[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] adding a legal address in a NAT environment



    [ The following text is in the "iso-8859-1" character set. ]
    [ Your display is set for the "US-ASCII" character set.  ]
    [ Some characters may be displayed incorrectly. ]


We are currently set up in a simple NAT config - valid address outside,
hidden (invalid) addresses inside - multiple subnets.  Now we will shortly
be adding another network inside our firewall, and it must be on the
backside of a single leased line.  So can I go:

valid IP --> firewall/NAT --> invalid IP --> router --> invalid IP -->
router --> valid IP ??  

If it was just a matter of privately routing whatever IPs I feel like, no
problem, I know.  It looks like it should work - except for one thing I
can't test until they get here:  can legal addresses be routed back behind
our FW without broadcasting the illegal IPs but while allowing, say, their
mail to come into their legal address?, and them to web surf??

Rich


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================