I had to do this once. To do it I had to make three networks as
follows:
All_Class_A_Networks: 0.0.0.0 mask 128.0.0.0
All_Class_B_Networks: 128.0.0.0 mask 192.0.0.0
All_Class_C_Networks: 192.0.0.0 mask 224.0.0.0
You can then make a NAT Rule to point them to an address.
George Brooks
BAE Systems @ Strategic Systems Programs
202-764-2154
-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM] On Behalf Of Nattha
Kongtong
Sent: Thursday, June 30, 2005 1:24 AM
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] NAT ANY destination to one IP address
Hi guys,
I have a question about NAT policy. Is it possible to create NAT rule
that translates any destination IP address to a specific address? Ex.
Original packet:
source = ip_pool1
destination = any
service = any
Translated packet:
source = original
destination = gateway1
service = any
I've tried it in Checkpoint Firewall-1 4.1 but it is not allowed
(translated packet have to config destination = orignal only). Does
anyone know if I can apply above solution in Checkpoint NG R55? Or is
there other solution to do NAT as above? Please help.
Regards,
Nattha
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|