Hello! We have an external IP on a gateway server outside the organization
that receives SMTP Email from a spam filter provider, and forwards it to an
internal server over VPN using DNAT:

DNAT    Dirty:<our spam filter provider IP>      CEM01:10.0.69.5 tcp
25,465  -       <our public IP that is allowed to receive from the spam
filter provider>

The thing is that we now have two internal Email servers. Inside the
organization, DNS round-robin takes care of ensuring client access to
whichever server is available.

Is there any way to DNAT to two different internal IP addresses? Or how
should I approach this?

Thanks, Norman

On Thu, May 14, 2020 at 5:46 PM Tom Eastep <teas...@shorewall.net> wrote:

> Shorewall 5.2.4.5 is now available for download.
>
> Problems Corrected:
>
> 1)  The description of the 'optional' option has been expanded in
>     shorewall-interfaces(5).
>
> 2)  Previously, the AUTOMAKE option did not work properly when
>     /etc/shorewall[6] was a symbolic link. That has been corrected.
>
> Thank you for using Shorewall,
>
> -Tom
> --
> Tom Eastep        \ Q: What do you get when you cross a mobster
> Shoreline,         \    with an international standard?
> Washington, USA     \ A: Someone who makes you an offer you
> http://shorewall.org \    can't understand
>                       \________________________________________
>
> _______________________________________________
> Shorewall-users mailing list
> Shorewall-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to