On 1 Jun 99, at 16:16, Alexandre Soares wrote about
    "[Masq]  can masquerading use real p":

| i've been using IP masquerading for a while now, and it all worked
| perfectly until last saturday...
| that's when the company it people decided to change the firewall rules
| and don't accept requests with source ports as high as 60000 ( read IP
| masquerading... ;-) ).
|...
| but now the network firewall in New York does not let people inside my
| network ( in brazil ) connect to the mail server, since the connections
| are comming from the linux box i've set up to be the gateway with src
| port > 60000.

They should not have done that...

| can anyone please explain to me, how to configure the linux box so the
| requests are to be made from the same port as the destination?

Can't be done, for very good technical reasons.  You could *move* the 
source port range used by masquerading, but you can't make the 
masqeraded packet have the same source port as the original packet.

|...
| i have a bunch of directors trying to kill me because they can't get
| email!!!!   ;-)

That's good, they can put pressure on the IT folks in New York, once 
you explain to them that the problem is not your fault and is not in 
your control.  It is NY that broke their email, and only NY can fix 
it.

| thanx so much for your help!

Good luck!

- Fred Viles <mailto:[EMAIL PROTECTED]>




_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
http://tiffany.indyramp.com/mailman/listinfo/masq
Admin requests can be handled by web (above) or [EMAIL PROTECTED]

Reply via email to