Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 13 Jun 2002 17:04:51 -0500
From:      "Raja Velu" <raja@micronetusa.com>
To:        "'Nick Rogness'" <nick@rogness.net>
Cc:        <freebsd-questions@FreeBSD.ORG>
Subject:   RE: Port re-direction using NAT/IPFW - SOLVED
Message-ID:  <000601c21326$5812b060$1d00a8c0@www.micronetusa.com>
In-Reply-To: <Pine.BSF.4.21.0206131615180.56019-100000@cody.jharris.com>

next in thread | previous in thread | raw e-mail | index | archive | help

> > > > Hi All,
> > > >
> > > > We have a FreeBSD 4.4 setup running IPFW/NAT. We host
> web sites for
> > > > several domains using Apache's virtual domain feature.
> We use Apache
> > > > 1.3.20.
> > > >
> > > > One of our customers has web content that includes
> Microsoft's ASP
> > > > pages, for which we need to host them on a Windows
> server. We have a
> > > > Windows 2000 Server behind our firewall, which can
> probably do the
> > > > hosting.
> > > >
> > > > My question is this: Can I re-direct requests for this
> > > particular site
> > > > alone to the Windows 2000 box sitting inside and
> continue to service
> > > > requests for other web sites from the FreeBSD box? I know it's
> > > > probably possible to do this if the site we're hosting
> on the Win2k
> > > > server uses a port other than 80. Is that the only
> option though?
> > > >
> > >
> > > 	Not unless it is on a different port (not 80) or has a different
> > > 	public IP in which you can translate.  Although, there may be a
> > > 	way through apache to handle something like
> > > this...maybe with the
> > > 	ReWrite Engine or some other facility.
> >
>
> > I think I'll take your first suggestion. So, if I use a different
> > public IP, I guess I'll have to run 2 instances of NAT. Can
> I do this
> > using a virtual IP as my second public IP or do I have to
> put another
> > network card in my box? I tried running a second instance
> of NAT on my
> > virtual public IP and it came back with this error:
>
> 	You should be able to just buy another IP from your upstream
> 	provider and bind it as an alias using ifconfig (with the same
> 	network card).
>
> 	You also don't need a second natd running.  Just setup the
> 	redirect statement and all should be well.

I added the second IP as an alias to my external interface. Then, added
another redirect line to my natd.conf. Had to open up this rule in my IPFW
rule list. And then, it started working.

Thanks a lot for your assistance, Nick.

Rgds,
Raja


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000601c21326$5812b060$1d00a8c0>