All of lore.kernel.org
 help / color / mirror / Atom feed
* DNAT and local hosts
@ 2007-05-07 15:54 Pieter De Wit
  2007-05-07 16:01 ` Jan Engelhardt
  2007-05-08  8:34 ` Pascal Hambourg
  0 siblings, 2 replies; 13+ messages in thread
From: Pieter De Wit @ 2007-05-07 15:54 UTC (permalink / raw)
  To: netfilter

Hello Guys,
 
I have the following setup:
 
C1 --.
     |
     |-FW--- internet
     |
C2 --'

Ok - for this email, I will give C1 192.168.0.10 and C2 192.168.0.11.
The Firewall (FW) has two ethernet connections, eth0 and eth1. eth1 is
used to an adsl modem in bridged mode, which creates ppp0. Lets say for
this email, ppp0 get 1.2.3.4.

Now, all connections are routed out via FW:ppp0 and at NAT'ed. There is
a rule that allows connections to ppp0 on port 1234 and DNAT's them to
C1. When C2 makes a connection to 1.2.3.4:1234 it fails with "Connection
refused" since there is no "server" listening on the firewall's
ppp0,port 1234.

How can I solve this ? I need FW to DNAT "local/C2" connections back to
C1.

Thanks,

Pieter
“This e-mail is sent on the Terms and Conditions that can be accessed by Clicking on this link http://www.vodacom.co.za/legal/email.jsp "


^ permalink raw reply	[flat|nested] 13+ messages in thread
* DNAT and local hosts
@ 2007-05-07 15:49 Pieter De Wit
  0 siblings, 0 replies; 13+ messages in thread
From: Pieter De Wit @ 2007-05-07 15:49 UTC (permalink / raw)
  To: netfilter

Hello Guys,
 
I have the following setup:
 
C1 --.
     |
     |-FW--- internet
     |
C2 --'

Ok - for this email, I will give C1 192.168.0.10 and C2 192.168.0.11.
The Firewall (FW) has two ethernet connections, eth0 and eth1. eth1 is
used to an adsl modem in bridged mode, which creates ppp0. Lets say for
this email, ppp0 get 1.2.3.4.

Now, all connections are routed out via FW:ppp0 and at NAT'ed. There is
a rule that allows connections to ppp0 on port 1234 and DNAT's them to
C1. When C2 makes a connection to 1.2.3.4:1234 it fails with "Connection
refused" since there is no "server" listening on the firewall's
ppp0,port 1234.

How can I solve this ? I need FW to DNAT "local/C2" connections back to
C1.

Thanks,

Pieter
“This e-mail is sent on the Terms and Conditions that can be accessed by Clicking on this link http://www.vodacom.co.za/legal/email.jsp "


^ permalink raw reply	[flat|nested] 13+ messages in thread
* DNAT and local hosts
@ 2007-05-07 15:49 Pieter De Wit
  0 siblings, 0 replies; 13+ messages in thread
From: Pieter De Wit @ 2007-05-07 15:49 UTC (permalink / raw)
  To: netfilter

Hello Guys,
 
I have the following setup:
 
C1 --.
     |
     |-FW--- internet
     |
C2 --'

Ok - for this email, I will give C1 192.168.0.10 and C2 192.168.0.11.
The Firewall (FW) has two ethernet connections, eth0 and eth1. eth1 is
used to an adsl modem in bridged mode, which creates ppp0. Lets say for
this email, ppp0 get 1.2.3.4.

Now, all connections are routed out via FW:ppp0 and at NAT'ed. There is
a rule that allows connections to ppp0 on port 1234 and DNAT's them to
C1. When C2 makes a connection to 1.2.3.4:1234 it fails with "Connection
refused" since there is no "server" listening on the firewall's
ppp0,port 1234.

How can I solve this ? I need FW to DNAT "local/C2" connections back to
C1.

Thanks,

Pieter
“This e-mail is sent on the Terms and Conditions that can be accessed by Clicking on this link http://www.vodacom.co.za/legal/email.jsp "


^ permalink raw reply	[flat|nested] 13+ messages in thread

end of thread, other threads:[~2007-05-08  9:03 UTC | newest]

Thread overview: 13+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-05-07 15:54 DNAT and local hosts Pieter De Wit
2007-05-07 16:01 ` Jan Engelhardt
2007-05-07 19:54   ` Pieter De Wit
2007-05-08  6:05     ` Ray Leach
2007-05-08  6:09       ` Pieter De Wit
2007-05-08  6:36         ` Ray Leach
2007-05-08  6:38           ` Pieter De Wit
2007-05-08  8:39             ` Jan Engelhardt
2007-05-08  8:43       ` Jan Engelhardt
2007-05-08  8:34 ` Pascal Hambourg
2007-05-08  9:03   ` Pascal Hambourg
  -- strict thread matches above, loose matches on Subject: below --
2007-05-07 15:49 Pieter De Wit
2007-05-07 15:49 Pieter De Wit

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.