It sounds like your mail server is trying to contact the IP
address of the PDC directly, rather than contacting the GNAT
Box's DMZ address, which should have tunnels and filters to
the PDC for ports 137-139.



-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Billy Dennigan
Sent: Tuesday, February 22, 2000 4:15 PM
To: [EMAIL PROTECTED]
Subject: Is any access possible from DMZ to PRO ?


Send postings to: [EMAIL PROTECTED]
Access the list archives at:
http://www.gnatbox.com/gb-users/
----------------------------------

I've just tried moving our mail server - which is 
Microsoft Exchange running on an NT Server - from 
the PRO to the DMZ. Not surprisingly it didn't work
because it needs to be able to contact its NT Domain
controller in the PRO in order to authenticate people 
collecting their mail.

Without going into the details of the tunnels and 
filters I tried, the upshot is that I can't seem to 
open up any communication from the machine in
the DMZ to one in the PRO. In fact, the console
displayed warnings to the effect "attempt to access
PRO from DMZ" which suggests that I'm attempting the
impossible.

But my only other alternative is to open a tunnel
all the way to the PRO which I feel is less desirable 
than tunnels from EXT-to-DMZ and DMZ-to-PRO.

Any suggestions would be appreciated. Our version of
Gnatbox is 2.0.2b

Thanks,

Billy Dennigan.


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 Billy Dennigan,     E-Mail: [EMAIL PROTECTED]
 IT Design (Ireland) Ltd,   Phone   +353-1-4967766
 29 Kenilworth Sq.,                     (Ext. 111)
 Rathgar, Dublin 6.         FAX     +353-1-4967185
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

----------------------------------------------
To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe gb-users your_email_address
in the body of the message

Reply via email to