Yip, just add a static route outbound for the OM pool addresses.
HTH,
Jonathan
-----Original Message-----
From: ext Ash Ridley [mailto:ash.ridley AT ASH-RIDLEY DOT NET]
Sent: 27 May 2003 07:25
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] Secure Client Office Mode Problems
Hi,
I was wondering if anyone could shed some light on Secure Client office
mode (NG FP3).
I have setup the separate DHCP scope which is not in the encryption
domain and reserved a 'virtual' IP address for the firewall and reserved
it using the firewalls internal network card MAC address. The client
successfully obtains an IP address from the scope when it connects,
however it is unable to connect to the policy server (which is on the
firewall box) or connect to, ping or tracert any servers in the
encryption domain.
I'm guessing this is a routing issues but I'm not sure what to do next.
Do I need to create some static routes in the firewall to route the VPN
traffic and/or do I need to also bind the 'virtual' IP address to one of
the fierwalls network cards, or is there something else I need to do.
Many thanks
Ash
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|