You ever have one of those days where you feel like a dumbass? Anyway... I'm running a server which hands out encryption keys.
I have a filter rule to allow any client on this port with the address of the keyserver (which is a private address BTW, so would I use the external interface address instead? I tried this and no joy.)
Also I have a SNAT/DNAT rule for any source with a destination of the external interface using this service
does not change the source, changes the destination to the keyserver and does not change the service.
From what I can tell this should work but when I try to access it, nada. I've read the manual and searched around the boards and feel I've done what they suggest. So I must defer to the brain on this one.
Oh and for what it's worth I have a MASQ rule set up for inside the ASL and that works fine.
TIA
This thread was automatically locked due to age.