currently:

x.x.x.89 is the WAN interface
x.x.x.68 is the IP binat'd to 10.1.1.150 in the DMZ


If I disable binat to the DMZ machine, outbound passive FTP will work,
but then the machine is not accessible via x.x.x.68

does that help?


On Thu, 2006-03-02 at 14:13 -0500, Scott Ullrich wrote:
> Shouldnt need to do any of this, no.   I'll try to make some time to
> bring up a box and test this but my next 4 days are going to be tough
> to find extra time.
> 
> On 3/2/06, Derrick MacPherson <[EMAIL PROTECTED]> wrote:
> > On Thu, 2006-03-02 at 14:02 -0500, Scott Ullrich wrote:
> > > Looks fine to me.  Not really sure what is going on as FTP works fine 
> > > here.
> >
> > Like I said, works fine on the LAN interface, not the DMZ interface.
> > Perhaps there's something else in the pfsense config i'm missing.
> >
> > do I have to set a 1:1 NAT for the machines in my non-routable DMZ?
> >
> > or any changes to be made to the Outbound NAT?
> >
> >
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [EMAIL PROTECTED]
> > For additional commands, e-mail: [EMAIL PROTECTED]
> >
> >
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> 
> 


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to