<html>
  <head>
    <meta content="text/html; charset=ISO-8859-1"
      http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    You just cannot share same public port among two different
    destination ports.<br>
    As of now only 1st one is being matched.<br>
    <br>
    Perhaps you should spend a couple hrs reading about how iptables
    works.<br>
    <br>
    By the way, to put it simple, you'll need to map two different
    external ports to internal 443 and 22. That's it.<br>
    <br>
    On 31/10/11 19:00 , Giuliano Monti Avellino wrote:
    <blockquote
cite="mid:CAH=YvPrm+0cyARX_YMcxZWajX-YqP8jnAOBN-9f7JNVeyzVvXw@mail.gmail.com"
      type="cite">ERRATA<br>
      <br>
      <div class="gmail_quote">2011/10/31 Giuliano Monti Avellino <span
          dir="ltr"><<a moz-do-not-send="true"
            href="mailto:giulianomontiavellino@gmail.com">giulianomontiavellino@gmail.com</a>></span><br>
        <blockquote class="gmail_quote" style="margin:0 0 0
          .8ex;border-left:1px #ccc solid;padding-left:1ex;"> ohhh my
          (between lines)<br>
          <br>
          <div class="gmail_quote">
            <div class="im">2011/10/31 Giuliano Natali <span dir="ltr"><<a
                  moz-do-not-send="true"
                  href="mailto:diaolin@diaolin.com" target="_blank">diaolin@diaolin.com</a>></span><br>
              <blockquote class="gmail_quote" style="margin:0 0 0
                .8ex;border-left:1px #ccc solid;padding-left:1ex">
                <div>Giuliano Monti Avellino wrote:<br>
                  > In fact, part of the firewall is like this:<br>
                  ><br>
                  > $IPT -t nat -A PREROUTING -p tcp -d $ip_address
                  --dport 8101 -i<br>
                  > $INET_IFACE<br>
                  > -j DNAT --to-destination <a
                    moz-do-not-send="true"
                    href="http://192.168.0.101:443" target="_blank">192.168.0.101:443</a>,22<br>
                  <br>
                </div>
                Ok ma la 22????<br>
                <br>
                Se vuoi la 22 devi fare un DNAT verso<br>
                -j DNAT --to-destination <a moz-do-not-send="true"
                  href="http://192.168.0.101:22" target="_blank">192.168.0.101:22</a><br>
              </blockquote>
            </div>
            <div><br>
              same line different port??<br>
              stessa linea a un altro porto??
              <div class="im"><br>
                <br>
                  $IPT -t nat -A PREROUTING -p tcp -d $ip_address
                --dport 8101 -i > $INET_IFACE > -j DNAT
                --to-destination <a moz-do-not-send="true"
                  href="http://192.168.0.101:443/" target="_blank">192.168.0.101:443</a><br>
                <br>
              </div>
              $IPT -t nat -A PREROUTING -p tcp -d $ip_address --dport
              8101 -i > $INET_IFACE > -j DNAT --to-destination <a
                moz-do-not-send="true" href="http://192.168.0.101:443/"
                target="_blank">192.168.0.101:22</a><br>
            </div>
          </div>
        </blockquote>
        <div><br>
          <br>
          ERRATA: should say /dovrebbe dire:<br>
           <br>
          <div class="im">$IPT -t nat -A PREROUTING -p tcp -d
            $ip_address --dport 8101 -i  $INET_IFACE  -j DNAT
            --to-destination <a moz-do-not-send="true"
              href="http://192.168.0.101:443/" target="_blank">192.168.0.101:443</a><br>
            <br>
          </div>
          $IPT -t nat -A PREROUTING -p tcp -d $ip_address --dport 8101
          -i  $INET_IFACE  -j DNAT --to-destination <a
            moz-do-not-send="true" href="http://192.168.0.101:443/"
            target="_blank">192.168.0.101:22</a></div>
        <blockquote class="gmail_quote" style="margin: 0pt 0pt 0pt
          0.8ex; border-left: 1px solid rgb(204, 204, 204);
          padding-left: 1ex;">
          <div class="gmail_quote">
            <div><br>
              this is not working. Look / non funziona. Guarda <br>
              w3m my_ipaddress:8101 ok<br>
              ssh my_ipaddress:8101 ssh: Could not resolve hostname
              my_ipaddress:8101: Name or service not known
              <div class="im"><br>
                <br>
                > $IPT -I FORWARD -d 192.168.0.100 -p tcp --dport
                8100 -j ACCEPT<br>
                <br>
              </div>
            </div>
            <div class="im">
              <blockquote class="gmail_quote" style="margin:0pt 0pt 0pt
                0.8ex;border-left:1px solid rgb(204, 204,
                204);padding-left:1ex"> e questo???<br>
                <br>
                sopra 101 qui 100<br>
                <br>
                Hmmmmmmmmmmmmmmmmmmmmmmmm<br>
                <br>
              </blockquote>
            </div>
            <div>Sorry my mistake copy/past<br>
              Scusa, ho sbagliato cuando copiavo qui.<br>
               </div>
            <blockquote class="gmail_quote" style="margin:0pt 0pt 0pt
              0.8ex;border-left:1px solid rgb(204, 204,
              204);padding-left:1ex"> Diaolin<br>
              <br>
            </blockquote>
          </div>
          <font color="#888888">Giuliano<br>
          </font></blockquote>
      </div>
      <br>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
pve-user mailing list
<a class="moz-txt-link-abbreviated" href="mailto:pve-user@pve.proxmox.com">pve-user@pve.proxmox.com</a>
<a class="moz-txt-link-freetext" href="http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user">http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user</a>
</pre>
    </blockquote>
    <br>
    <br>
  </body>
</html>