Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Arnt Karlsen <arnt@c2i.net>
To: netfilter@lists.netfilter.org
Subject: Re: h.323 firewall
Date: Thu, 14 Nov 2002 21:37:44 +0100	[thread overview]
Message-ID: <20021114213744.4915ab70.arnt@c2i.net> (raw)
In-Reply-To: <000d01c28c0a$473ff290$057ba8c0@wxcsmtp450>

On Thu, 14 Nov 2002 19:18:48 +0100, 
"vincent blondel" <vincent.blondel@chello.be> wrote in message 
<000d01c28c0a$473ff290$057ba8c0@wxcsmtp450>:

> Hi,
> 
> I want to implement in our organisation a complete video conferencing
> infrastructure but I am completely novice
> in this matter. I read a lot of documentation these last days but
> there are some points that stay not clear.
> 
> As you can see it above, we want to open domains DEV1 and DEV2 to the
> net for h.323 traffic.
> 
> The current situation incorporates :
> 
>           10.66.0.xxx
>      +---------------+
>      | SMC7008BR |
>      +---------------+
>           10.66.1.xxx
>                    DEV2
>                 |           |
>   +---------+-+   +--+--------+
>   | slack 8.0 |   | Slack 8.0 |
>   +-----------+   +-----------+
>                       192.168.0.xxx   +-----+       10.66.0.xxx
>                                              | pp0 | 
>                                              | +---------------+
>                                              +--+--+  |   switch     
>                                              |
>                                                  |       +-----------
>                                                  |       ----+
>                                                  |         DMZ
>                                                  +-------+ 
>                                                  +-------------+
>                                                  |  NS2  |   | NS1
> |
>                       10.66.0.xxx          |  HTTP2| | HTT1        |
>                  +---------------+         +-------+  | FTP          
>                  +--ISP
>                  |  SMC7008BR|                        | SMTP       |
>                  +---------------+                       
>                  +-------------+
>                   192.168.0.xxx                           
>                   192.168.0.xxx
>                      DEV1
>                   |            |
>  +-----------+-+      +-+---------+
>  |   linux         | .... |    w2k      |
>  +-------------+      +-----------+
>   GnomeMeeting         NetMeeting
> 
> - a firewall iptables on NS1 and NS2
> - communcication with the net is passing through our DMZ zone
> - DMZ integrates 2 servers linux slackware 8.0 / kernel 2.4.18 /
> patch-o-matic-20020825 / iptables 1.2.7a
> - DMZ is configured with nat feature for traffic between DEV1/DEV2 and
> the net
> - DEV1/DEV2 includes some 15 users with webcams and/or H323 compliant
> equipment.
> 
> So the problems I encounter are the following :

...a wee problem in your ascii artwork: 
try again with a _constant_width_ font.

-- 
..med vennlig hilsen = with Kind Regards from Arnt... ;-)
...with a number of polar bear hunters in his ancestry...
  Scenarios always come in sets of three: 
  best case, worst case, and just in case.




  parent reply	other threads:[~2002-11-14 20:37 UTC|newest]

Thread overview: 8+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2002-11-14 18:18 h.323 firewall vincent blondel
2002-11-14 20:18 ` Rasmus Reinholdt Nielsen
2002-11-15  5:34   ` Some go through, some don't Tomasz Korycki
2002-11-15 13:55     ` Arnt Karlsen
2002-11-25 19:57       ` Tomasz Korycki
2002-11-25 23:44         ` Arnt Karlsen
2002-11-14 20:37 ` Arnt Karlsen [this message]
2002-11-15 10:57 ` h.323 firewall Thomas Heinz

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20021114213744.4915ab70.arnt@c2i.net \
    --to=arnt@c2i.net \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox