Firewall-1

Re: [FW-1] Site to site VPN

Subject: Re: [FW-1] Site to site VPN
From: SIBEL MEREY <SMEREY AT SISECAM.COM DOT TR>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 22 Jun 2005 13:35:26 +0300
Hi,
Except Russian LAN, anybody from the internet can access our Web server 
already. I mean we have already rule about this.
OK i will want him to trace our web server. But how can i am sure it will pass 
from VN tunnel or not?
Thanks

>>> venkateshjaya AT GMAIL DOT COM 22.06.2005 09:34 >>>
Hi,
So long your web server is at DMZ and given access to outside world
via port 80, anybody in the world can access.

Not sure when that user tries to access you web server , his pc still
trying to access via the VPN tunnel, and there is not rules defined
for web access to the server in question.

Also if you ask the party at the other end to do a trace route to the
webserver, you can find whether its able to communicate via a normal
internet link.

Regds
Jv

On 6/22/05, SIBEL MEREY <SMEREY AT sisecam.com DOT tr> wrote:
> Hi everybody,
> 
> We have head office in Turkey and brunch office in Russia and made VPN tunnel 
> for communication each aother. But we want internet access by their own site. 
> Now VPN communication for LAN is OK. But when a user inside Russia LAN want 
> to access our web server which is locate our DMZ with legal IP, he can not 
> access fron internet site. I think if we allow access from VPN tunnel LAN and 
> pass FW for access web server it maybe work. But we want to communicate VPN 
> tunnel for only LAN communication, we dont want to use access the server 
> which legal IP with VPN tunnel. Is there any way to do it?
> 
> Best regards,
> 
> Sibel
> 
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV AT amadeus.us.checkpoint DOT com 
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html 
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner AT ts.checkpoint DOT com 
> =================================================
>

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com 
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html 
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com 
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>