Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

(ASCEND) NAT and ELF



hi,

have anybody run NAT and Entry Level Firewall together ???

my config:

P50: - softrel.51Ap9
     - Ethernet->NAT->NAT->NAT-routing=yes
     - Ethernet->NAT->NAT->LAN=Single IP addr.
     - Ethernet->NAT->NAT->Static Mappings->01  Telnet to 10.1.3.30
                                            02  SMTP to 10.1.3.10
                                            ...
     - Configure->My Addr=10.1.3.30/24 (private)
     - Ethernet->Mod Config->Ether Options->2nd IP Addr=193.96.0.129/27 (public)
     - Ethernet->Connections->ISP->Session Option->Data Filter=101
     - Ethernet->Firewall->301 ELF-Config

ELF: - only in-comming SMPT traffic to 193.96.0.128/27
     - only in-comming Telnet traffic to 193.96.0.128/27
     - only out-going SMTP,DNS,WWW for 193.96.0.128/27

Without ELF (Ethernet->Connections->ISP->Session Option->Data Filter=0)
i have no problems, NAT works and all local clients have internet access.

But with enabled Data Filter local clients can only access to internet
while open isdn-line. A local client can't open the isdn-line ?!?!
If the line open from outsite or manuel, local client have access!

It's looks like a Call Filter, but there isn't it.


Have anybody some ideas??


Ciao
Frank
++ Ascend Users Mailing List ++
To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd:	<http://www.nealis.net/ascend/faq>


References: