Re: routing from within net

Antonio Trujillo Carmona <trujo-hjL/[email protected]> Sat, 16 Oct 2004 14:38:43 +0200
Newsgroups gmane.comp.security.firewalls.smoothwall.general
Message-ID <[email protected]>
Martin Pot escribis:

>On Fri, 15 Oct 2004, Antonio Trujillo Carmona wrote:
>
>  
>
>>Is possible to call from a PC in the green zone connect to other one in
>>the green too using a public name?
>>
>>PC1(192.168.1.6) call to trujo.hn.org| >>>> | smothwall | >>> DNS
>>resolve like 82.198.103.163
>>smothwall translate to 192.168.1.5 | >>>> |PC2
>>    
>>
>
>No, by default, Smoothwall's anti-spoofing protection blocks you from
>accessing services port-forwarded to the green network, from a PC on the
>green network itself.
>
>There are a few solutions / workarounds to this.  If you port-forward
>services to the orange network, PCs on the green network can access them
>using the red IP / hostname.
>Alternatively, add your public hostname to Smoothwall's hosts file, with
>the appropriate green IP, and PCs on the green network will resolve the
>hostname using the green IP, and thus will be able to connect.
>  
>
Thank I'm going to try to add to hostname, I think it it the cleanly way.

>Refer to the "Accessing port-forwarded services from the green network"
>sticky thread in the 2.0 support forum at
>http://community.smoothwall.org/forum/
>or refer to this Smoothwall.net knowledge base article (written for
>Smoothwall Corporate Server, but relevant for Smoothwall Express):
>http://www.smoothwall.net/support/knowledge/view.php?id=46
>
>Cheers,
>Martin.
>http://martybugs.net
>_______________________________________________
>gpl mailing list
>[email protected]
>http://lists.smoothwall.org/mailman/listinfo/gpl
>
>SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall
_______________________________________________
gpl mailing list
[email protected]
http://lists.smoothwall.org/mailman/listinfo/gpl

SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall