Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 10 Oct 2002 17:22:21 -0400
From:      wolf <mjoyner2@hq.dyns.cx>
To:        Nick Rogness <nick@rogness.net>
Cc:        Marc Hunter <hunter@hunter.net>, freebsd-questions@freebsd.org
Subject:   Re: ipfw and natd during internal to internal access ...
Message-ID:  <3DA5EF8D.6040108@hq.dyns.cx>
References:  <20021010151502.D2374-100000@skywalker.rogness.net>

next in thread | previous in thread | raw e-mail | index | archive | help
You might try freebsd-hackers or freebsd-stable mailing lists. They are 
more technically oriented for things like this.

Nick Rogness wrote:

> On Thu, 10 Oct 2002, Marc Hunter wrote:
> 
> 
>>Hi,
>>
>>We have just implemented an ipfw and natd firewall and generally it
>>works great.  We are using natd for traffic going out and to redirect
>>outside traffic on port 80 to a particular webserver.  However, when a
>>machine within the network attempts to access the web server through its
>>external address (using the domain name for instance) it doesn't work.
>>
>>Is there some special trick to deal with this?
>>
> 
> 	Yeh, run an internal DNS server which resolves the site
> 	differently on the inside of your network to the internal address.
> 
> 	Any other workaround is considered shitty by most people, like:
> 
> 		ipfw divert natd all from any to any via $outside_int
> 		ipfw divert natd all from any to any via $inside_int
> 
> 	However, this would probably work [not sure].
> 
> Nick Rogness <nick@rogness.net>
> - WARNING TO ALL PERSONNEL:
>    Firings will continue until morale improves.
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-questions" in the body of the message
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3DA5EF8D.6040108>