We have troubles with our checkpoint FW. Our FW is connected "inside" together with two other routers and various servers. If we configure the firewall as default gateway for these servers any connections to other host´s in our internal web will fail because stateful inspection detects that there appears a SYN on the inside without a SYN ACK (the SYN ACK was forwarded directly from the Router to the server). Further the FW sends no ICMP redirect to the server then, that shows the server that he can reach the internal web over this router. What can we do that stateful inspection do not work for the internal interface (only from inside to outside)? Is there any global rule available ?