> this is making no sense... Makes perfect sense to me. If your private addresses are NATted at your router/firewall to public IPs, and your DNS server is responding with public IPs, the packets have to traverse your router before heading back in to the server. This can be called "loopback NAT," and it's not supported by many firewalls, whether or not you seem to have the proper port rules on the firewall.
The solution, as ever, is to use a separate DNS for your internal users that spits back internal IPs. -Sandy ------------------------------------ Sanford Whiteman, Chief Technologist Broadleaf Systems, a division of Cypress Integrated Systems, Inc. e-mail: [EMAIL PROTECTED] ------------------------------------ To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
