin C. Walker" <martinw @ epcorp . com>
Date: Mon, 07 Jul 1997 10:32:46 -0400
To: fw-1-mailinglist @ us . checkpoint . com, firewalls @ greatcircle . com

Can anyone provide me with details on how translate the
DESTINATION IP address in a forward moving packet outbound
from the firewall to the internet ?

normal NAT translates only the SOURCE IP address.

Ideally I'd like to translate only the destination address and
leave the source as an illegal 10.* address.  If this is not doable
I'd need to translate both addresses.

I have Sun's version of FW-1 2.1c on Solaris 2.5.1x86.

I will be going to 3.0a soon, so if it's different or not do-able
on 3.* products I'd like to know that too.

TIA for the help
--------------------------------------------------------------------------
Martin C. Walker     |  martinw @
 epcorp .
 com  |      PP-ASEL,IFR AA5-A 9908U
Project Lead         |       (513)629-2517  | Blue Belt Okinawan Shuri-Ryu
Eagle-Picher Inc.    |  Fax: (513)629-2449  |                Porsche 911SC
580 Walnut St,       | 
Cincinnati, OH 45202 | 


Follow-Ups:
Indexed By Date Previous: Re: Two ISP's to one DMZ
From: mikech @ avana . net
Next: RE: IP Filters?
From: "Stackpole, Bill" <BSTACKPO @ sla . com>
Indexed By Thread Previous: Re: Routing with 2 checkpoint Firewalls
From: Mike Jones <mike . jones @ unifiedtech . com>
Next: Re: FW-1 DESTINATION IP Address Translation
From: Melitta Kimbacher <Melitta . Kimbacher @ oeaw . ac . at>

Google
 
Search Internet Search www.greatcircle.com