Karsten Jeppesen <kars...@jeppesens.com> wrote: > There are a lot of modern web stuff which include server and client side > matching and if you use split DNS then you end up with the client side > trying to reach your internal server through the local IP. So its a no-go. > > So I am hoping for an answer - not a work-around.
As already said, split DNS is the answer - unless you have some really odd requirement then "it just works", transparently. Why would it be a problem having a client contacting the server directly by it's internal address ? ------------------------------------------------------------------------------ _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users