Re: Repost from OCLUG Tech list

Stephen Gregory <[email protected]>
Newsgroups gmane.user-groups.linux.ottawa.general
Message-ID <[email protected]>
 Bill Strosberg wrote:
>
> What I want to do is have packets from all of the specified external
> subnets routed out of the firewall to the address 10.20.0.1 on eth3.
> Basically, all external traffic from these source address ranges need to
> be forwarded to the VOIP provider's router, with no exception.
>
> Any ideas?
>

Does the VoIP provider initiate the connections back to the VoIP router?
Or does the VoIP router initial the connection to the provider. The
latter is how my VoIP worked. If this is the case then you should not
need anything other then MASQ for the voip router.

If the VoIP provider initiates connections to the the firewall then you
need DNAT to change the destinate address of the packet from the
firewall's external IP to the VoIP router.

The routing is only going to work if the VoIP provider sends packet
addressed to 10.20.0.1 via the firewall. As 10.20.0.1 is non-routable
this is unlikely to happen.


-- 
sg
-- 
OCLUG general discussion list
[email protected]
http://oclug.on.ca/mailman/listinfo/oclug
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.