Hi,
I have a problem with a Site-to-Site VPN from ASA to Checkpoint Firewall.
The Checkpoint Firewall onyl accept the external Interface IP on if Outside.
I moving from pre 8.3 to 9.x. VPN is etablished but no traffic can pass due the inside host address is refelcted in VPN.
On pre 8.3 i have following NAT rule working:
inside_nat0_outbound extended deny ip host 192.168.x.x object-group remote_vpn_hosts
How can I do this on 8.4+
Thanks a lot