[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] NAT and DMZ problems




I think to ... but it's also right that i need to 

Go to 'Policy/Properties'
Uncheck 'Allow ICMP'

and then tune policy for protocol ICMP

Thank you for yuor answer

At 12:32 17/03/00 -0500, Bradley Walker wrote:
>
>Just put Src DMZ  Dst  LOCALNET  svc ANY then right click on LOCALNET and
>select NeGATE.  This will allow DMZ to go anywhere except LOCALNET.
>
>Brad.....
>----- Original Message -----
>From: <"Aymeric.BL??????????????????
>To: <fw-1-mailinglist@lists.us.checkpoint.com>
>Sent: Friday, March 17, 2000 12:12 PM
>Subject: [FW1] NAT and DMZ problems
>
>
>>
>> Hi,
>> I am installing a CheckPoint FW1-4.0 on a NT4 SP5 with 3 network cards,
>one
>> directly connected to Internet, one for the DMZ, and the other, for the
>> localnet.
>> Localnet is being staticly natted.
>> The problem i ve got is that from the DMZ i can ping to host located on
>the
>> localnet.
>> Can somebody point me to some policy rules to deny the access from the DMZ
>> to the localnet ?
>> Thanks for your help
>>
>>
>============================================================================
>====
>>      To unsubscribe from this mailing list, please see the instructions at
>>                http://www.checkpoint.com/services/mailing.html
>>
>============================================================================
>====
>
>
>
>===========================================================================
=====
>     To unsubscribe from this mailing list, please see the instructions at
>               http://www.checkpoint.com/services/mailing.html
>===========================================================================
=====
>
>
--------------------------------------------------------
Aymeric BLAZY
Exploitation - Jetmultimedia Hosting - 04.78.17.16.40
51, rue Montgolfier
69006 Lyon
WWW   : http://www.jetmultimedia.fr
--------------------------------------------------------



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================