Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > Network Security: Firewall, NAT, QoS, IPS and more

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 01-23-2004, 07:49 AM
Junior Member
 
Join Date: Dec 2003
Posts: 11
Default Can\'t access the server that NAT\'ed

Hi all,

I have read 'Web server / DNAT' from doc.astaro.org, but I still can't access the Web-server (with IP global) from outside. From inside, I can access with IP global to the web-server. Is it because I just use 2 ethernet, 1 for LAN and the other for External ? I put my web-server global IP in External Interface.

Thanks
Reply With Quote
  #2 (permalink)  
Old 01-23-2004, 03:35 PM
Senior Member
 
Join Date: Oct 2003
Location: Germany
Posts: 371
Default Re: Can\'t access the server that NAT\'ed

reyman,
did you define an additional interface on your external nic with the official ip of the Webserver? If not, do so and also define a dnat pointing to your Webserver (internal IP)?But note, you cannot use the global nic inside your LAN, because the ASL does not support two interfaces with the same network behind. Have a
look at this page, i hope that will resolve your problem.

Cheers,
Bagira
Reply With Quote
  #3 (permalink)  
Old 01-23-2004, 04:01 PM
Wizard
 
Join Date: Jul 2003
Location: U.S.
Posts: 1,265
Default Re: Can\'t access the server that NAT\'ed

Failing that, you will have to be more specific and start listing your DNAT, masquerade, and packetfilter rules. (sanitize public IPs for security reasons...)
Reply With Quote
  #4 (permalink)  
Old 01-24-2004, 06:08 AM
Junior Member
 
Join Date: Dec 2003
Posts: 11
Default Re: Can\'t access the server that NAT\'ed

Hi,

It works now.. [img]/images/graemlins/smile.gif[/img] So now if someone access my web thru browser, they'll redirect to server A (local IP1) and if they access thru ssh, they;ll redirect to server B (local IP2).
I dont know why yesterday I can't make my NAT'ed server access from outside, maybe because of iptables that runs in webserver. I add another eth and add it in my /etc/modules.conf, right now I have 3 eth, but only 2 that active. I don't know if it has anything to do with my problems.
Thanks guys..

Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:39 PM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.