Re: how to configure a router/firewall with no nat

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi, 

I really do not understand why you want to avoid nat?
You probably know that is possible to route ( nat :) 
)
traffic to servers located inside internal network,
and users should not know that, and on specific 
access points ( I mean public ip addresses ) you can
accept all traffic to your servers ( which are inside
safety of internal network ) 


Regards 

Elvir Kuric 


--- Carlos Rotenberg <rotenberg@xxxxxxxxx> wrote:

> I have to create a Firewall/Router with Iptables to
> protect our clients, but
> I can't do NAT, my clients have to have Public IPs
> on their servers.
> I was trying to figure out how to do that, but I
> couldn't get any clue.
>  
> The provider assigned me a /24 network and he gave
> me /30 network for the
> external network, if someone can help me, I'll
> appreciate it.
>  
> Thank you,
>  
> Carlos
> 
> Example:
> Router Network 200.200.199.0/30
> Provider Router Ip address: 200.200.199.1
> My Firewall/Router IP address: 200.200.199.2
>  
> Clients Network assigned: 200.200.200.0/24
>  
>  
>       200.200.199.1/30              FIREWALL
> 200.200.200.1/28
> 200.200.200.0/27  
> INTERNET  -----------------------   ROUTER
> ------------------------------------------  CLIENT 1
> SERVERS
>                   200.200.199.2/30  IPTABLES |
> Default gateway: 200.200.200.1
>                                              |
>                                              |
>                                              |
>                                              |
> 200.200.200.33/28
> 200.200.200.32/28
>  
> ------------------------------------------  CLIENT 2
> SERVERS
>                                              |
> Default gateway: 200.200.200.33                     
>                    |
>                                              |
>                                              |
>                                              |
>                                              |
> 200.200.200.65/27
> 200.200.200.64/27
>  
> ------------------------------------------  CLIENT 3
> SERVERS
>                                              |
> Default gateway: 200.200.200.65
>                                              |
>                                              |
>                                              |
>                                              |
> 200.200.200.129/25
> 200.200.200.128/25
>  
> ------------------------------------------  CLIENT 4
> SERVERS
>  
> Default gateway: 200.200.200.129
>  
> 
> 
> 



 
____________________________________________________________________________________
No need to miss a message. Get email on-the-go 
with Yahoo! Mail for Mobile. Get started.
http://mobile.yahoo.com/mail 


 
____________________________________________________________________________________
Get your own web address.  
Have a HUGE year through Yahoo! Small Business.
http://smallbusiness.yahoo.com/domains/?p=BESTDEAL


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux