Best practice when uploads CP configuration in Expedition

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Best practice when uploads CP configuration in Expedition

L3 Networker

Hi, 

 

I need to migrate from CP 80.40 to PANOS 10.1.8. 

Generally, Checkpoint NAT behaves the same way as NAT in PAN-OS. 

For this reason, my question, it is a best practice when we uploaded the CP config to expedition enable this option?

CP_upload_config.jpg 

 

Option A:  do not modify Destination Address in NAT related security policies

Best Regards
1 ACCEPTED SOLUTION

Accepted Solutions

L6 Presenter

@Apadilla Best practice is to not check the box , and let Expedition auto correct the destination of the security policies based on the NAT policies 

View solution in original post

2 REPLIES 2

L6 Presenter

@Apadilla Best practice is to not check the box , and let Expedition auto correct the destination of the security policies based on the NAT policies 

L3 Networker

Perfect!!!. So is better do not enable that option, when uploaded the CP config. Thanks for the claritication.

Best Regards
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!