Actually, no, it won't bypass everything and allow all traffic.  The 1 to 1 nat is still subject to the rules in the rule set.  Just create rules from the WAN to the LAN using the *PRIVATE* address of the two servers allowing and disallowing whatever traffic you want.  I've got a couple servers I'm using 1 to 1 NAT with that are internal servers, but that I still want PC Anywhere and WWW and FTP traffic to, even though they're not public servers.  Works fine, and when I scan the public addresses I'm translating, I get only to the ports I've allowed.

 

I'm using the Pro-VX, so not knowing what model you have your mileage may vary. J  I haven't used any other model of sonicwall.

 

J

 

 

-----Original Message-----
From: John Tolmachoff [mailto:[EMAIL PROTECTED]]
Sent: Friday, May 10, 2002 8:36 AM
To: [EMAIL PROTECTED]
Subject: [SonicWALL]- Multiple internal servers

 

I have a client that has two DNS servers on the internal LAN that need to be able to answer Internet DNS queries. How can you set up 2 servers to answer on the same port number? They have multiple public IP addresses.

 

I know I could set up one to one NAT, but doesn't that bypass rules, allowing all traffic?

 

John Tolmachoff

IT Manager, Network Engineer

RelianceSoft, Inc.

Fullerton, CA  92835

www.reliancesoft.com

 

Reply via email to