In scenario 1, is there a route for the 192.168.220.x network to the
firewall? In other words, if you are on a workstation without SecureClient
and do a
tracert 192.168.220.5
does it go to the firewall internal interface? I assume you're getting the
VPNPOOL IP in scenario 1 as well. Is that correct?
Ray Pesek, CISSP
From: kypros Politis <kpolitis AT ENET.COM DOT CY>
Reply-To: Mailing list for discussion of Firewall-1
<FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] Problem with SecureClient
Date: Fri, 30 Jan 2004 17:01:59 +0200
Hello guys ,
I have the following scenario :
Lan:10.0.0./8------FW1-------(INTERNET)------ROUTER----LAN:10.0.0.0/8----SR_
CLIENT
VPNPOOL: 192.168.220.0/24
When I connect with secureclient from the other side of the router I can
create the site but I cannot connect to the site with office mode.
If I try the following scenario is working fine , I get assigner an ip
address from the VPNPOOL.
Lan:10.0.0./8------FW1-------(INTERNET)------ROUTER----LAN:192.168.0.0/8----
SR_CLIENT
VPNPOOL: 192.168.220.0/24
Any ideas why the first scenario is not working ?
Regards,
Kypros Politis
Senior Systems Engineer
eNet Solutions Ltd
Tel: +357 22 551200
Direct Line: +357 22 551231
Fax: +357 22 379931
92 Ifegenias Str
P.O.Box 25126
CY-1307 Nicosia
Cyprus
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
_________________________________________________________________
Learn how to choose, serve, and enjoy wine at Wine @ MSN.
http://wine.msn.com/
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|