| | | Forum Newbie
       
Group: Forum Members Last Login: 8/17/2004 8:44:00 AM Posts: 3, Visits: 1 |
| I have 15 Domains behind a Firewall, All Domains on the Imail server are using "Private" IP's which have a 1:1 Nat to a Public IP, However none of the domains will except domain literals, I even tried adding [xxx.xxx.xxx.xxx] and/or xxx.xxx.xxx.xxx as an alias for the given domain, and still does not except a ip literal from outside the net, however will except if i use the PrivateIP as the literal for the said domain. Any Ideas? |
| | | | Time Traveler
       
Group: Forum Members Last Login: 6/15/2005 1:07:00 AM Posts: 217, Visits: 1 |
| You have to bind the public NAT address as a secondary address on the NIC. Yes, it sounds kludgy, but it works. At the network level, your mailserver should never need to route to its own public NAT address through the firewall, so the fact that you're "short-circuiting" the route by steering it to localhost should be okay. --Sandy
------------------------------------ Sanford Whiteman, Chief Technologist Broadleaf Systems, a division of Cypress Integrated Systems, Inc. Defuse Dictionary Attacks: Turn Remote Mailboxes into Aliases on your IMail MX! http://www.imprimia.com/products/software/freeutils/ldap2aliases/download/release/ |
| | | | Forum Newbie
       
Group: Forum Members Last Login: 8/17/2004 8:44:00 AM Posts: 3, Visits: 1 |
| This is the only way to do this???? Why can't IpSwitch just fix imail to accept [0.0.0.0] as an alias for said domain. |
| | | | Time Traveler
       
Group: Forum Members Last Login: 6/15/2005 1:07:00 AM Posts: 217, Visits: 1 |
| If they really accepted [0.0.0.0] as local, that would accept all domain literals locally, which completely breaks domain literals. Not really sure what the big deal is with adding a secondary IP, since that's exactly how you want the box to behave. Remember that NAT is not something that most IP-aware applications can deal with easily (cf. VPNs, et al.). --Sandy
------------------------------------ Sanford Whiteman, Chief Technologist Broadleaf Systems, a division of Cypress Integrated Systems, Inc. Defuse Dictionary Attacks: Turn Remote Mailboxes into Aliases on your IMail MX! http://www.imprimia.com/products/software/freeutils/ldap2aliases/download/release/ |
| |
|
|