Solved

Forwarding HTTP traffic to our public IP internally for exchange/wireless phones?

Posted on 2011-02-17
7
379 Views
Last Modified: 2012-05-11
Basically what happened was about a month ago our Sonicwall router died and I had  a new one shipped over night. I got the new one up and running in a couple hours and I was pretty proud of myself. One issue remains though. When users with iphones are on the lan through the wireless they can't use the internet. The reason being is in their email settings they are using our public IP address. I can tell this isn't going to work because I will get on a workstation and type in our public ip address in the browser using: Https://65.40.X.X and I go no where. I'm pretty sure that https is the port that would need to be forward to get this to work. This was my guess on how it should work that doesn't seem t work:

Original Source: LAN SUBNETS
Translated Source: ORIGINAL
Original Destination: Server's public IP Address
Translated Destination: Server's internal IP Address
Original Service: HTTPS
Translated Service: Original

0
Comment
Question by:sagetechit
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
7 Comments
 
LVL 33

Accepted Solution

by:
digitap earned 500 total points
ID: 34918462
it could be one of two things or both.  first thing i'd check is if you've enabled the management on the WAN interface.  if you have, then you might consider changing the https port to something other than 443.  go to system > administration to do that.

second, you might check to confirm you have a loopback configured.  if you ran the public server wizard, it would have created one for you.  putting the public IP for mail would then work.  the loopback says internal requests bound for the public IP of the WAN interface internal.  otherwise, it drops that traffic.

so, your iphone users can't get email or they can't get to the internet?
0
 

Author Comment

by:sagetechit
ID: 34918533
When they are on the wan, and they get on the wifi, there email no longer works. They can surf the web just fine.

You might be on to something with the interface management, I'll check it out.

I went through the wizards to set most of this up so I think my loopback is created...
0
 

Author Comment

by:sagetechit
ID: 34918560
It appears I only have SSH and Ping enabled under management
 snapshot of interface
0
Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 

Author Comment

by:sagetechit
ID: 34918566
The LAN address has http and https selected, would that screw it up?
0
 
LVL 33

Expert Comment

by:digitap
ID: 34918851
no, just the WAN since the management and the email may be using the same public IP address.  the LAN IP would be different from your exchange server.

you said, "When they are on the wan, and they get on the wifi, there email no longer works."  when you say WAN, i think the WAN zone on the sonicwall and when you say wifi, i think WLAN zone on the sonicwall.  can you clarify that sentence from those perspectives?
0
 

Author Closing Comment

by:sagetechit
ID: 34919119
http://www.experts-exchange.com/Hardware/Networking_Hardware/Firewalls/Q_23347507.html

this is what i used to fix my issue, but I didn't know about the loopback until I read his comment
0
 
LVL 33

Expert Comment

by:digitap
ID: 34919153
so, you must have had some NAT policies created manually.  glad you found it and thanks for the points!
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Fortigate 100D NTP Issue 4 152
Best adsl router for small MS network 6 72
BGP Local Preference 5 48
Turning Verizon Fios Router into a Bridge? 28 63
Hello , This is a short article on how would you go about enabling traceoptions on a Juniper router . Traceoptions are similar to Cisco debug commands but these traceoptions are implemented in Juniper networks router . The following demonstr…
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question