[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] ospf and firewall-1




Have you configured HIDE NAT for the network to which your internal OSPF 
neighbor belongs?  If yes, then that's what's causing the "fw_xlate_forw" 
messages and that's why OSPF isn't working.  Disable HIDE NAT, or try 
STATIC, on the internal network, and you'll see your internal router in 
FULL state.

Regards.

At 01:42 PM 9/7/99 -0400, you wrote:

>Hello all, this is my first post here..
>I am trying to run ospf between a router on the external LAN, the firewall
>box with NAT running and another router on the internal LAN behind the
>firewall. I am running gated-3.5.10 on the firewall-1 box.
>
>I am able to get ospf updates working properly between the external router
>and the firewall box but cannot get ospf working between the firewall and
>the internal router. I am also getting the message:
>"FW-1: fw_xlate_forw: failed to initialize the connection" as soon as I
>start the gated daemon. I verified icmp connectivity between the firewall
>and both cisco router boxes. I also have a rule that allows all ospf
>traffic and by default it will not of course do NAT on ospf.
>
>My question is do I need a special gated.conf configuration on the
>firewall to allow it to exchange ospf traffic with both internal and
>external routers ? and do I need to setup any other rules on the firewall
>?
>
>Any help on this will be greatly apprecialted.
>
>Rani Chouha
>
>
>
>
>=========================================================================== 
>=====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>=========================================================================== 
>=====




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================