Implementing NAT: A Step-by-Step Example

The following sample configuration involves NAT. I show what you need to do step-by-step to configure FireWall-1 to support this configuration (see Figure 10.3).

Figure 10.3. Sample network for step-by-step example

The security policy is defined as follows.

  • Allow the external mail server and the Web server to be reached from anywhere via SMTP and HTTP, respectively.

  • Allow the external mail server to send e-mail to anywhere on the Internet and to the internal mail server.

  • Allow a second Web instance of a Web server (running on port 81) to be accessible via a separate IP address on port 80.

  • Allow clients on ...

Get Essential Check Point™ FireWall-1® NG: An Installation, Configuration, and Troubleshooting Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.