X-Account-Key: account1 X-UIDL: 110223 X-Mozilla-Keys: Return-Path: X-ListServer: CommuniGate Pro LIST 5.1.3 List-Unsubscribe: List-ID: List-Archive: Precedence: list Message-ID: Reply-To: "OS/2 Wireless Users Mailing List" Sender: "OS/2 Wireless Users Mailing List" To: "OS/2 Wireless Users Mailing List" X-Original-Message-ID: <468A8FF2.7040506@2rosenthals.com> Date: Tue, 03 Jul 2007 14:05:38 -0400 From: "Lewis G Rosenthal" MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Subject: Re: [OS2Wireless] NAT issues On 07/03/07 01:37 pm, Dave Saville thus wrote : > On Tue, 03 Jul 2007 12:33:42 -0400, Lewis G Rosenthal wrote: > > >> NAT is just a mixed bag. It's great for some things and really tough >> for others. When you need to share a single public IP between five or >> ten machines, it's he only game in town and makes a lot of sense. OTOH, >> when you need to also allow access to four servers behind the NAT, then >> it becomes a sticky situation, better served with multiple public IPs. >> > > I do exactly that with a Zyxel 660 - One of it's NAT configurations lets you > set multiple external addresses as one to one or many to one NATable setups. So > I map my external servers one to one and all the rest goes through a single > many to one. Works a treat. I used to have the real world IPs go straight > through, I have 8, but I had more machines than addresses so there was a NATted > network via a Sparc box - but it actually meant that although all boxes could > get out to the 'net they could not all talk to each other. This snazzy multi > NAT setup solves everything as the LAN side is just one 192.168.0 net. > > Unfortunately, these were 643's, and less flexible than the 660's (which are indeed nice units). It's either all or nothing, and in this case, it wouldn;t have helped as there is only one public IP (though thankfully, static). ;-) SNAT does indeed work for the setup you have, Dave. Do you have any services runnign which require NAT traversal? I'm wondering whether the 660 does this better than the 643. -- Lewis ------------------------------------------------------------ Lewis G Rosenthal, CNA, CLP, CLE Rosenthal & Rosenthal, LLC Accountants / Network Consultants New York / Northern Virginia www.2rosenthals.com eComStation Consultants www.ecomstation.com Novell Users Int'l www.novell.com/openenterpriseserver Need a managed Wi-Fi hotspot? www.hautspot.com ------------------------------------------------------------ =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to To switch to the INDEX mode, E-mail to Send administrative queries to To subscribe (new addresses), E-mail to: and reply to the confirmation email. Web archives are publicly available at: http://lists.2rosenthals.com This list is hosted by Rosenthal & Rosenthal, LLC P.O. Box 281, Deer Park, NY 11729-0281. Non- electronic communications related to content contained in these messages should be directed to the above address. (CAN-SPAM Act of 2003) =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=