You can do that by an entry in the rules file
Example:
DNAT net loc:10.120.7.1
where net is your untrusted and loc your trusted zone.
If 172.25.5.1 is not your interface (e.g. phy ethernet interface) you can
specify a original destination as well.
In most cases it fits users need to map only a few ports.
Example of translating only web and mail with different original destination
DNAT net loc:10.120.7.1 tcp 80,25 -
172.25.5.1
You can expand net for example as net:1.2.3.4 which means that only 1.2.3.4
is allowed to match this rule.
Cheers
Mike
_____
Von: Orlandinei Vujanski [mailto:[email protected]]
Gesendet: Mittwoch, 27. Januar 2010 22:56
An: Shorewall Users
Betreff: Re: [Shorewall-users] Problem Shorewall
Sorry.
I need to make all Internet requests on IP 172.25.5.1 is redirected to the
IP 10.120.7.1 port indifferent. How do the shorewall?
Sorry for my bad english.
Desculpe.
Preciso fazer com que todas as solicitações da Internet no IP 172.25.5.1
sejam redirecionados para o IP 10.120.7.1 indiferente da porta. Como fazer
no shorewall?
Desculpe pelo meu péssimo Inglês.
------------------------------------------------------------------------------
The Planet: dedicated and managed hosting, cloud storage, colocation
Stay online with enterprise data centers and the best network in the business
Choose flexible plans and management services without long-term contracts
Personal 24x7 support from experience hosting pros just a phone call away.
http://p.sf.net/sfu/theplanet-com
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users