Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Translating IP

$
0
0

Hello all, 

 

Please help me figure out how to create rule for my purpose.

 

I would like to retranslate public IP to private IP when trying to connect to external IP from internal network.

 

Let's say i have public ip address set of 173.11.120.0/24, untrust ethernet public ip for example is 173.11.120.1

And private address pool is 172.16.16.0/24 with trust interface IP 172.16.16.1

 

My Server has ip 172.16.16.2 and has VPN server running on it.

 

I would like to make 173.11.120.2 external IP with port 1723 (PPTP service for example) mapped to 172.16.16.2 private IP

 

Accessing it from outside my networks are fine, using VIP of Untrust interface (VIP 173.11.120.2 with 1723 port mapped to 172.16.16.2) and everything works well. But when i try to connect from local subnet on Trust zone (from 172.16.16.0/24) to 173.11.120.2 i have no luck.

 

So connection looks like: 

172.16.16.0/24 -> 173.11.120.2 -> 172.16.16.2

 

Would be like if someone explains step by step how to make it working. 

 

With best regards,

Aleksei


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>