Shorewall 4.4.11 on Debian Squeeze

Is there a quick way to setup many-to-many NAT ?

Ie, I want to have clients in one zone (192.168.1.x) to be NAT'd to 
unique addresses in a different zone (10.0.0.x)

Otherwise, as I read the man pages, I'd need to put this in the masq file :
eth1   eth2:192.168.1.2   10.0.0.2
eth1   eth2:192.168.1.3   10.0.0.3
and so on
Is that correct ?

Or I could put
eth1   eth2   10.0.0.2-10.0.0.254::persistent
to get a random but persistent mapping ?


I'd prefer not to be using NAT at all here, but I reckon the chances 
of getting all the back end servers (which I don't manage) set up 
with correct routing is on the low side of nil.

-- 
Simon Hobson

Visit http://www.magpiesnestpublishing.co.uk/ for books by acclaimed
author Gladys Hobson. Novels - poetry - short stories - ideal as
Christmas stocking fillers. Some available as e-books.

------------------------------------------------------------------------------
RSA(R) Conference 2012
Save $700 by Nov 18
Register now
http://p.sf.net/sfu/rsa-sfdev2dev1
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to