PDA

View Full Version : Checkpoint Firewall


Glen Sykes
10-10-2004, 05:35 PM
Hi All,

Does anyone from this knowledge-rich community have any experience of the Checkpoint firewall 1 product, with particular respect to H.323?

What I'm looking to know is how checkpoint handles H.323 streams when it is set up for NAT.

With the Cisco NAT (PIX and IOS), H.323 streams are transparently NAT'ed as the 'inside' IP address embedded in the H.323 payload is also changed to the correct 'outside' address, as well as the address in the IP header. Does Checkpoint also do this? Are there any known limitations?

Thanks in advance for your assistance.

Glen

senthil
10-10-2004, 11:26 PM
Hi

I am having the same confusion with Cisco Pix(Version5X).

expecting answers for this...

senthil

Glen Sykes
10-11-2004, 03:45 AM
Hi

I am having the same confusion with Cisco Pix(Version5X).

expecting answers for this...

senthil

First recommendation would be to upgrade to V6.2, however looking at the feature list for version 5.2, there is support for H.323 v2. You need to set up a 1:1 NAT mapping for every endpoint you have on the inside network. PAT (or overloading) doesn't lend itself to H.323 at all, although Cisco claim to support this in version 6.2.

Cheers,

Glen

senthil
10-11-2004, 08:12 PM
First recommendation would be to upgrade to V6.2, however looking at the feature list for version 5.2, there is support for H.323 v2. You need to set up a 1:1 NAT mapping for every endpoint you have on the inside network. PAT (or overloading) doesn't lend itself to H.323 at all, although Cisco claim to support this in version 6.2.

Cheers,

Glen

Thanks

I upgrade to version 6.2. But i am facing audio problem.I couldn't hear both audio. but I was opend Concerned ports. I find the information in cisco version 6.2 was solve the audio problem.

any idea!

Senthil.