From owner-freebsd-questions Wed Nov 29 4:47:22 2000 Delivered-To: freebsd-questions@freebsd.org Received: from mss.rdc2.nsw.optushome.com.au (ha1.rdc2.nsw.optushome.com.au [203.164.2.50]) by hub.freebsd.org (Postfix) with ESMTP id D1E4037B402 for ; Wed, 29 Nov 2000 04:47:14 -0800 (PST) Received: from ryan ([203.164.161.45]) by mss.rdc2.nsw.optushome.com.au (InterMail vM.4.01.03.00 201-229-121) with SMTP id <20001129124711.XPMC28304.mss.rdc2.nsw.optushome.com.au@ryan> for ; Wed, 29 Nov 2000 23:47:11 +1100 From: "Ryan" To: Subject: FW: Servers Behind a Firewall Date: Wed, 29 Nov 2000 23:47:00 +1000 Message-ID: <000001c05a0a$dafcfe80$0200a8c0@ryan> MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook CWS, Build 9.0.2416 (9.0.2911.0) Importance: Normal X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4133.2400 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG -----Original Message----- From: Ryan [mailto:rnera@optushome.com.au] Sent: Tuesday, 28 November 2000 11:32 PM To: 'questions-freebsd@freebsd.org' Subject: Servers Behind a Firewall Hi I would like to run some mail servers and web servers behind a firewall how would I get the firewall machine accept incomming request for the servers behind .... would I need an IP for each server behind the firewall? for example... port 25 on 203.166.226.1 for mail1.mydomain.com port 25 on 203.166.226.2 for mail2.mydomain.com port 80 on 203.166.226.1 for www.mydomain.com so on and so forth.... is it just a case of writing the right rules into the firewall or another program to do this? also whats best practise for running servers behind firewalls/proxies in FreeBSD ? I'd also like to have the firewall machine do NAT, I know how to do this with IPFW and natd... would this affect the things I wanted to do? thanks for the pointers and ideas To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message