> this is making no sense...

Makes  perfect  sense  to  me. If your private addresses are NATted at
your  router/firewall to public IPs, and your DNS server is responding
with  public  IPs,  the  packets  have  to traverse your router before
heading  back in to the server. This can be called "loopback NAT," and
it's  not supported by many firewalls, whether or not you seem to have
the proper port rules on the firewall.

The  solution,  as  ever,  is  to use a separate DNS for your internal
users that spits back internal IPs.

-Sandy


------------------------------------
Sanford Whiteman, Chief Technologist
Broadleaf Systems, a division of
Cypress Integrated Systems, Inc.
e-mail: [EMAIL PROTECTED]
------------------------------------


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to