Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here. |
Notices |
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
Are you new to LinuxQuestions.org? Visit the following links:
Site Howto |
Site FAQ |
Sitemap |
Register Now
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
|
 |
11-08-2005, 09:20 AM
|
#1
|
Member
Registered: Sep 2005
Location: Europe
Distribution: debian sarge
Posts: 65
Rep:
|
iptables - servers not accessible from lan using external ip
hey
I have an internal network connected to the web through a debian box with iptables. All clients can connect to the internet using NAT.
On the same lan, i have some servers i can reach with their internal ip-address. I assigned fixed external ip's to these servers and from outside it's possible to connect to them. When i try to connect from inside the lan to this servers using their external ip, i won't work... timeouts... but i need those fixed addresses for DNS-entries, so i can connect the server from inside using an url.
anyone an idea where i'm going wrong? thx!
|
|
|
11-08-2005, 08:20 PM
|
#2
|
LQ Guru
Registered: Jan 2003
Location: Seymour, Indiana
Distribution: Distribution: RHEL 5 with Pieces of this and that.
Kernel 2.6.23.1, KDE 3.5.8 and KDE 4.0 beta, Plu
Posts: 5,700
Rep:
|
If I understand you have a dns server setup so outside address can be routed. If this is the case I would leave that dns server the way it is and setup a second dns server for internal use. If you modify one then you will need to modify the other manually. The only way I got around this in the past.
Brian1
|
|
|
11-09-2005, 03:39 AM
|
#4
|
Member
Registered: Sep 2005
Location: Europe
Distribution: debian sarge
Posts: 65
Original Poster
Rep:
|
Brian & Capt Caveman, great job dudes! thx!
|
|
|
11-09-2005, 06:08 PM
|
#5
|
LQ Guru
Registered: Jan 2003
Location: Seymour, Indiana
Distribution: Distribution: RHEL 5 with Pieces of this and that.
Kernel 2.6.23.1, KDE 3.5.8 and KDE 4.0 beta, Plu
Posts: 5,700
Rep:
|
Great links ther Capt Caveman. Never thought about postrouting in that way. That sure beats maintaing 2 seperate configured DNS. A quick read over the second link had an idea I never thought about doing either. I will bookmark those and readup on them.
Thanks for the links. Glad to be of help.
Brian1
|
|
|
11-09-2005, 07:03 PM
|
#6
|
Senior Member
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658
Rep:
|
No problem. I had the same problem when iptables first came out and had a hell of a time diagnosing the problem (this was before those docs were available), so I can certainly relate to how frustrating it can be.
|
|
|
12-12-2005, 09:16 PM
|
#7
|
Member
Registered: Apr 2003
Location: Vail, CO
Posts: 73
Rep:
|
sorry wrong thread
Last edited by MarleyGPN; 12-12-2005 at 09:18 PM.
|
|
|
All times are GMT -5. The time now is 11:38 PM.
|
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.
|
Latest Threads
LQ News
|
|