currently: x.x.x.89 is the WAN interface x.x.x.68 is the IP binat'd to 10.1.1.150 in the DMZ
If I disable binat to the DMZ machine, outbound passive FTP will work, but then the machine is not accessible via x.x.x.68 does that help? On Thu, 2006-03-02 at 14:13 -0500, Scott Ullrich wrote: > Shouldnt need to do any of this, no. I'll try to make some time to > bring up a box and test this but my next 4 days are going to be tough > to find extra time. > > On 3/2/06, Derrick MacPherson <[EMAIL PROTECTED]> wrote: > > On Thu, 2006-03-02 at 14:02 -0500, Scott Ullrich wrote: > > > Looks fine to me. Not really sure what is going on as FTP works fine > > > here. > > > > Like I said, works fine on the LAN interface, not the DMZ interface. > > Perhaps there's something else in the pfsense config i'm missing. > > > > do I have to set a 1:1 NAT for the machines in my non-routable DMZ? > > > > or any changes to be made to the Outbound NAT? > > > > > > --------------------------------------------------------------------- > > To unsubscribe, e-mail: [EMAIL PROTECTED] > > For additional commands, e-mail: [EMAIL PROTECTED] > > > > > > --------------------------------------------------------------------- > To unsubscribe, e-mail: [EMAIL PROTECTED] > For additional commands, e-mail: [EMAIL PROTECTED] > > --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]