Hi!


Doing this sounds weird to me so I'd be very grateful if someone might suggest 
an alternative method!



In an ideal world I'd like to publicize a single URL for an internal service we 
run, that can be reached by users on the public AND private sides of our 
pfSense box.  For security reasons I've adjusted the port we present on the 
public side away from the application's default to say 1234 and now map it 
appropriately to the correct port on the internal machine.



So we have an external URL which looks something like:  
https://server.ourdomain.com:1234 <https://server.ourdomain.com:1234/>  for 
which NAT directs traffic to the internal address and correct port.  Trouble is 
that if that URL is used by people on the _internal_ LAN they don't reach the 
correct port.



It really doesn't feel right and perhaps won't work even anyway, to have NAT 
setup on our internal NIC to effectively just transpose a port number from 1234 
to 4242.



Regards,



Steve





















Steve Harman

Envisional


E-mail: [EMAIL PROTECTED]
Web: http://www.envisional.com <http://www.envisional.com/>
Tel: +44 (0) 1223 372 400
Fax: +44 (0) 1223 372 401

 <http://gartner.com/eu/symposiumfall>

The information contained in this email message is intended only for the 
individuals named above. If you are not the intended recipient, you should be 
aware that any dissemination, distribution, forwarding or other duplication of 
this communication is strictly prohibited. The views expressed in this email 
are those of the individual author and not necessarily those of Envisional Ltd. 
Before taking any action based on this email message, you should seek 
appropriate confirmation of its authenticity. If you have received this email 
in error, please notify the sender immediately. Registered details: Envisional 
Ltd, Betjeman House, 104 Hills Road, Cambridge, England. CB2 1LQ. United 
Kingdom Company Registration No.3872790.







<<image002.jpg>>

Reply via email to