Re: routing from within net
Martin Pot <mpot-/[email protected]> Sat, 16 Oct 2004 08:40:40 +0800 (WST)
| Newsgroups | gmane.comp.security.firewalls.smoothwall.general |
|---|---|
| Message-ID | <[email protected]> |
On Fri, 15 Oct 2004, Antonio Trujillo Carmona wrote: > Is possible to call from a PC in the green zone connect to other one in > the green too using a public name? > > PC1(192.168.1.6) call to trujo.hn.org| >>>> | smothwall | >>> DNS > resolve like 82.198.103.163 > smothwall translate to 192.168.1.5 | >>>> |PC2 No, by default, Smoothwall's anti-spoofing protection blocks you from accessing services port-forwarded to the green network, from a PC on the green network itself. There are a few solutions / workarounds to this. If you port-forward services to the orange network, PCs on the green network can access them using the red IP / hostname. Alternatively, add your public hostname to Smoothwall's hosts file, with the appropriate green IP, and PCs on the green network will resolve the hostname using the green IP, and thus will be able to connect. Refer to the "Accessing port-forwarded services from the green network" sticky thread in the 2.0 support forum at http://community.smoothwall.org/forum/ or refer to this Smoothwall.net knowledge base article (written for Smoothwall Corporate Server, but relevant for Smoothwall Express): http://www.smoothwall.net/support/knowledge/view.php?id=46 Cheers, Martin. http://martybugs.net _______________________________________________ gpl mailing list [email protected] http://lists.smoothwall.org/mailman/listinfo/gpl SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall