Re: routing from within net
Antonio Trujillo Carmona <trujo-hjL/[email protected]> Sat, 16 Oct 2004 14:38:43 +0200
| Newsgroups | gmane.comp.security.firewalls.smoothwall.general |
|---|---|
| Message-ID | <[email protected]> |
Martin Pot escribis: >On Fri, 15 Oct 2004, Antonio Trujillo Carmona wrote: > > > >>Is possible to call from a PC in the green zone connect to other one in >>the green too using a public name? >> >>PC1(192.168.1.6) call to trujo.hn.org| >>>> | smothwall | >>> DNS >>resolve like 82.198.103.163 >>smothwall translate to 192.168.1.5 | >>>> |PC2 >> >> > >No, by default, Smoothwall's anti-spoofing protection blocks you from >accessing services port-forwarded to the green network, from a PC on the >green network itself. > >There are a few solutions / workarounds to this. If you port-forward >services to the orange network, PCs on the green network can access them >using the red IP / hostname. >Alternatively, add your public hostname to Smoothwall's hosts file, with >the appropriate green IP, and PCs on the green network will resolve the >hostname using the green IP, and thus will be able to connect. > > Thank I'm going to try to add to hostname, I think it it the cleanly way. >Refer to the "Accessing port-forwarded services from the green network" >sticky thread in the 2.0 support forum at >http://community.smoothwall.org/forum/ >or refer to this Smoothwall.net knowledge base article (written for >Smoothwall Corporate Server, but relevant for Smoothwall Express): >http://www.smoothwall.net/support/knowledge/view.php?id=46 > >Cheers, >Martin. >http://martybugs.net >_______________________________________________ >gpl mailing list >[email protected] >http://lists.smoothwall.org/mailman/listinfo/gpl > >SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall _______________________________________________ gpl mailing list [email protected] http://lists.smoothwall.org/mailman/listinfo/gpl SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall