Steve Brennan wrote:
> 
> Sort of OT, but can anybody point me to a good primer on DNS resolution from
> behind a NAT firewall?  How do the PCs behind the NAT resolve to a server
> also behind the NAT, while still letting people on the outside access the
> NAT servers too?  I've got the IP mapping stuff working, just not the
> internal DNS for the NAT'd boxes.
> 
> -Steve
> 
> ----- Original Message -----
> From: "Cal Frye" <[EMAIL PROTECTED]>

And I repeat:

> >
> > Carefully check the syntax for the alias command, which permits hosts on
> > the inside to use DNS to find your mail server. DNS will return the
> > "outside" address, and the alias command translates that back into the
> > "inside" address. But be careful with the syntax, I seem to remember it
> > was the reverse of the way we set it up originally. If you need further
> > help, please email me directly, and I'll study our config in more detail
> > to refresh my memory and be more specific. (Mind like a steel sieve!)
> > [EMAIL PROTECTED]

I don't know about other firewall products, but the alias command is the
key for the Cisco PIX. DNS should have the external, "real" addresses.
It's the firewall's business to translate them to the NAT internal
addresses...

-- 
  "I don't know anything about music. In my line you don't have to. " -
Elvis Presley (1935-1977?) 

Cal Frye, Western Reserve Academy, Hudson, Ohio
Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

An Archive of this list is available at:
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/

Reply via email to