Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DNAT dosen't work

Hi,
I am in desperate need help with DNAT.
I don't no what it is happening.
I configure this:

Pre DNAT  Post DNAT 
Network:    Service:   Network:  Service:  
SRVInternet 2020     SRVIntranet 2020
207.201.69.1      172.169.7.2

roles:
ANY Port-2020 SRVIntranet ALLOW

But, if I to try telnet 207.201.69.1 2020 I can't connect. Also it does not appear nothing in Livelog.
 
I do not know what is wrong.
Any one can help me???????


This thread was automatically locked due to age.
Parents
  • The configuration looks ok.

    To further debug the problem, it would help to install the pluspack, it includes traffic analyzers, so we can see where the packets get stuck.

    /tom
  • Have you tried:
    Source: ANY, Port: ANY, Desination: YourServer, Port: 2020, Allow ?
    Clients usually use a wide range of ports, starting from 1025 and up, to establish connections, and not necesseraly your server defined port. They can for example come in from port 3345 and establish a connection with port 2020 of your server.

    Maurice
Reply
  • Have you tried:
    Source: ANY, Port: ANY, Desination: YourServer, Port: 2020, Allow ?
    Clients usually use a wide range of ports, starting from 1025 and up, to establish connections, and not necesseraly your server defined port. They can for example come in from port 3345 and establish a connection with port 2020 of your server.

    Maurice
Children