Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 29 Jul 2004 10:27:05 -0400
From:      Hakim Singhji <Hakim.Singhji@nychhc.org>
To:        Hakim Z.Singhji <system-administrator@earthlink.net>, Matthew Seaman <m.seaman@infracaninophile.co.uk>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: HOWTO Ping LAN???
Message-ID:  <20040729T102705Z_C5AF00120003@nychhc.org>

next in thread | raw e-mail | index | archive | help

--____RKELBDBJGGQNKOZZCEPT____
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

Hi Matt,

You say that the only way I will be able to connect to my network is by =
tunneling. =20
This is not what I want to do, I thought I may be able to SSH, Telnet, =
www, etc.=20
from the outside to my default gateway and have the gateway pass SSH, =
Telnet,=20
www., or any other request to the machine on the private network by =
including the=20
"localhost.defaultgateway.domain.org" or something to that affect.

Does NAT Overloading only go one way???

Hakim Z. Singhji
Coordinating Mgr. / Infection Control
718-245-3923
hakim.singhji@nychhc.org

>>> Matthew Seaman <m.seaman@infracaninophile.co.uk> 7/29/2004 5:32:32 AM =
>>>
On Thu, Jul 29, 2004 at 01:40:02AM -0400, Hakim Z. Singhji wrote:

> Figure 1
>=20
> ***************
> *  Internet   *
> *24.199.1xx.xx*
> ***************
> ~       |
> ~       |
> ***************                 **************
> * Defaut GW *  __ __   *Kids Machine*
> *192.68.0.1   *               *192.68.0.3  *
> FreeBSD 4.10 *	         * Mandrake 10*
> ***************                   **************
> ~       |
> ~       |
> *****************
> *Wrk Station1*
> *192.68.0.2    *
> *Redhat 9      *
> *****************
>=20
> This is a rough diagram of the network... I would like to ssh, ping,
> etc. the machines behind the default gateway directly (without
> tunneling) from the outside the network (at work for example). Is this
> possible and if so how do I config.  Keep in mind that my default
> gateway is FreeBSD.  I know this may be a complicated project but if you
> could help that would help me greatly.  Many thanks to everyone in =
advance.

I'm afraid that's not going to be possible with your current network
layout.  If you want all of your machines to be accessible from the
Internet, then you'll need routable addresses on all of your machines.

I know you've said you don't want to use tunnelling, but
unfortunately, that's the only way you can access a private address
space as you have from outside it.  A relatively simple way of doing
that is to ssh into your gateway box, and use the '-L' or '-R'
portforwarding options to create a tunnel to one of the internal
machines, and then ssh or otherwise connect through that tunnel: see
eg.

    http://www.linux.ie/articles/tutorials/ssh.php=20

One other point: you're going to have problems if you're using
192.168.0.0 as the IP number on your FreeBSD machine.  That's the
*network* address, and shouldn't be applied directly to any specific
machine.  If you're running your internal network using 192.168.0.0/24
as the address space, then you have 254 addresses (from 192.168.0.1 to
192.168.0.254) to use for client machines, since 192.168.0.0 (network
address) and 192.168.0.255 (broadcast address) are reserved as part of
the networking setup.

	Cheers,

	Matthew

--=20
Dr Matthew J Seaman MA, D.Phil.                       26 The Paddocks
                                                      Savill Way
PGP: http://www.infracaninophile.co.uk/pgpkey         Marlow
Tel: +44 1628 476614                                  Bucks., SL7 1TH UK

--____RKELBDBJGGQNKOZZCEPT____
Content-Type: application/x-pkcs7-signature; name=smime.p7s
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename=smime.p7s
Content-Description: S/MIME Cryptographic Signature
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--____RKELBDBJGGQNKOZZCEPT____--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040729T102705Z_C5AF00120003>