GroupBrowser  




Go Back   GroupBrowser > Novell Newsgroups > Border Manager > Border Manager Network Address Translation
User Name
Password
 
 
Thread Tools Search this Thread Display Modes

Dynamic NAT not working from server private NIC...
Old 08-08-2008, 12:36 PM #1
rsargeant
Guest
 
Status:
Posts: n/a
Default Dynamic NAT not working from server private NIC...


Ok, this is an odd one and I'm guessing it relates to a bug as we have
other NetWare 6.x servers configured the same and this problem doesn't
occur.

Here is the set-up:

NetWare 6.5 SP5 (SBS 6.6)
BM 3.8 SP5


Private NIC - 192.168.110.1
Public NIC - 83.x.x.94 - DYNAMIC NAT ENABLED

With the filters unloaded I can ping 'post.demon.co.uk' without
any problems, I'm fairly sure Ping uses the Public NIC as the source
address.

If I then try iptrace post.demon.co.uk source=192.168.110.1 I get
no response, I would expect Dynamic NAT to be doing it's job here?

The backup software (TapeWare 7 SP7D) has an in-built SMTP client
that e-mail's the log files to us and it's bound to the Private NIC,
so it'll need to get NATTED to send successfully...

Any suggestions how to make this work?

Cheers,

Richard.


--
rsargeant
------------------------------------------------------------------------
rsargeant's Profile: http://forums.novell.com/member.php?userid=1691
View this thread: http://forums.novell.com/showthread.php?t=339320

  Reply With Quote

Re: Dynamic NAT not working from server private NIC...
Old 08-12-2008, 05:57 PM #2
Automatic Reply
Guest
 
Status:
Posts: n/a
Default Re: Dynamic NAT not working from server private NIC...

rsargeant,

It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.

Has your problem been resolved? If not, you might try one of the following options:

- Visit http://support.novell.com and search the knowledgebase and/or check all
the other self support options and support programs available.
- You could also try posting your message again. Make sure it is posted in the
correct newsgroup. (http://forums.novell.com)

Be sure to read the forum FAQ about what to expect in the way of responses:
http://support.novell.com/forums/faq_general.html

If this is a reply to a duplicate posting, please ignore and accept our apologies
and rest assured we will issue a stern reprimand to our posting bot.

Good luck!

Your Novell Product Support Forums Team
http://support.novell.com/forums/

  Reply With Quote

Re: Dynamic NAT not working from server private NIC...
Old 08-29-2008, 03:03 AM #3
Craig Johnson
Guest
 
Status:
Posts: n/a
Default Re: Dynamic NAT not working from server private NIC...

I'm not sure I quite understand what is going on there.

The filters normally block ICMP. If you put in a stateful ICMP
exception from private to public it will still block ICMP if you try to
ping from the server itself. So filtering might be giving you
misleading results.

If you are doing an IPTRACE from the server (as opposed to TRACERT from
a PC), you may also not be getting expected results, since IPTRACE uses
UDP port 9000 I think, instead of ICMP.

In any case, if the server is generating traffic that is going to the
internet, it would always be sending it with a source address of the
public address, since the traffic goes out that interface. I don't see
how you could get a service bound to the private IP address to somehow
send out using the private IP address (perhaps a tricky NAT issue), and
it wouldn't get a reply if it did go out.

This may be a filtering issue. I would simply test with IPFLT unloaded
and see if it works. If so, then you need to put in some sort of
filter exception, and it should be easy to do. If not, you may have a
routing issue or something wrong with the application.

Craig Johnson
Novell Support Connection SysOp
*** For a current patch list, tips, handy files and books on
BorderManager, go to http://www.craigjconsulting.com ***


  Reply With Quote
 


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes





Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Forum Jump




Adobe Newsgroups | Software Newsgroups


Powered by: vBulletin Version 3.0.7
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
© 2003-2004 All Rights Reserved GroupBrowser LLC.