Check Point Firewall configuration NAT

Static NAT configuration

Step1: Creating host objects and configure static NAT, as shown below:
Check Point Firewall configuration NAT
Step2: the global settings of the options NAT proxy ARP entries, you can check, as shown below:

Check Point Firewall configuration NAT
Step3: Network Mangement label card found in the pages of the web portal gateway Proxy ARP, ARP add binding entries
Check Point Firewall configuration NAT
Step4: add access policy, in this case release of the external network access host 10.10.1.110/32 the permit ip any, as shown below:
Check Point Firewall configuration NAT
Step5: authentication, logon using CRT 10.10.1.110/32 -> (target host 10.158.1.10/32)
Check Point Firewall configuration NAT
port mapping configuration
Step1: create two host objects, a host address internal needs mapping, a public network node address, as shown below:
Check Point Firewall configuration NAT
Check Point Firewall configuration NAT
Step2: manually create NAT entry, as shown below:
Check Point Firewall configuration NAT
Step3: create ACL release, as follows:
Check Point Firewall configuration NAT
Note: If it is not the same interface address needs to be done ARP binding
PAT configuration
Step1: create an internal network segments need to do SNAT, as shown below :
Check Point Firewall configuration NAT
check the specified address to hide or to do SNAT target address.
Step2: Create a release strategy, as shown below:
Check Point Firewall configuration NAT

Guess you like

Origin blog.51cto.com/14773580/2482875