Re: NAT from Inside the LAN - Winroute FW 5.0
From: David (davidwnh@adelphia.net)
Date: 03/29/03
- Next message: David: "Re: Use a firewall ... go to jail - from The Register"
- Previous message: Marcus Castro: "ZoneAlarm User Community offline tonight for maintenance"
- In reply to: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Next in thread: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Reply: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "David" <davidwnh@adelphia.net> Date: Sat, 29 Mar 2003 05:46:51 GMT
I'm not all too familiar with Winroute, however normally you would assign
the Winroute computer's internal LAN address as the gateway address for all
the internal client machines.
You would also assign your ISP's router as the gateway address of Winroute
computer's external adapter.
Since you are using several public addresses be sure they were all assigned
to the Ethernet adapter before you started creating mappings. Make sure you
don't have NAT enabled on both interfaces because this will disable internet
sharing. Generally one public address is used for sharing the internet
connection and then you port map the others for servers or services you want
available from the internet. . If you are only providing limited filtered
inbound access to client desktops two adapters are fine, however if you are
providing publicly available servers think about adding a third Ethernet
adapter to separate these machines from the rest of your LAN in its own DMZ
subnet.
> The problem is that internal traffic using the Firewall as the default
> gateway doesn't do the NAT rules for the public addresses.
>
> I do have the WAN card configured with all the public addresses and the
LAN
> card is configured without a gateway for which I believe the firewall
> handles the routing?? I don't have any static routes establsihed with the
> Firewall, not sure if that matters ?
>
> Thanks for the help BTW..
>
> Chris
>
>
>
> "David" <davidwnh@adelphia.net> wrote in message
> news:K70ha.21426$TW2.2961569@news1.news.adelphia.net...
> > You don't really mention any problem here, but I will guess that your
> > traffic is not forwarding to the internet from the Winroute box? Do you
> have
> > your routing tables and external adapter gateway address set up
correctly
> on
> > the Winroute box?
> > "Chris Wilson" <cdudec@hotmail.com> wrote in message
> > news:v890659vlgf5ef@corp.supernews.com...
> > > Hello ALL
> > >
> > > Need help setting up NAT for my internal addresses.
> > >
> > > I have 2 Gateways here. One is a Linksys and the other is the Winroute
> FW
> > > 5.0 server.
> > >
> > > The problem is that all the NAT rules works when my local machine is
> > pointed
> > > to the Linksys gateway. When I point my machine to FW it does do the
> > NAT'ing
> > > for traffic originating from the internal LAN. I had the same problems
> > with
> > > IPTables as well. What am I missing. I need to get rid of the Linksys
> and
> > > would like to use one gateway and still have NAT from internal
> interfaces.
> > > ???
> > >
> > > Thanks
> > > Chris
> > >
> > >
> > >
> >
> >
>
>
- Next message: David: "Re: Use a firewall ... go to jail - from The Register"
- Previous message: Marcus Castro: "ZoneAlarm User Community offline tonight for maintenance"
- In reply to: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Next in thread: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Reply: Chris Wilson: "Re: NAT from Inside the LAN - Winroute FW 5.0"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|