Iptables and portforwarding to an internal webserver.

Rob Funk rfunk at funknet.net
Fri Jun 11 14:39:26 EDT 2004


Ken Bradford wrote:
> It appears that the problem is a simple "what is sent and what is
> expected" one. When my PC sends packets accross the internet to their
> firewall address (which are then redirected to the webserver) it expects
> packets back from the firewall. When "George" sends packets across his
> LAN to the firewall (which are then redirected to the webserver) they
> arrive at the webserver as coming from "George", not the firewall, so
> return packets are sent to "George", not the firewall. Meanwhile,
> "George" is expecting packets from the firewall. He didn't request
> anything from the webserver, so he doesn't want them.

Ah yes, that problem.

SNAT might be able to help here, though I haven't tried it for this 
purpose.

Or you could go back to the DNS solution or the inetd solution Chris 
mentioned.

-- 
==============================|   "A microscope locked in on one point
 Rob Funk <rfunk at funknet.net> |Never sees what kind of room that it's in"
 http://www.funknet.net/rfunk |    -- Chris Mars, "Stuck in Rewind"



More information about the colug mailing list