[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [FW1] Altavista Tunnel proxy & TCP only VPN




BTW, this product will work for those people who a few weeks back were
looking for a TCP only VPN solution.  You can define what port to run on
and  you will have no problems with NAT, GRE protocol, etc..

For you to make your config below work, you simply need an inbound rule and
a NAT rule.  The same as any other inbound service (like a web server).

NOTE: if you are NOT running NAT, than you will have some problems.  AV
tunnel somewhat depends on NAT and split DNS to function.

It isn't actually NAT that it needs, but rather limited DNS availability.

One sample rule to make your config work
Source	Dest		Svc		Action
any		external	 IP	AV_tunnel	Allow	short

Translaton
any		external IP	AV_tunnel	orignial		AVTserverIP	orignial
AVTserverIP	any		any		externalIP	orignal		original		


-Charles Kaplan
	



Date: Tue, 2 Nov 1999 14:56:59 +0200
From: =?iso-8859-9?Q?=22=DDHSAN_=C7AKMAKLI=22?= <icakmakli@ykb.com>
Subject: [FW1] Altavista Tunnel proxy

Hi,
I am working on AltavistaTunnel. Our Tunnel clients has the Firewall Ip
address,
hard coded to the Vpn client configuration like:

End-Point Host:  xxx.xxx.xxx.xxx
1st. Firewall:      yyy.yyy.yyy.yyy

So the Firewall needs to be run as a Proxy on port zzzz. How can I do this on
the Checkpoint FW-1?

Regards.

Ihsan Cakmakli


---
Charles B. Kaplan, President
norSEC Inc.	

Who's watching over YOUR network?

61 East Cottage Street
Norwood, MA  02062
877.4norSEC



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================