Firewall-1

[FW-1] How to allow PPTP and IPSEC through to server using HIDE NAT?

Subject: [FW-1] How to allow PPTP and IPSEC through to server using HIDE NAT?
From: Robert Masse <rmasse AT GOSECURE DOT CA>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Tue, 15 Jul 2003 16:34:39 -0400
Hello

I have several users behind our firewall that need to connect to
different clients via PPTP.  If the user has static NAT configured (1
for 1), this is not an issue, the problem is that I cannot create static
NAT for every single user, we do not have enough IP addresses.

What are my options? According to the Nokia knowledge base:

---

In FireWall-1 version 4.1 this is supported, with the restriction that
only one client is able to connect to a specific server at the same
time.

In FireWall-1 NG this configuration is not supported.

---

What do you think?  Has anyone been able to do this? We are running the
most recent Checkpoint (NGAI).

Thanks in advance!

Rob

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>