[Webinar] Streamline your web hosting managementRegister Today

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 433
  • Last Modified:

IPCop forward external to external red

Hi Experts,

What we are trying to do is route or forward traffic that comes to our external ip (x.x.x.x) to another external ip (y.y.y.y).

We know how to forward from external to internal but we are looking to go red to red.

Any Ideas

Cheers
Nik
0
nikdonovanau
Asked:
nikdonovanau
  • 3
  • 3
1 Solution
 
Pierre FrançoisSenior consultantCommented:
With the default settings of IPCop, this is not possible, because IPCop is cutting traffic from red to red..

Possible workarounds:

1. let the modem/router do that, upstream, or
2. add an iptable rule in your /etc/rc.d/rc.firewall.local file allowing traffic from x.x.x.x to y.y.y.y, or
3. forward the traffic to some host inside your LAN or DMZ that is going to re-forward that traffic to y.y.y.y

Good luck.
0
 
Pierre FrançoisSenior consultantCommented:
I advice you workaround #2. You will have to add the rules after the line containing "start)".
0
 
nikdonovanauAuthor Commented:
Thanks for the advise. Much appreciated.
0
Upgrade your Question Security!

Your question, your audience. Choose who sees your identity—and your question—with question security.

 
nikdonovanauAuthor Commented:
For anyone out there trying to do this.  This is how I achieved it.

After start) in /etc/rc.d/rc.firewall.local

/sbin/iptables -t nat -A CUSTOMPREROUTING -p tcp -i wan-1 --dport [port] -j DNAT --to-destination [dest_ip]:[dest_port]

/sbin/iptables -A CUSTOMFORWARD -p tcp -i wan-1 -d [dest_ip] --dport [dest_port] -j ACCEPT

Thanks a lot.
0
 
Pierre FrançoisSenior consultantCommented:
Thank you for this very useful complement of information. Instead of option "-i wan-1", I would say "-i $RED_DEV", right?
0
 
nikdonovanauAuthor Commented:
Sure I think you can use the variables from the config file.

My config file seemed to have $RED_DEV_1 or somthing like that so I chose to just hard code the name of my wan ethernet interface.
0

Featured Post

[Webinar] Improve your customer journey

A positive customer journey is important in attracting and retaining business. To improve this experience, you can use Google Maps APIs to increase checkout conversions, boost user engagement, and optimize order fulfillment. Learn how in this webinar presented by Dito.

  • 3
  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now