Re: NAT from Inside the LAN - Winroute FW 5.0

From: David (davidwnh@adelphia.net)
Date: 03/29/03


From: "David" <davidwnh@adelphia.net>
Date: Sat, 29 Mar 2003 05:46:51 GMT

I'm not all too familiar with Winroute, however normally you would assign
the Winroute computer's internal LAN address as the gateway address for all
the internal client machines.

You would also assign your ISP's router as the gateway address of Winroute
computer's external adapter.

Since you are using several public addresses be sure they were all assigned
to the Ethernet adapter before you started creating mappings. Make sure you
don't have NAT enabled on both interfaces because this will disable internet
sharing. Generally one public address is used for sharing the internet
connection and then you port map the others for servers or services you want
available from the internet. . If you are only providing limited filtered
inbound access to client desktops two adapters are fine, however if you are
providing publicly available servers think about adding a third Ethernet
adapter to separate these machines from the rest of your LAN in its own DMZ
subnet.

> The problem is that internal traffic using the Firewall as the default
> gateway doesn't do the NAT rules for the public addresses.
>
> I do have the WAN card configured with all the public addresses and the
LAN
> card is configured without a gateway for which I believe the firewall
> handles the routing?? I don't have any static routes establsihed with the
> Firewall, not sure if that matters ?
>
> Thanks for the help BTW..
>
> Chris
>
>
>
> "David" <davidwnh@adelphia.net> wrote in message
> news:K70ha.21426$TW2.2961569@news1.news.adelphia.net...
> > You don't really mention any problem here, but I will guess that your
> > traffic is not forwarding to the internet from the Winroute box? Do you
> have
> > your routing tables and external adapter gateway address set up
correctly
> on
> > the Winroute box?
> > "Chris Wilson" <cdudec@hotmail.com> wrote in message
> > news:v890659vlgf5ef@corp.supernews.com...
> > > Hello ALL
> > >
> > > Need help setting up NAT for my internal addresses.
> > >
> > > I have 2 Gateways here. One is a Linksys and the other is the Winroute
> FW
> > > 5.0 server.
> > >
> > > The problem is that all the NAT rules works when my local machine is
> > pointed
> > > to the Linksys gateway. When I point my machine to FW it does do the
> > NAT'ing
> > > for traffic originating from the internal LAN. I had the same problems
> > with
> > > IPTables as well. What am I missing. I need to get rid of the Linksys
> and
> > > would like to use one gateway and still have NAT from internal
> interfaces.
> > > ???
> > >
> > > Thanks
> > > Chris
> > >
> > >
> > >
> >
> >
>
>



Relevant Pages

  • ICS DNS suddenly stopped working.
    ... After adding a new gateway server, and reconfiguring the old gateway server ... without any intervention or other configuration, the ICS connection was ... The first adapter was connected to my cable modem ... internet connection, and configured it appropriately. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Terminal services for administration
    ... There is only one default gateway defined and it is on the adapter accessing ... the internet, the other adapter has no gateway defined. ... >> manually setup anything on Windows 2003. ...
    (microsoft.public.windows.terminal_services)
  • Re: How do I add a default gateway?
    ... >> because if you look at the Bluetooth adapter configuration you will ... >> see that the default gateway entry is blank. ... >> Bluetooth network, it is a subnet of two computers, the problem being ... >> the internet access does not seem to extend to the bluetooth computer ...
    (microsoft.public.win2000.networking)
  • Re: NAT from Inside the LAN - Winroute FW 5.0
    ... traffic is not forwarding to the internet from the Winroute box? ... One is a Linksys and the other is the Winroute FW ... > to the Linksys gateway. ...
    (comp.security.firewalls)
  • Setup a gateway in AIX for PC.
    ... But I only have one internet ... AIX machine as gateway for PC to connect to internet. ... config ip for the second adapter as 192.168.1.2 ...
    (comp.unix.aix)