[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

**URGENT URGENT** Problems with IPFilter



Good Day All,

We installed late November an OpenBsd 2.5 with IPFilter/IPNat
we use IPNat in a one-to-one topology.

We have multiple Mail, HTTP, FTP severs behind the OpenBsd
box.

The OpenBsd Box has the following:
RL0 (Internet),
  Multiple Netmasks with aliasing (the first IP of each netmask acts as
a
  Virtual Router/FireWall
RL1 (DMZ)
   Has a /16 netmask (we will shortly disable this card)
RL2
  Internal Network with a 10.1.0.0/16 netmask

we map the various external netmasks to the internal using the
following example:
map RL0 205.35.191.0/26  -> 10.1.191.0/26

Initially we have a pass in/out all rule in IPFIlter

Any traffic initiated from the internal network goes out without a
hitch.

Yet if anyone tries to talk to our servers behind the OpenBsd box
they get host unreachable.

CAN ANYONE HELP US, even on a consulting basis as this is
EXTREMELY urgent.

I can be reached at 1-877-474-6834 from anywhere in North America

Best Regards
N. Sioufi