I would create two objects "MY-DOMAIN-1" (IP address 192.168.1.0/24) and
"MY-DOMAIN-2" (IP address 192.168.2.0/24).
I would also make both interfaces PRO.

The create the following IP pass through rules.

     1 #From MY-DOMAIN-1 to MY-DOMAIN-2
       Accept information "PRO-INTERFACE-1" ALL  log
          from MY-DOMAIN-1
            to MY-DOMAIN-2

     2 #From MY-DOMAIN-2 to MY-DOMAIN-1
       Accept information "PRO-INTERFACE-2" ALL  log
          from MY-DOMAIN-2
            to MY-DOMAIN-1

These are VERY basic rules, which will allow EVERYTHING to pass through the
GNATBox. Modify them for the port(s) and IP addresses that you need.

As for which order the rules get done... Don't know never thought about it.

Lee.

-----Original Message-----
From: Rumball, John [mailto:[EMAIL PROTECTED]]
Sent: 20 December 2002 15:42
To: 'Lee Finlay'; [EMAIL PROTECTED]
Subject: RE: [gb-users] OWA on PSN and IP passthrough HELP! 


Thanks for that info Lee, but I think we have that part all set fine.

I guess what I am wondering about is, what is the proper way, using your
example IPs, to set up IP-passthrough on the Gnatbox to allow these two
boxes to talk?  We have tried it but have been unsuccessful so far.  I am
confused about what interface to pick in the Host/Network screen and how to
structure the passthru filters.

Another thing I wondered about, in what order does Gnatbox filter sets?  For
example, for outbound traffic, does Gnatbox check outbound filters before
passthru filters, or vice versa?

Thanks again.

John

----------
John Rumball, CCNA - Network Analyst - [EMAIL PROTECTED]
Phone: (705)522-2200  Ext. 3911  Pager: (705)671-8665
Sudbury Regional Hospital, Laurentian Site - Information Systems and
Technical Services 

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
To subscribe to the digest version first unsubscribe, then
 e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
Archive of the last 1000 messages:
 http://www.mail-archive.com/[email protected]

Reply via email to