|
|||||||||||
|
Re: double nat
From: Bryan Irvine <bryan.irvine(at)kingcountyjournal.com>
Date: Fri Feb 28 2003 - 16:15:21 EST
On Fri, 2003-02-28 at 12:48, Chuck Yerkes wrote:
oops ok they are below > Why NAT when you have real addresses?
long story, basically this network was setup by some jackass about 8 years ago, who basically stole some other companies ip range. It's too ingrained into our network to change it easily, so we use routers and nat devices to make sure none of those machines touch the internet (as they won't work). Just pretend they are a 10.* range or some other non-routable network. here are the rules: scrub in all nat on xl0 inet from 192.233.103.0/24 to any -> (xl0) nat on xl0 inet from 192.168.0.0/24 to any -> (xl0) #redirect web traffic to addesk server
80
#redirect ftp traffic to addesk server
updated the digram to include interfaces > >
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:33:19 EDT |
||||||||||
|
|||||||||||