LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-13-2004, 03:30 PM   #1
ebiven
LQ Newbie
 
Registered: Mar 2004
Distribution: Ubuntu 8.10
Posts: 13

Rep: Reputation: 0
Firewall That Can Do HTTP NAT Redirects


I currently use linux 2.4 and iptables with a script originally created by fwbuilder 1.something. I have a couple of NAT rules so that external users are forwarded to internal servers based on the port they hit, for example:

external addr:21 -> 192.168.0.2:21
external addr:80 -> 192.168.0.3:80

My issue is that I want to host multiple web servers on port 80 using host headers so that:

external addr:21 -> 192.168.0.2:21
www.domain.com:80 -> 192.168.0.3:80
ww2.domain.com:80 -> 192.168.0.4:80

I haven't been able to find anything telling me if that's even possible with my setup, much less how to implement it.

If linux/iptables can't do this, anyone know of a free os/firewall that can?
 
Old 12-13-2004, 04:59 PM   #2
michaelk
Moderator
 
Registered: Aug 2002
Posts: 25,699

Rep: Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895Reputation: 5895
http://www.linuxquestions.org/questi...hreadid=264864
 
Old 12-13-2004, 05:14 PM   #3
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
well that will cover forwarding and such, but there's also the fact that you want to do it via a firewall. this isn't really something you should want to do conceptually. "traffic on port 80" is very different to "viewing a website on another server". elect a webserver to be the master one (maybe even a dedicated low end box if need be) to proxy all port 80 traffic, interpret it within apache and then act accordingly.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
simple NAT firewall mikz Linux - Security 6 02-01-2005 08:34 AM
fedora firewall/nat screwage Linux - Security 1 01-14-2005 09:36 PM
firewall behind a nat wrat Linux - Security 3 06-15-2004 11:28 AM
firewall and nat nakkaya Linux - Networking 3 02-25-2004 08:58 AM
NAT can't redirect from firewall kelper Linux - Security 2 07-30-2003 04:40 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:11 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration