- c806 - NAT on internal interface, is it (somehow) possible?

PDA

View Full Version : c806 - NAT on internal interface, is it (somehow) possible?


Axel Behr
07-25-2004, 02:48 AM
Hello!

I have a dialup DSL modem connected to a c806 and a web-server on the
private lan in the 192.168.0.x address range. I configured nat so that
accesses on port 80 on my dialup ip address are being forwarded to the
server located at my LAN using the Router Setup Tool and Telconi
Terminal.

Access from outside my lan internet works fine. If I try to access the
Web Server from within my Lan, DNS translates my dynamic domain name
to the dialup ip number, which is correct, but since the request is
coming from my internal net, no NAT is being performed and the requests
are being handled by the web server within the c806, which is clearly
not what I want. Using the internal IP Address from within the net is
no solution, since I use virtual hosts, which rely on the dns name
instead of the IP address.

As I have understood, this problem is not easy to solve. One idea was
to stop using the c806 but the web server as router instead, which i am
not really happy with, since this machine is potentially down more
often and I don't really want to use it for this purpose.

My IOS knowledge is still at a very basic level and it surely needs
some tricks to find a working solution, but I am still under the
impression that it might be powerful enough to come up with something
that is simply beyond my level of expertise :)

TIA

Axel

Ivan Ostres
07-25-2004, 02:48 AM
In article <2m4p40Fj03pkU1@uni-berlin.de>, axe@gmx.de says...
> Hello!
>
> I have a dialup DSL modem connected to a c806 and a web-server on the
> private lan in the 192.168.0.x address range. I configured nat so that
> accesses on port 80 on my dialup ip address are being forwarded to the
> server located at my LAN using the Router Setup Tool and Telconi
> Terminal.
>
> Access from outside my lan internet works fine. If I try to access the
> Web Server from within my Lan, DNS translates my dynamic domain name
> to the dialup ip number, which is correct, but since the request is
> coming from my internal net, no NAT is being performed and the requests
> are being handled by the web server within the c806, which is clearly
> not what I want. Using the internal IP Address from within the net is
> no solution, since I use virtual hosts, which rely on the dns name
> instead of the IP address.
>
> As I have understood, this problem is not easy to solve. One idea was
> to stop using the c806 but the web server as router instead, which i am
> not really happy with, since this machine is potentially down more
> often and I don't really want to use it for this purpose.
>
> My IOS knowledge is still at a very basic level and it surely needs
> some tricks to find a working solution, but I am still under the
> impression that it might be powerful enough to come up with something
> that is simply beyond my level of expertise :)
>
> TIA
>
> Axel
>
>

I think that split-dns would help in such situation.

--
-Ivan.

*** Use Rot13 to see my eMail address ***