[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] FW-1 and encryption on more tahn one NIC




Hi guys!

We are about to setup some VPN for a customer. In this case, we need to encrypt
to the internet and to some remote WAN link. Now, the two locations are
reacheable through two different NICs (the external one and an internal NIC).

We can use without any problems FWZ (seems to crypt on all NICs), but there is
no way to use SKIP or IPSEC.

Now... in the VPN handbook (FW-1 v4.0) somewhere CP says that for SKIP and
IPSEC "it is necessary that you define the FW object with the  external IP
address  so that encrytion works". Does this mean that we can expect to be able
to encrypt only through the NIC that corresponds to the IP address of the FW
object itself?

Well, if somebody already had experiences with similar setups, I'd like to hear
about it. And if any workaround is known, it will be very welcome!

Thanks a lot & bye!

--
Michele Lucini  <mike@tilink.ch>
Phone: +41-76-3736060



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================