<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hide NAT checkpoint &#8211; Thegioifirewall</title>
	<atom:link href="https://thegioifirewall.com/tag/hide-nat-checkpoint/feed/" rel="self" type="application/rss+xml" />
	<link>https://thegioifirewall.com</link>
	<description>Tường lửa bảo vệ doanh nghiệp, trung tâm thông tin và giá cả</description>
	<lastBuildDate>Wed, 08 Nov 2023 03:08:50 +0000</lastBuildDate>
	<language>vi</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://thegioifirewall.com/wp-content/uploads/vacif_icon-150x150.png</url>
	<title>Hide NAT checkpoint &#8211; Thegioifirewall</title>
	<link>https://thegioifirewall.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>CHECKPOINT FIREWALL R81.20: HƯỚNG DẪN CẤU HÌNH NAT CÁC NETWORK KẾT NỐI INTERNET.</title>
		<link>https://thegioifirewall.com/checkpoint-firewall-r81-20-huong-dan-cau-hinh-nat-cac-network-ket-noi-internet/</link>
					<comments>https://thegioifirewall.com/checkpoint-firewall-r81-20-huong-dan-cau-hinh-nat-cac-network-ket-noi-internet/#respond</comments>
		
		<dc:creator><![CDATA[John]]></dc:creator>
		<pubDate>Wed, 08 Nov 2023 03:08:49 +0000</pubDate>
				<category><![CDATA[Checkpoint Firewall]]></category>
		<category><![CDATA[Checkpoint Firewall R81.20]]></category>
		<category><![CDATA[Hide NAT checkpoint]]></category>
		<guid isPermaLink="false">https://thegioifirewall.com/?p=18152</guid>

					<description><![CDATA[Checkpoint Firewall là một giải pháp tường lửa (firewall) mạng và bảo mật mạng phát triển bởi Check Point Software Technologies, một trong những công ty hàng đầu trong lĩnh vực bảo mật mạng. Giải pháp này được thiết kế để bảo vệ các mạng doanh nghiệp và tổ chức khỏi các mối đe dọa [&#8230;]]]></description>
										<content:encoded><![CDATA[
<p class="wp-block-paragraph">Checkpoint Firewall là một giải pháp tường lửa (firewall) mạng và bảo mật mạng phát triển bởi Check Point Software Technologies, một trong những công ty hàng đầu trong lĩnh vực bảo mật mạng. Giải pháp này được thiết kế để bảo vệ các mạng doanh nghiệp và tổ chức khỏi các mối đe dọa trực tuyến bằng cách kiểm soát và quản lý lưu lượng mạng.</p>



<p class="wp-block-paragraph"><strong>1.Sơ đồ mạng</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full"><img fetchpriority="high" decoding="async" width="654" height="429" src="https://thegioifirewall.com/wp-content/uploads/image-5625.png" alt="" class="wp-image-18153" srcset="https://thegioifirewall.com/wp-content/uploads/image-5625.png 654w, https://thegioifirewall.com/wp-content/uploads/image-5625-300x197.png 300w" sizes="(max-width: 654px) 100vw, 654px" /></figure>
</div>


<p class="wp-block-paragraph">NAT là một quy tắc quan trọng trong việc ánh xạ địa chỉ IP của gói tin mạng, cho phép một mạng nội bộ sử dụng một địa chỉ IP duy nhất để giao tiếp với mạng internet. Điều này giúp ẩn danh và bảo vệ mạng nội bộ, đồng thời cho phép nhiều thiết bị trong mạng nội bộ sử dụng cùng một địa chỉ IP public.</p>



<p class="wp-block-paragraph">Trong bài viết hôm nay mình sẽ hướng dẫn các bạn cấu hình NAT cho các network trong mạng nội bộ có thể truy cập Internet.</p>



<p class="wp-block-paragraph"><strong>2. Các bước cấu hình</strong></p>



<p class="wp-block-paragraph"><strong>Bước 1: Cấu hình các <strong>Network</strong> Interfaces trên Security Gateway</strong></p>



<p class="wp-block-paragraph"><strong>Bước 2: Cấu hình Hide NAT cho các Network</strong></p>



<p class="wp-block-paragraph"><strong>Bước 3: Cấu hình Policy cho các Network</strong></p>



<p class="wp-block-paragraph"><strong>Bước 4: Kiểm tra kết quả.</strong></p>



<p class="wp-block-paragraph"><strong>3. Hướng dẫn cấu hình.</strong></p>



<p class="wp-block-paragraph"><strong>Bước 1: Cấu hình các interface network trên Security Gateway</strong>.</p>



<p class="wp-block-paragraph">Trước khi cấu hình các interface network trên <strong>Security Gateway</strong> vì đang ảo hóa Checkpoint Firewall trên môi trường Vmware Esxi, bạn nên tạo các switch ảo và port group cho từng zone bạn dự định sẽ cấu hình trên Firewall.</p>



<p class="wp-block-paragraph">Như hình dưới mình đã tạo <strong>switch ảo</strong> và gán các <strong>port group</strong> theo các zone <strong>LAN, SRV.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img decoding="async" width="738" height="454" src="https://thegioifirewall.com/wp-content/uploads/image-5626.png" alt="" class="wp-image-18154" style="aspect-ratio:1.6255506607929515;width:506px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5626.png 738w, https://thegioifirewall.com/wp-content/uploads/image-5626-300x185.png 300w" sizes="(max-width: 738px) 100vw, 738px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full"><img decoding="async" width="975" height="343" src="https://thegioifirewall.com/wp-content/uploads/image-5627.png" alt="" class="wp-image-18155" srcset="https://thegioifirewall.com/wp-content/uploads/image-5627.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5627-300x106.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5627-768x270.png 768w" sizes="(max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Trên <strong>máy ảo Checkpoint Firewall</strong>, bạn add thêm các <strong>Network Adapter</strong> và chọn các port group đã tạo ở bước trên.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="448" src="https://thegioifirewall.com/wp-content/uploads/image-5628.png" alt="" class="wp-image-18156" style="aspect-ratio:2.1763392857142856;width:624px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5628.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5628-300x138.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5628-768x353.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Tiếp theo bạn login vào <strong>Security Gateway > Network Interface</strong>. Bạn tiến hành edit các interface.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="395" src="https://thegioifirewall.com/wp-content/uploads/image-5629.png" alt="" class="wp-image-18157" style="aspect-ratio:2.4683544303797467;width:714px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5629.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5629-300x122.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5629-768x311.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Sau khi<strong> Edit các interface</strong>, check <strong>link status </strong>đều đang <strong>UP.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="441" src="https://thegioifirewall.com/wp-content/uploads/image-5631.png" alt="" class="wp-image-18159" style="aspect-ratio:2.2108843537414966;width:714px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5631.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5631-300x136.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5631-768x347.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Để <strong>interface WAN</strong> có thể kết nối internet bạn tiến hành cấu hình <strong>add Static Route.</strong></p>



<p class="wp-block-paragraph">Click chọn <strong>Edit Default Route</strong>.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="395" src="https://thegioifirewall.com/wp-content/uploads/image-5632.png" alt="" class="wp-image-18160" style="aspect-ratio:2.4683544303797467;width:720px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5632.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5632-300x122.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5632-768x311.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Bạn <strong>Delete route </strong>mặc đinh và <strong>Add Gateway</strong> mới.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="548" height="361" src="https://thegioifirewall.com/wp-content/uploads/image-5633.png" alt="" class="wp-image-18161" srcset="https://thegioifirewall.com/wp-content/uploads/image-5633.png 548w, https://thegioifirewall.com/wp-content/uploads/image-5633-300x198.png 300w" sizes="auto, (max-width: 548px) 100vw, 548px" /></figure>
</div>


<p class="wp-block-paragraph">Thêm <strong>IP Gateway</strong> của <strong>interface WAN.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="436" height="583" src="https://thegioifirewall.com/wp-content/uploads/image-5634.png" alt="" class="wp-image-18162" style="aspect-ratio:0.7478559176672385;width:322px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5634.png 436w, https://thegioifirewall.com/wp-content/uploads/image-5634-224x300.png 224w, https://thegioifirewall.com/wp-content/uploads/image-5634-300x400.png 300w" sizes="auto, (max-width: 436px) 100vw, 436px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="392" src="https://thegioifirewall.com/wp-content/uploads/image-5635.png" alt="" class="wp-image-18163" style="aspect-ratio:2.4872448979591835;width:704px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5635.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5635-300x121.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5635-768x309.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Bạn cũng nên cấu hình thêm <strong>DNS</strong> cho <strong>Security Gateway.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="405" src="https://thegioifirewall.com/wp-content/uploads/image-5636.png" alt="" class="wp-image-18164" style="aspect-ratio:2.4074074074074074;width:696px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5636.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5636-300x125.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5636-768x319.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Bước 2: Cấu hình Hide NAT cho các Network</strong>.</p>



<p class="wp-block-paragraph">Trên giao diện <strong>SmartConsole > Create New > Network.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="394" src="https://thegioifirewall.com/wp-content/uploads/image-5637.png" alt="" class="wp-image-18165" style="aspect-ratio:2.4746192893401013;width:714px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5637.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5637-300x121.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5637-768x310.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph">Tạo <strong>LAN Network:</strong> Điền tên, <strong>Network address + Net Mask.</strong></p>



<p class="wp-block-paragraph"><strong>NAT:</strong>  click chọn <strong>Add automatic address translation rules.</strong>  <strong>Translation Method:</strong> chọn <strong>Hide.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="644" height="297" src="https://thegioifirewall.com/wp-content/uploads/image-5638.png" alt="" class="wp-image-18166" srcset="https://thegioifirewall.com/wp-content/uploads/image-5638.png 644w, https://thegioifirewall.com/wp-content/uploads/image-5638-300x138.png 300w" sizes="auto, (max-width: 644px) 100vw, 644px" /></figure>
</div>


<p class="wp-block-paragraph">Tạo tiếp theo <strong>SRV Network.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="622" height="296" src="https://thegioifirewall.com/wp-content/uploads/image-5639.png" alt="" class="wp-image-18167" srcset="https://thegioifirewall.com/wp-content/uploads/image-5639.png 622w, https://thegioifirewall.com/wp-content/uploads/image-5639-300x143.png 300w" sizes="auto, (max-width: 622px) 100vw, 622px" /></figure>
</div>


<p class="wp-block-paragraph">Tạo thêm<strong> WAN Network.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="621" height="300" src="https://thegioifirewall.com/wp-content/uploads/image-5640.png" alt="" class="wp-image-18168" srcset="https://thegioifirewall.com/wp-content/uploads/image-5640.png 621w, https://thegioifirewall.com/wp-content/uploads/image-5640-300x145.png 300w" sizes="auto, (max-width: 621px) 100vw, 621px" /></figure>
</div>


<p class="wp-block-paragraph">Kiểm tra trong mục <strong>Security Policies > NAT</strong>. Các NAT rule đã được tạo tự động.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="947" height="534" src="https://thegioifirewall.com/wp-content/uploads/image-5641.png" alt="" class="wp-image-18169" style="aspect-ratio:1.7734082397003745;width:648px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5641.png 947w, https://thegioifirewall.com/wp-content/uploads/image-5641-300x169.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5641-768x433.png 768w" sizes="auto, (max-width: 947px) 100vw, 947px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Bước 3: Cấu hình Policy cho các Network</strong>.</p>



<p class="wp-block-paragraph">Di chuyển đến phần <strong>Policy > Create New Rule Above.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="442" src="https://thegioifirewall.com/wp-content/uploads/image-5642.png" alt="" class="wp-image-18170" style="aspect-ratio:2.2058823529411766;width:680px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5642.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5642-300x136.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5642-768x348.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Settings các thông số như sau:</strong></p>



<p class="wp-block-paragraph"><strong>Name:</strong>&nbsp;Đặt tên cho rule</p>



<p class="wp-block-paragraph"><strong>Source</strong>: Chọn các Network đã tạo ở bước 2</p>



<p class="wp-block-paragraph"><strong>Destination: </strong>chọn <strong>All_Internet</strong></p>



<p class="wp-block-paragraph"><strong>VPN:</strong>&nbsp;Any</p>



<p class="wp-block-paragraph"><strong>Service &amp; Application:&nbsp;</strong>chọn các thống số như hình.</p>



<p class="wp-block-paragraph"><strong>Action: Accept</strong></p>



<p class="wp-block-paragraph"><strong>Track:</strong>&nbsp;chọn&nbsp;<strong>Log</strong></p>



<p class="wp-block-paragraph"><strong>Install On:</strong>&nbsp;chọn tên Hostname Checkpoint Firewall.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="947" height="317" src="https://thegioifirewall.com/wp-content/uploads/image-5643.png" alt="" class="wp-image-18171" style="aspect-ratio:2.9873817034700316;width:706px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5643.png 947w, https://thegioifirewall.com/wp-content/uploads/image-5643-300x100.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5643-768x257.png 768w" sizes="auto, (max-width: 947px) 100vw, 947px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="953" height="319" src="https://thegioifirewall.com/wp-content/uploads/image-5644.png" alt="" class="wp-image-18172" style="aspect-ratio:2.987460815047022;width:708px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5644.png 953w, https://thegioifirewall.com/wp-content/uploads/image-5644-300x100.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5644-768x257.png 768w" sizes="auto, (max-width: 953px) 100vw, 953px" /></figure>
</div>


<p class="wp-block-paragraph">Cuối cùng click <strong>Publish > Install Policy.</strong></p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="923" height="566" src="https://thegioifirewall.com/wp-content/uploads/image-5646.png" alt="" class="wp-image-18174" style="aspect-ratio:1.6307420494699647;width:482px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5646.png 923w, https://thegioifirewall.com/wp-content/uploads/image-5646-300x184.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5646-768x471.png 768w" sizes="auto, (max-width: 923px) 100vw, 923px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="975" height="633" src="https://thegioifirewall.com/wp-content/uploads/image-5645.png" alt="" class="wp-image-18173" style="aspect-ratio:1.5402843601895735;width:695px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5645.png 975w, https://thegioifirewall.com/wp-content/uploads/image-5645-300x195.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5645-768x499.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Policy Installation</strong> thành công.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="767" height="516" src="https://thegioifirewall.com/wp-content/uploads/image-5647.png" alt="" class="wp-image-18175" style="aspect-ratio:1.4864341085271318;width:458px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5647.png 767w, https://thegioifirewall.com/wp-content/uploads/image-5647-300x202.png 300w" sizes="auto, (max-width: 767px) 100vw, 767px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Bước 4: Kiểm tra kết quả.</strong></p>



<p class="wp-block-paragraph">Bạn lấy 1 máy ảo kết nối <strong>Port group LAN</strong> của Checkpoint. Kiểm tra <strong>IP và ping google.com</strong> thành công.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="814" height="542" src="https://thegioifirewall.com/wp-content/uploads/image-5648.png" alt="" class="wp-image-18176" style="aspect-ratio:1.5018450184501846;width:552px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5648.png 814w, https://thegioifirewall.com/wp-content/uploads/image-5648-300x200.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5648-768x511.png 768w" sizes="auto, (max-width: 814px) 100vw, 814px" /></figure>
</div>


<p class="wp-block-paragraph">Tương tự với máy ảo vùng SRV (Server). Ping <strong>google.com</strong> thành công.</p>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img loading="lazy" decoding="async" width="697" height="522" src="https://thegioifirewall.com/wp-content/uploads/image-5649.png" alt="" class="wp-image-18177" style="aspect-ratio:1.3352490421455938;width:545px;height:auto" srcset="https://thegioifirewall.com/wp-content/uploads/image-5649.png 697w, https://thegioifirewall.com/wp-content/uploads/image-5649-300x225.png 300w, https://thegioifirewall.com/wp-content/uploads/image-5649-600x450.png 600w, https://thegioifirewall.com/wp-content/uploads/image-5649-400x300.png 400w" sizes="auto, (max-width: 697px) 100vw, 697px" /></figure>
</div>]]></content:encoded>
					
					<wfw:commentRss>https://thegioifirewall.com/checkpoint-firewall-r81-20-huong-dan-cau-hinh-nat-cac-network-ket-noi-internet/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
