On 8/31/19 1:41 AM, Øyvind Lode wrote:
> On Fri, 30 Aug 2019 at 19:50, Justin Pryzby <pry...@telsasoft.com> wrote:
> 
>> Or you can add to MASQ and it will use the private IP of the FW.
> 
> I'm not sure what you mean here.
> I need to get it to use the private IP of the webserver 192.168.2.5 or
> make the public IP also work on the webserver to access itself.
> 
> I honestly don't know how to solve this problem.
> 
> My masq (actually it's /etc/shorewall/snat):
> 
> MASQUERADE     192.168.0.0/16     enp1s0
> 

You need to follow Shorewall FAQ 2, only you need to apply it to the dmz
zone rather than the loc zone.

-Tom
-- 
Tom Eastep        \   Q: What do you get when you cross a mobster with
Shoreline,         \     an international standard?
Washington, USA     \ A: Someone who makes you an offer you can't
http://shorewall.org \   understand
                      \_______________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to