openSUSE Forums > Archives > Novell Archives » Can't NAT to WebServer Inside Firewall

Go Back   openSUSE Forums > Archives > Novell Archives
Forums FAQ Members List Search Today's Posts Mark Forums Read


Novell Archives Archived content from Novell openSUSE support forums

 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 20-Sep-2006, 17:42
Ronald Schow
Guest
 
Posts: n/a
Default Can't NAT to WebServer Inside Firewall

My web server is 10.99.255.201. This is windows IIS v6 running
Intellisync's GMS. I want to see this web server on the internet.
The firewall is at 10.99.255.250 (inside) and 207.xx.yy.90 (outside).
This is running SuSE 10.0. I have the "network service" HTTP enabled on
this box but Netstat doesn't show port 80 because Apache is not installed
on this box. The Masquerading table looks like this:

Source Protocol ReqIP ReqPort RederToIP RedirToPort
10.99.0.0/16 tcp any http(80) 207.xx.yy.90 http(80)
207.xx.yy.0/24 tcp 207.xx.yy.90 http(80) 10.99.255.201 http(80)

I hope this is enough information for anyone to determine why it's not
seeing 10.99.255.201's web server from the internet. It can be seen every
try from any host the 207.xx.yy.00 network but not beyond (that is, not
beyond our corporate gateway, which is not filtered at all. I can ssh and
ping through that).

Any suggestions?
  #2 (permalink)  
Old 21-Sep-2006, 11:05
Brad Doster
Guest
 
Posts: n/a
Default Re: Can't NAT to WebServer Inside Firewall

In article <pan.2006.09.20.23.15.47.292990@slcusd.org>, Ronald Schow
wrote:
> 207.xx.yy.0/24 tcp 207.xx.yy.90 http(80) 10.99.255.201 http(80)
>

I'm making an educated guess here, not having worked with SuSE's
masquerading, but it seems to me the above says to translate requests
coming from the 207.xx.yy.0/24 network ONLY. That would explain:

> It can be seen every try from any host the 207.xx.yy.00 network
> but not beyond
>

And if my theory is correct, I think what you need is something like
'any' in place of '207.xx.yy.0/24'.

bd
NSC Volunteer SysOp


 

Bookmarks


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




 

Search Engine Friendly URLs by vBSEO 3.3.0 RC2