Re: gpl digest, Vol 1 #1264 - 1 msg

"Chris McQuistion" <cmcquistion-XL29j12/[email protected]> Sun, 14 Nov 2004 14:58:36 -0600 (CST)
Newsgroups gmane.comp.security.firewalls.smoothwall.general
Message-ID <[email protected]>
I think you can use DNS to solve this.

Let's pretend your Smoothwall's GREEN IP address is 192.168.1.254 and your
Exchange Server's address is 192.168.1.1.  Let's further pretend that your
Exchange Server's DNS name (on the internal network) is mail.company.com
and your Smoothwall's DNS name (on the internal network) is
gate.company.com.  Edit the /etc/hosts file on your Smoothie and add the
following entries:

192.168.1.254   gate.company.com
192.168.1.1     mail.company.com

If you add a DNS record to point mail.company.com to your RED IP, then you
should be able to configure Outlook clients to use mail.company.com and
they will be able to connect to the mail server, whether they are
connected to the internal network, or outside of the company.  (Usually,
your ISP or website hosts are your DNS managers.)  Internally, when
clients try to connect to mail.company.com, your Smoothwall will point
them to 192.168.1.1 (the Exchange Server).  Externally, when they try to
connect to mail.company.com, they will be pointed to your RED IP address.
At that point, your firewall rules can point them to your mail server.
(Port forwarding on the appropriate ports, to the appropriate IP.)

I hope this makes sense.  This is the way I've configured my network and
it works for me, but I'm probably better at setting this up, then I am at
explaining it.

Chris

> Today's Topics:
>
>    1. Question about MS Exchange and Smoothwall Express (Richard Doiron)
>
> --__--__--
>
> Message: 1
> Date: Fri, 12 Nov 2004 17:52:02 -0500
> From: Richard Doiron <[email protected]>
> To: <[email protected]>
> Subject: [gpl] Question about MS Exchange and Smoothwall Express
>
> Hi,
>
> I have a need to set up Exchange 2003 on a private lan with users who need
> access to the Exchange server from both from the private lan and the
> internet. I have port forwarding set up so that a user can access the
> Exchange server fine from the internet using the public address of the
> Smoothwall. Similarly, users on the private lan get their Exchange fix
> using
> the private address of the exchange server.
>
> The problem comes in with laptop users. If they set up their Exchange
> account to use the private lan address, when out of the office nothing
> works. If they set up the Exchange account to use the public address of
> the
> Smoothwall, being out of the office works, but when inside, the Smoothwall
> is discarding all packets (Martians?).
>
> The old setup used a Symantec  Firewall VPN 200r and it worked in this
> configuration.
>
>  Setting up an Orange segment is not feasible as the client only has one
> box
> to run server and exchange.
>
> Any help would be appreciated.
>
> Richard
_______________________________________________
gpl mailing list
[email protected]
http://lists.smoothwall.org/mailman/listinfo/gpl

SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall