rdr help

This is a discussion on rdr help within the IPFilter forums, part of the System Security and Security Related category; --0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD Content-type: text/plain; charset=US-ASCII Content-transfer-encoding: quoted-printable Hello all, I am trying ...


Go Back   Usenet Forums > System Security and Security Related > IPFilter

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 1 Week Ago
Luiz Casey
 
Posts: n/a
Default rdr help

--0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD
Content-type: text/plain; charset=US-ASCII
Content-transfer-encoding: quoted-printable



Hello all,
I am trying to do something a bit complicating and was wondering =
if
some of you had tried this is in the past or had any tips. First off
ipfilter has been wonderful, helpful and is a great tool. Now to the
issue/problem I am having. We are running a couple zones on a T2000 one=

zone with a world access IP address ie. 147.9.X.X. We then want to crea=
te a
separate zone on a private subnet ie. 192.168.1.2 which currently does=
not
have any world access. What I would like and am trying to do is take
ipfilter/ipnat and use RDR to redirect 2 ports from Global zone to Zone=
B.
I have tried the configuration bellow but have not been successful. An=
y
help would be appreciated and is this even possible. We are running
ipfilter/ipnat that came with Solaris 10.

Global =3D 147.9.X.X e1000g1
Zone A =3D 147.9.X.X e1000g1:1
ZoneB =3D 192.168.1.2 e1000g1:2


ipnat.conf on the Global zone.

# forward from a public port to a private zone port
rdr eg1000g1 147.9.X.X port 2222 -> 192.168.1.2 port 22

# allow any 192.168.1.x zone to use the internet
map eg1000g1 192.168.1.0/24 -> 0/32
map eg1000g1 192.168.1.0/24 -> 0/32
map eg1000g1 192.168.1.0/24 -> 0/32

ipfilter.conf on Global zone.

# IP Filter rules syntax.
# Testing purposes
pass in quick log on e1000g1 from any to any


Luiz Casey
Office: (202) 885-2692
Cell: (202) 403-1209
lcasey@american.edu=

--0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD
Content-type: text/html; charset=US-ASCII
Content-Disposition: inline
Content-transfer-encoding: quoted-printable

<html><body>
<p>Hello all,<br>
I am trying to do something a bit complicating and was wondering if so=
me of you had tried this is in the past or had any tips. First off ipfi=
lter has been wonderful, helpful and is a great tool. Now to the issue/=
problem I am having. We are running a couple zones on a T2000 one zone =
with a world access IP address ie. 147.9.X.X. We then want to create a =
separate zone on a private subnet ie. 192.168.1.2 which currently does=
not have any world access. What I would like and am trying to do is ta=
ke ipfilter/ipnat and use RDR to redirect 2 ports from Global zone to Z=
one B. I have tried the configuration bellow but have not been success=
ful. Any help would be appreciated and is this even possible. We are =
running ipfilter/ipnat that came with Solaris 10.<br>
<br>
Global =3D 147.9.X.X e1000g1<br>
Zone A =3D 147.9.X.X e1000g1:1 <br>
ZoneB =3D 192.168.1.2 e1000g1:2<br>
<br>
<br>
ipnat.conf on the Global zone.<br>
<br>
# forward from a public port to a private zone port<br>
rdr eg1000g1 147.9.X.X port 2222 -&gt; 192.168.1.2 port 22<br>
<br>
# allow any 192.168.1.x zone to use the internet<br>
map eg1000g1 192.168.1.0/24 -&gt; 0/32 <br>
map eg1000g1 192.168.1.0/24 -&gt; 0/32 <br>
map eg1000g1 192.168.1.0/24 -&gt; 0/32 <br>
<br>
ipfilter.conf on Global zone. <br>
<br>
# IP Filter rules syntax.<br>
# Testing purposes<br>
pass in quick log on e1000g1 from any to any<br>
<br>
<br>
Luiz Casey<br>
Office: (202) 885-2692<br>
Cell: (202) 403-1209<br>
lcasey@american.edu</body></html>=

--0__=0ABBFEAFDFDA7BAD8f9e8a93df938690918c0ABBFEAFDF DA7BAD--

Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 03:41 PM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0