Link to home
Start Free TrialLog in
Avatar of ComTec
ComTecFlag for United States of America

asked on

SonicWall TZ180 Enhanced NATING

I have a TZ180 with enhanced OS. It has an SBS 2003 Server behind it and everything works great.  

I have an IPAd that I use both internally on the network and externally while travelling. The Ipad is using the URL remote.domain.com to access the exchange server remotely with no issues. When I am internal to the network on the WIreless LAN with the same IP subnet as the server, 192.168.10.x, the URL does not work when inside the network.  I have created a NAT rule below:

Source          trans     Destination           Server LAN IP   Services        
LANSubnets Original "WAN Primary IP" ServerPrivate ServerServices Original Any Any

I am able to Ping the URL and it comes back with the My SBS server responding so that NAT rule works. I have tried to create another rule for the server, but can't figure out the correct rule to do this. I have not modified any Firewall Access Rules and I have not created any routes.

The DNS server that controls the URL remote.domain.com is on the internet, so the SBS server doesn't do DNS for the external domain name.

Can someone give me detailed settings that I should put in the firewall.

Avatar of dosdet2
dosdet2
Flag of United States of America image

Try using   192.168.10.x/owa  
It may not be adding that automatically with the IP number.
Worth a try.
Avatar of ComTec

ASKER

If I change the URL to the local IP of the server, it works fine. I just want to make the firewall handle the Nat inside the firewall so the IPad URL.doesn't have to change.
Avatar of Aaron Tomosky
Does remote.domain.com resolve to the Wan ip exactly or to a different one in your group of wan ips?
Avatar of ComTec

ASKER

It resolves to my wan IP. I only have one IP.
ASKER CERTIFIED SOLUTION
Avatar of digitap
digitap
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
As a rule I always start with the public server wizard just for this purpose. Then I change the services in the group to what I need.
Avatar of ComTec

ASKER

I will try digitaps suggestion.

Thanks
This question has been classified as abandoned and is closed as part of the Cleanup Program. See the recommendation for more details.