On 31.10.2003, at 22:20, Jim McBeath wrote:
> forwards port 80 to the web server on the DMZ, and that works. The web
> server has a default route set up to point back to the Netscreen; is
> why it can't respond to the Soekris? If so, is there a way to set up
Almost definitely. Most firewalls want to see both directions for the
stateful packet filtering to work, and I guess the Netscreen is no
> my DMZ web server to respond to NATed port forwarding from two
> boxes, or is that hopeless?
Probably yes, unless you want to give up some of the security that
stateful packet filtering offers... You're on your own there, though.
BTW, thanks for the filter rule patches! I'm looking into integrating
them right into the next release... :)