LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 08-24-2004, 01:54 AM   #1
nukenstien
LQ Newbie
 
Registered: Aug 2004
Posts: 15

Rep: Reputation: 0
Multiple domains behind firewall


I have a few linux machines setup with apache, ssh, ftp services running on them. I use zoneedit to dns ips.

I have a linux firewall setup that has all of the urls dns linked to it.
firewall.domain.ca, domain.ca, halflife.domain.ca

The follow is the networking configuration I have setup

Internet
|
firewall.domain.ca
|
|----------|
domain.ca halflife.domain.ca



I want to be able to 'ssh firewall.domain.ca' and be connected to firewall.domain.ca
I also would like to 'ssh domain.ca' and be passed throught firewall.domain.ca and connect to domain.ca

I thought this command would work but it does not.

$IPTABLES -t nat -A PREROUTING -d domain.ca -p tcp -j DNAT --to-destination [domain.ca ip address]

I am looking for the command to pass all tcp traffic through the firewall to the linux box behind the firewall. I do not want the root of domain.ca to have root access to firewall.domain.ca.

Nuke
 
Old 08-24-2004, 08:04 AM   #2
david_ross
Moderator
 
Registered: Mar 2003
Location: Scotland
Distribution: Slackware, RedHat, Debian
Posts: 12,047

Rep: Reputation: 79
Welcome to LQ.

There are a few solutions:
* Use 2 public IPs.
* Run the ssh servers on different ports.
* Only ssh into server 1 from the outside, then from there ssh to server 2
 
Old 08-24-2004, 01:25 PM   #3
nukenstien
LQ Newbie
 
Registered: Aug 2004
Posts: 15

Original Poster
Rep: Reputation: 0
Thanks for the reply david

However when I use two external ips my cable modem slows to a crawl because I don't have a 100MB hub for connecting the computer to the cable modem.
The problem with running on different port is I would have to port forward every port that domain.ca would want to use.
SSH ing from 1 machine to the next would not work because I would also like various users to be able to ftp to their home directory, but they only have an account on domain.ca not on firewall.domain.ca
 
Old 08-24-2004, 01:42 PM   #4
david_ross
Moderator
 
Registered: Mar 2003
Location: Scotland
Distribution: Slackware, RedHat, Debian
Posts: 12,047

Rep: Reputation: 79
Quote:
Originally posted by nukenstien
However when I use two external ips my cable modem slows to a crawl because I don't have a 100MB hub for connecting the computer to the cable modem.
Why would it slow down? I'm not suggesting making any infrastructure changes.
 
Old 08-25-2004, 12:00 PM   #5
nukenstien
LQ Newbie
 
Registered: Aug 2004
Posts: 15

Original Poster
Rep: Reputation: 0
It slows down because with my cable modem, even though it is only 5Mb down and 1 Mb up, if you switch from a 100MB connection to a 10MB connection the speed goes down.
I have the cable modem plugged into my linux box with a 100MB card so it connects at 100MB but when I plug the cable modem into my hub, to allow both computers external ips, the hub is only 10MB so it only connects at 10MB.
I do not know why it slows down if it is not reaching the hardware limit.
 
Old 08-25-2004, 12:44 PM   #6
david_ross
Moderator
 
Registered: Mar 2003
Location: Scotland
Distribution: Slackware, RedHat, Debian
Posts: 12,047

Rep: Reputation: 79
I'm still not sure why it would slow down. BUT:
Quote:
Originally posted by david_ross
I'm not suggesting making any infrastructure changes.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Multiple domains? WorldBuilder Linux - Networking 2 05-13-2005 08:51 PM
Hosting multiple domains Imanerd Linux - Networking 2 01-04-2005 08:10 PM
RH 8.0 Multiple domains brif8 Linux - Networking 3 01-27-2003 06:08 PM
Multiple Domains? cic Linux - Networking 2 01-23-2002 06:38 AM
Multiple Domains??? cic Linux - Networking 1 10-08-2001 10:55 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 02:42 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration