Great Circle Associates Firewalls
(June 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: [FW1] NAT with Firewall 2.1 and Solaris 2.51
From: dano @ nodewarrior . net (Dan Goldman)
Organization: http://www.nodewarrior.net
Date: Wed, 11 Jun 1997 09:46:06 -0700
To: Raymond Sleiman <sleiman @ gestronic . ch>
Cc: "fw-1-mailinglist @ us . checkpoint . com" <fw-1-mailinglist @ us . checkpoint . com>, "firewalls @ GreatCircle . COM" <firewalls @ GreatCircle . COM>
References: <339E4ECD . F6134538 @ gestronic . ch>
Reply-to: dano @ nodewarrior . net

Your "route add" command is backwards.  Try:

route add 195.176.1.10 192.168.1.10 1

dano

Raymond Sleiman wrote:
> 
> Hello,
>                        ---------------
>                        |                    |
>    Internet        |                    |  Internal Network
> ---------------|       GW       |-------------------mail server
>   195.176.1.3 |                     | 192.168.1.1           192.168.1.10
> 
>                        -------------
> 
> Using fwxlconf , i defined tow rules:
> 
> 192.168.1.10     192.168.1.10   SRC_STATIC    195.176.1.10
> 195.176.1.10     195.176.1.10  DST_STATIC     192.168.1.10
> 
> I defined also arp -s 195.176.1.10 mac_address_of_the gateway pub
> I defined also static route in the gatewy route add 192.168.1.10
> 195.176.1.10 1
> 
> I installed rules again.
> 
> The mail server is unable to ping the router 195.176.1.1
> A machine from internet is unable to ping 195.176.1.10.
> 
> With snoop -vd interface i checked the the NAT is not functionning.
> 
> Could somebody tell me what is wrong
> 
> Best Regards
> 
> Raymond Sleiman


References:
Indexed By Date Previous: Re: Hosting ActiveX applets
From: "Bill DeGan" <bdegan @ ticnet . com>
Next: Re: Stateful Packet Filters vs. Proxies
From: Bill Stout <stoutb @ pios . com>
Indexed By Thread Previous: NAT with Firewall 2.1 and Solaris 2.51
From: Raymond Sleiman <sleiman @ gestronic . ch>
Next: Re: NAT with Firewall 2.1 and Solaris 2.51
From: Denis Golubev <dlg @ jet . msk . su>

Google
 
Search Internet Search www.greatcircle.com