Title: Message
thanks for your help Jason and Ivan. It worked and
got me out of a sticky situation!
----- Original Message -----
Sent: Wednesday, January 29, 2003 6:21
PM
Subject: RE: routing problem
Why
not setup an IP alias on the firewall for 62.17.173.10
and then have your iptables/ipchains forward all
traffic to the internal server.
Hi,
If anyone out there can help me with this I'd
be extremely grateful..
I have a firewall with external ip
62.17.173.173
The gateway is 62.17.173.254
We have a machine inside the firewall with
private ip addresses.
I need to have a setup where this machine is
visible to the outside world on the external ip address 62.17.173.10 ( there
is no physical machine with this ip address, its a virtual ip
address).
At the moment I have a rule in my firewall that
sends any packets destined for ip address 62.17.173.10 to the internal
webserver.
The problem is that when packets come destined
for this ipaddress they get lost. When I did a trace route on the
62.17.173.10 ip I got as far as the gateway address 62.17.173.254 and no
further.
Is there some other configuration that I need
to do to get the packets destined for 62.17.173.10 to go through my
firewall and onto the rulebase to divert the packets to the internal
machine?
Thanks
Lisa
**NOTE** Privileged/Confidential Information may be contained in
this message. If you are not the addressee indicated in this
message (or responsible for delivery of the message to such person), you may
not copy or deliver this message to anyone. In such case, you should
destroy this message and kindly notify the sender by reply email. Please
advise immediately if you or your employer does not consent to Internet
email for messages of this kind. Opinions, conclusions and other
information in this message that do not relate to the official business of my
firm shall be understood as neither given nor endorsed by
it.
|
This E-mail and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this E-mail in error please notify us immediately
and delete this E-mail from your system. Thank you.
It is possible for data transmitted by email to be deliberately or
accidentally corrupted or intercepted. For this reason, where the
communication is by E-mail, the Big Picture Group does not accept
any responsibility for any breach of confidence which may arise through the use of
this medium.
Opinions, conclusions and other information in this message that do not relate to the
official business of Big Picture Group shall be understood as neither given nor
endorsed by it.
This footnote also confirms that this email message has been swept for the presence of
known computer viruses.