hi,
you do need official IP-addresses for clientless VPN, it does not matter if
you do NAT or have configured the official IPs on your webservers.
you may try to use one IP for different webservers using different ports ...
cheers
reinhard
At 00:03 30.03.2004, you wrote:
Hi.
I've got several internal web server that I'd like to allow remote users
to connect to.
As it's only HTTP, and I can't have the remote users install securemote,
I thought using Clientless VPN a good idea.
The problem is, I don't have any routable IP addresses for these web
servers.
I've read Phoneboy's "Essential Check Point FireWall-1 NG" and it states
that I can use http servers (under Global properties > Firewall-1 >
security servers > http servers) but I couldn't get that to work.
Checkpoint's documentation assumes that I've got routable IP addresses
for these internal web sites, and don't even mention the possibility of
using http servers for allow clientless vpn access to internal web
servers.
Has anyone successfully configured a setup like this?
Could you please provide a detailed explanation for this newbie as to
how this is done?
Thanks.
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
--
Reinhard Stich, ASSIST R.Stich AT internet-security DOT at
Internet Security AG, 1150 Wien, Johnstrasse 29
Tel: +43 1 3709440 RS784-RIPE Fax: +43 1 3709440-10
/ Austrosicherheitsmesse 30.03. bis 01.04. \
\ Gratistickets http://www.isag.at/austrosicherheit /
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|