Hi,

I'm having some trouble with FW1 and NAT. Our situation is like this:

net-a (10.x.x.x)----FW-1----internet

We're trying to access some secured server on the internet (some banking
app. that uses secured ftp).

When we try to connect we see the following:

- the initial connection from the client is ok (ftp port 21)
- the banking app gets a backconnect (from the bankingserver on some
other ports). The backconnect gets to the (hide) NATed address of the
external fw interface. This is were is all stops. Somehow the fw can't
find its way back to the client.

The bank people told us that the app. is somewhat like passive ftp.

Questions:

How to get this to work. We can't use static NAT because of the amount
of clients that need this application.


Any help would be appreciated!

Thanks

Danny Kruitbosch
RDC Datacentrum
The Netherlands
begin:vcard 
n:Kruitbosch;Danny
tel;work:+31(0)20 5497913
x-mozilla-html:FALSE
url:www.rdc.nl
org:RDC DataCentrum B.V.;Netwerk Ontwikkeling
adr:;;Postbus 74707;Amsterdam;;1070 BS;Nederland
version:2.1
email;internet:[EMAIL PROTECTED]
x-mozilla-cpt:;0
fn:Danny Kruitbosch
end:vcard

Reply via email to