[ previous ] [ next ] [ threads ]
 
 From:  =?WINDOWS-1252?B?lSCV?= <googl3meister at gmail dot com>
 To:  "av2000 at gmail dot com" <av2000 at gmail dot com>
 Cc:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] NT Domain, NetBIOS, LAN
 Date:  Tue, 28 Jun 2005 10:57:31 +1000
On 6/28/05, av2000 at gmail dot com <av2000 at gmail dot com> wrote:
> Hello,
> 
> I use the m0n0 wall to physically separate a few servers from the
> rest. All servers are in one domain.
> 
> I use 1:1 NAT and proxy arp to talk to the "separated servers" (on the
> LAN port of m0n0 wall) from the other servers.
> 
> After moving the servers behind the m0n0 wall, they stop being able to
> communicate with the NT Domain controllers (which are on the WAN
> port).
> 
> NT Domain Controller <-> WAN of m0n0 <-> LAN of m0n0
> 
> To test the problem, we allowed all traffic from WAN to LAN.
> 
> It looks like the NetBIOS broadcast packets are not getting through
> from LAN to WAN. So browsing by name is not working either.
> 
> How to enable NetBIOIS broadcasts with 1:1 NAT and how to fix the
> domain communication?
> 
> Thanks!
> Arsen
> 

More info please - it sounds like you want the local LAN NetBios
broadcast packets to be NAT'd out the WAN interface?  I'd suggest a
bridge in this scenario, but it looks as though you've put an NT DC
directly connected to the net, which I'm certain is not the case, is
it?

--g'luck
gm