This is a discussion on rdr help within the IPFilter forums, part of the System Security and Security Related category; --0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD Content-type: text/plain; charset=US-ASCII Content-transfer-encoding: quoted-printable Hello all, I am trying ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
--0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD
Content-type: text/plain; charset=US-ASCII Content-transfer-encoding: quoted-printable Hello all, I am trying to do something a bit complicating and was wondering = if some of you had tried this is in the past or had any tips. First off ipfilter has been wonderful, helpful and is a great tool. Now to the issue/problem I am having. We are running a couple zones on a T2000 one= zone with a world access IP address ie. 147.9.X.X. We then want to crea= te a separate zone on a private subnet ie. 192.168.1.2 which currently does= not have any world access. What I would like and am trying to do is take ipfilter/ipnat and use RDR to redirect 2 ports from Global zone to Zone= B. I have tried the configuration bellow but have not been successful. An= y help would be appreciated and is this even possible. We are running ipfilter/ipnat that came with Solaris 10. Global =3D 147.9.X.X e1000g1 Zone A =3D 147.9.X.X e1000g1:1 ZoneB =3D 192.168.1.2 e1000g1:2 ipnat.conf on the Global zone. # forward from a public port to a private zone port rdr eg1000g1 147.9.X.X port 2222 -> 192.168.1.2 port 22 # allow any 192.168.1.x zone to use the internet map eg1000g1 192.168.1.0/24 -> 0/32 map eg1000g1 192.168.1.0/24 -> 0/32 map eg1000g1 192.168.1.0/24 -> 0/32 ipfilter.conf on Global zone. # IP Filter rules syntax. # Testing purposes pass in quick log on e1000g1 from any to any Luiz Casey Office: (202) 885-2692 Cell: (202) 403-1209 lcasey@american.edu= --0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD Content-type: text/html; charset=US-ASCII Content-Disposition: inline Content-transfer-encoding: quoted-printable <html><body> <p>Hello all,<br> I am trying to do something a bit complicating and was wondering if so= me of you had tried this is in the past or had any tips. First off ipfi= lter has been wonderful, helpful and is a great tool. Now to the issue/= problem I am having. We are running a couple zones on a T2000 one zone = with a world access IP address ie. 147.9.X.X. We then want to create a = separate zone on a private subnet ie. 192.168.1.2 which currently does= not have any world access. What I would like and am trying to do is ta= ke ipfilter/ipnat and use RDR to redirect 2 ports from Global zone to Z= one B. I have tried the configuration bellow but have not been success= ful. Any help would be appreciated and is this even possible. We are = running ipfilter/ipnat that came with Solaris 10.<br> <br> Global =3D 147.9.X.X e1000g1<br> Zone A =3D 147.9.X.X e1000g1:1 <br> ZoneB =3D 192.168.1.2 e1000g1:2<br> <br> <br> ipnat.conf on the Global zone.<br> <br> # forward from a public port to a private zone port<br> rdr eg1000g1 147.9.X.X port 2222 -> 192.168.1.2 port 22<br> <br> # allow any 192.168.1.x zone to use the internet<br> map eg1000g1 192.168.1.0/24 -> 0/32 <br> map eg1000g1 192.168.1.0/24 -> 0/32 <br> map eg1000g1 192.168.1.0/24 -> 0/32 <br> <br> ipfilter.conf on Global zone. <br> <br> # IP Filter rules syntax.<br> # Testing purposes<br> pass in quick log on e1000g1 from any to any<br> <br> <br> Luiz Casey<br> Office: (202) 885-2692<br> Cell: (202) 403-1209<br> lcasey@american.edu</body></html>= --0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD-- |
![]() |
| Thread Tools | |
| Display Modes | |
|
|