Re: routing from within net

Martin Pot <mpot-/[email protected]> Sat, 16 Oct 2004 08:40:40 +0800 (WST)
Newsgroups gmane.comp.security.firewalls.smoothwall.general
Message-ID <[email protected]>
On Fri, 15 Oct 2004, Antonio Trujillo Carmona wrote:

> Is possible to call from a PC in the green zone connect to other one in
> the green too using a public name?
>
> PC1(192.168.1.6) call to trujo.hn.org| >>>> | smothwall | >>> DNS
> resolve like 82.198.103.163
> smothwall translate to 192.168.1.5 | >>>> |PC2

No, by default, Smoothwall's anti-spoofing protection blocks you from
accessing services port-forwarded to the green network, from a PC on the
green network itself.

There are a few solutions / workarounds to this.  If you port-forward
services to the orange network, PCs on the green network can access them
using the red IP / hostname.
Alternatively, add your public hostname to Smoothwall's hosts file, with
the appropriate green IP, and PCs on the green network will resolve the
hostname using the green IP, and thus will be able to connect.

Refer to the "Accessing port-forwarded services from the green network"
sticky thread in the 2.0 support forum at
http://community.smoothwall.org/forum/
or refer to this Smoothwall.net knowledge base article (written for
Smoothwall Corporate Server, but relevant for Smoothwall Express):
http://www.smoothwall.net/support/knowledge/view.php?id=46

Cheers,
Martin.
http://martybugs.net
_______________________________________________
gpl mailing list
[email protected]
http://lists.smoothwall.org/mailman/listinfo/gpl

SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall