All of lore.kernel.org
 help / color / mirror / Atom feed
* Port forwarding error
@ 2005-03-01 10:07 Metal Gear
  2005-03-01 11:15 ` Jörg Harmuth
  0 siblings, 1 reply; 4+ messages in thread
From: Metal Gear @ 2005-03-01 10:07 UTC (permalink / raw)
  To: netfilter

Hi all,

plz check the following diagram for pictorial details of my problem

http://www.antionline.com/attachment.php?s=&postid=824669

Squid (only one interface card)
I want to configure iptable rules on my squid machine such that if any
client connects on pop3, smtp, dns these request are redirected to
servers popserver, smtpserver and dnsserver. All three of these
servers are on untrusted network having public ips. My squid machine
and clients are on internal network and only squid machine can cross
the firewall to access the outerworld. I researched a lot but i m
unable to write a successful rule for that. I m posting my rules in
the end of the post. Currently i m using a port redirector (rinetd) in
place of that rules.

Thanks

(Your assistance will be greatly appreciated)


#!/bin/sh
iptables -F
iptables -A INPUT -p ALL -j ACCEPT
iptables -A PREROUTING -t nat -d squidip -p tcp --dport 110 -j DNAT
--to popserver
iptables -I PREROUTING -t nat -d squidip -p udp --dport 110 -j DNAT
--to popserver
iptables -A POSTROUTING -t nat -s popserver -p tcp --dport 110 -j SNAT
--to squidip
iptables -A POSTROUTING -t nat -s popserver -p udp --dport 110 -j SNAT
--to squdip
service iptables save
/etc/rc.d/init.d/iptables restart


^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2005-03-02 11:07 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-03-01 10:07 Port forwarding error Metal Gear
2005-03-01 11:15 ` Jörg Harmuth
2005-03-01 17:45   ` Metal Gear
2005-03-02 11:07     ` Jörg Harmuth

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.