Re: port forwarding with binding to specific IP on remote host



On 2006-08-14, Todd H. <comphelp@xxxxxxxxx> wrote:
Stefan Palme <kleiner@xxxxxxxxxxxxxxx> writes:
But I want it to see 10.0.0.21 as source IP.

Then you'll need to specify in your OS's routing tables that you want
traffic destined for .100 to go out eth0:1

Is it possible to solve this with pure ssh-magic, or do I have to
create iptables rules or special routing table entries for this?

I'm willing to be wrong about this, but don't think ssh has ability to
reach this far down into the tcp/ip stack to do what you want here
without some help from routing tables.

ssh or sshd could use the bind(2) system call to bind the local address
of the outgoing connection of the port forward to a given address ("ssh
-b" in OpenSSH does that for the ssh connection itself but there's no
equivalent for forwarded connections).

In general, I don't think there's provision in the ssh2 protocol to
specify the source address that the remote end should use for an outbound
forwarded connection.

--
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4 37C9 C982 80C7 8FF4 FA69
Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.
.



Relevant Pages

  • Mandriav 2006_x86_64: Weired networking behaviour (multiple problems)
    ... While no connection, /etc/resolv and routing table get changed. ... Nov 12 13:13:32 10 kernel: Neighbour table overflow." ... 00:00.0 Memory controller: nVidia Corporation CK804 Memory Controller (rev ...
    (comp.os.linux.networking)
  • Re: No Internet Connection w/ Router
    ... If you receive Destination net unreachable message, you have a routing issue ... or the router doesn't know to route. ... Networking, Internet, Routing, VPN Troubleshooting on ... Ethernet adapter Local Area Connection via Westell: ...
    (microsoft.public.windowsxp.network_web)
  • Re: Site-to-Site VPN client routing question - clients at branch office not able to acce
    ... it is just a matter of checking the routing tables. ... Your DC might only have one NIC, but as soon as your VPN connection is made it has two IP addresses, so you get all sorts of problems. ... On the RRAS server at HQ, configure a demand-dial interface. ... On the RRAS server in Shanghai, configure a demand-dial interface and give it a static route to 194.1.1.0/24 as above. ...
    (microsoft.public.windows.server.networking)
  • Re: Connecting via remote
    ... Then the 56k Frame relay would be a bridged connection. ... routing issue nor VPN as I mentioned earlier. ... Phillip Windell ...
    (microsoft.public.windows.server.networking)
  • Re: IrDA PROBLEM
    ... When I try to create the connection, it says impossible to open Routin and ... distan access sevice (or some name like this because I have only the service ... To answer, please suppress all dots before @ Pour m'écrire, veuillez supprimer tous les point avant @ "Nathan McNulty" a écrit dans le message de ... Also, check in your> services and see if you have any services disabled, especially any> dealing with routing or says something close to your mentioned service. ...
    (microsoft.public.windowsxp.hardware)