Mailing List os2-wireless_users@2rosenthals.com Archived Message #5882

From: "Lewis G Rosenthal" <os2-wireless_users@2rosenthals.com> Full Headers
Undecoded message
Sender: "OS/2 Wireless Users Mailing List" <os2-wireless_users@2rosenthals.com>
Subject: Re: [OS2Wireless] NAT issues
Date: Tue, 03 Jul 2007 14:05:38 -0400
To: "OS/2 Wireless Users Mailing List" <os2-wireless_users@2rosenthals.com>

On 07/03/07 01:37 pm, Dave Saville thus wrote :
On Tue, 03 Jul 2007 12:33:42 -0400, Lewis G Rosenthal wrote:

  
NAT is just a mixed  bag. It's  great for some things and really tough for others. When you need to share a single public IP between five or ten machines, it's he only game in town and makes a lot of sense. OTOH, when you need to also allow access to four servers behind the NAT, then it becomes a sticky situation, better served with multiple public IPs.
    

I do exactly that with a Zyxel 660 - One of it's NAT configurations lets you set multiple external addresses as one to one or many to one NATable setups. So I map my external servers one to one and all the rest goes through a single many to one. Works a treat. I used to have the real world IPs go straight through, I have 8, but I had more machines than addresses so there was a NATted network via a Sparc box - but it actually meant that although all boxes could get out to the 'net they could not all talk to each other. This snazzy multi NAT setup solves everything as the LAN side is just one 192.168.0 net.   
Unfortunately, these were 643's, and less flexible than the 660's (which are indeed nice units). It's either all or nothing, and in this case, it wouldn;t have helped as there is only one public IP (though thankfully, static). ;-)

SNAT does indeed work for the setup you have, Dave. Do you have any services runnign which require NAT traversal? I'm wondering whether the 660 does this better than the 643.

--
Lewis
------------------------------------------------------------
Lewis G Rosenthal, CNA, CLP, CLE
Rosenthal & Rosenthal, LLC
Accountants / Network Consultants
 New York / Northern Virginia           www.2rosenthals.com
eComStation Consultants                  www.ecomstation.com
Novell Users Int'l       www.novell.com/openenterpriseserver
Need a managed Wi-Fi hotspot?               www.hautspot.com
------------------------------------------------------------


=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
This message is sent to you because you are subscribed to
 the mailing list <os2-wireless_users@2rosenthals.com>.
To unsubscribe, E-mail to: <os2-wireless_users-off@2rosenthals.com>
To switch to the DIGEST mode, E-mail to <os2-wireless_users-digest@2rosenthals.com>
To switch to the INDEX mode, E-mail to <os2-wireless_users-index@2rosenthals.com>
Send administrative queries to  <os2-wireless_users-request@2rosenthals.com>
To subscribe (new addresses), E-mail to: <os2-wireless_users-on@2rosenthals.com> and reply to the confirmation email.
Web archives are publicly available at: http://lists.2rosenthals.com

This list is hosted by Rosenthal & Rosenthal, LLC
P.O. Box 281, Deer Park, NY 11729-0281. Non-
electronic communications related to content
contained in these messages should be directed
to the above address. (CAN-SPAM Act of 2003)

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=



Subscribe: Feed, Digest, Index.
Unsubscribe
Mail to ListMaster