Re: Is there such thing as a multiple external IP to Lan IP firewall/router???
From: Lars M. Hansen (badnews@hansenonline.net)Date: 09/18/02
- Next message: Mark Blain: "Newbie: When is ZoneAlarm not working?"
- Previous message: Chris: "Re: IPSEC from PIX to Nortel"
- In reply to: Archie Campbell: "Re: Is there such thing as a multiple external IP to Lan IP firewall/router???"
- Next in thread: Marc: "Re: Is there such thing as a multiple external IP to Lan IP firewall/router???"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: Lars M. Hansen <badnews@hansenonline.net> Date: Tue, 17 Sep 2002 23:53:54 GMT
On Tue, 17 Sep 2002 10:36:30 -0600, Archie Campbell spoketh
>re: "Just setting up 1-to-1 NAT doesn't do much unless you create a rule
>that
> specifically allows certain types of traffic to access the server."
>Yes, makes sense to me.
>So is my impression of Sonicwall correct - that it is bad because they dont
>seem to ask for a port, just the internal and external addresses, that what
>they do is not a good thing?
>Or, am I missing something?
>Thanks
>Archie
>
You're missing something. 1-to-1 NAT will NOT allow any traffic to pass
from the outside to the LAN until you create a rule to allow it. Since
the rule specify source, destination and service (port), it's all taken
good care of.
Lars M. Hansen
http://www.hansenonline.net
(replace 'badnews' with 'lars' in e-mail address)
- Next message: Mark Blain: "Newbie: When is ZoneAlarm not working?"
- Previous message: Chris: "Re: IPSEC from PIX to Nortel"
- In reply to: Archie Campbell: "Re: Is there such thing as a multiple external IP to Lan IP firewall/router???"
- Next in thread: Marc: "Re: Is there such thing as a multiple external IP to Lan IP firewall/router???"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|