Hi,
Is there anyone who has experience with creating static nats with iptables
1.2.7a.
What is it that I exactly want.
We have a linux firewall with two NICs. One for the Internet and one for the
DMZ (most obvious). In our DMZ we have a couple of webservers and on the
public NIC I've created a couple virtual interfaces (eth1:1, eth1:2 etc.)
for the extra ipaddresses.
The problem now is that when I want to create a DNAT based on the interfaces
iptables starts complaining that I can't use those virtual nics. Basically
it has a problem with the ":".
I'm aware that there is a new target introduced in iptables 1.2.8 called
NETMAP but I can't use that. In that case I need to rebuild a kernel which
is not an option here.
Is there anyone who can help me out with this "problem" ?
Many thanks,
Edward