Iproute2 problem across networks using NAT and 2 internal networks

Iproute2 problem across networks using NAT and 2 internal networks

Post by John » Sat, 09 Feb 2002 05:37:17



Hi all,
Here's the deal. I have a machine that faces the internet and has an
internal network and a DMZ. I am using iproute to NAT an ip from
public to private.

ip route add nat 4.4.4.4 via 10.1.1.1
ip rule add from 10.1.1.1 nat 4.4.4.4

Everything works fine with the preceding route and rule when talking
to the machine from the internet. The problem is that when a machine
in the internal network, say 10.1.2.1, talks to the 10.1.1.1 machine
in the DMZ, the replies get natted to 4.4.4.4, instead of replies with
the src address of 10.1.1.1. The idea is to have these ip's not get
natted when going in between the DMZ and Internal Network. Thus, the
replies come from 10.1.1.1. I toyed around with using multiple routing
tables but got nowhere. Please advise.

Internet -----|Firewall|---DMZ--- 10.1.1.1 (NAT 4.4.4.4)
                  |
                  |          
           Internal Network
                  |
                  |
              10.1.2.1

Internet to DMZ is working fine with NAT.
Internal Network, 10.1.2.1 talking to 10.1.1.1, replies come from
4.4.4.4
I need replies to come from 10.1.1.1.

TIA for any guidance.

 
 
 

1. Using tape drives across a network using nfs

Help.  My networking skills are not great and I can mount file systems using
nfs but I am trying to use a tape drive remotely and don't really no where
to go. You don't really mount a tape drive so what do I do. More info - I am
trying to do it using HP-UX 11 - so on HP machines.

Any thoughts!!

Desperate

2. AIX Archive Site

3. Load Balancing using 2 NICS (same network) with (iproute2) multipath route

4. Looking for Linux libc.so.5.2.X

5. NAT and aliased ips for internet web servers on 'internal' network

6. 64bit-integers on power3

7. Internal network nat bandwidth limitation?

8. 5.0.4 kernel re-linking woes

9. internal network NAT?

10. NAT using iproute2

11. Backup across network using cpio

12. Using SCOadmin to do backups across a network

13. printing across network using multifunction printer psc1315