Thanks, be shure i will learn iptables, and i will find about map two different
external ports to internals<br><br><div class="gmail_quote">2011/10/31 William Maddler <span dir="ltr"><<a href="mailto:news@maddler.net">news@maddler.net</a>></span><br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">
<div bgcolor="#FFFFFF" text="#000000"><div class="im">
You just cannot share same public port among two different
destination ports.<br>
As of now only 1st one is being matched.<br>
<br>
Perhaps you should spend a couple hrs reading about how iptables
works.<br>
<br>
By the way, to put it simple, you'll need to map two different
external ports to internal 443 and 22. That's it.<br>
<br>
On 31/10/11 19:00 , Giuliano Monti Avellino wrote:
</div><blockquote type="cite"><div><div></div><div class="h5">ERRATA<br>
<br>
<div class="gmail_quote">2011/10/31 Giuliano Monti Avellino <span dir="ltr"><<a href="mailto:giulianomontiavellino@gmail.com" target="_blank">giulianomontiavellino@gmail.com</a>></span><br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"> ohhh my
(between lines)<br>
<br>
<div class="gmail_quote">
<div>2011/10/31 Giuliano Natali <span dir="ltr"><<a href="mailto:diaolin@diaolin.com" target="_blank">diaolin@diaolin.com</a>></span><br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div>Giuliano Monti Avellino wrote:<br>
> In fact, part of the firewall is like this:<br>
><br>
> $IPT -t nat -A PREROUTING -p tcp -d $ip_address
--dport 8101 -i<br>
> $INET_IFACE<br>
> -j DNAT --to-destination <a href="http://192.168.0.101:443" target="_blank">192.168.0.101:443</a>,22<br>
<br>
</div>
Ok ma la 22????<br>
<br>
Se vuoi la 22 devi fare un DNAT verso<br>
-j DNAT --to-destination <a href="http://192.168.0.101:22" target="_blank">192.168.0.101:22</a><br>
</blockquote>
</div>
<div><br>
same line different port??<br>
stessa linea a un altro porto??
<div><br>
<br>
$IPT -t nat -A PREROUTING -p tcp -d $ip_address
--dport 8101 -i > $INET_IFACE > -j DNAT
--to-destination <a href="http://192.168.0.101:443/" target="_blank">192.168.0.101:443</a><br>
<br>
</div>
$IPT -t nat -A PREROUTING -p tcp -d $ip_address --dport
8101 -i > $INET_IFACE > -j DNAT --to-destination <a href="http://192.168.0.101:443/" target="_blank">192.168.0.101:22</a><br>
</div>
</div>
</blockquote>
<div><br>
<br>
ERRATA: should say /dovrebbe dire:<br>
<br>
<div>$IPT -t nat -A PREROUTING -p tcp -d
$ip_address --dport 8101 -i $INET_IFACE -j DNAT
--to-destination <a href="http://192.168.0.101:443/" target="_blank">192.168.0.101:443</a><br>
<br>
</div>
$IPT -t nat -A PREROUTING -p tcp -d $ip_address --dport 8101
-i $INET_IFACE -j DNAT --to-destination <a href="http://192.168.0.101:443/" target="_blank">192.168.0.101:22</a></div>
<blockquote class="gmail_quote" style="margin:0pt 0pt 0pt 0.8ex;border-left:1px solid rgb(204, 204, 204);padding-left:1ex">
<div class="gmail_quote">
<div><br>
this is not working. Look / non funziona. Guarda <br>
w3m my_ipaddress:8101 ok<br>
ssh my_ipaddress:8101 ssh: Could not resolve hostname
my_ipaddress:8101: Name or service not known
<div><br>
<br>
> $IPT -I FORWARD -d 192.168.0.100 -p tcp --dport
8100 -j ACCEPT<br>
<br>
</div>
</div>
<div>
<blockquote class="gmail_quote" style="margin:0pt 0pt 0pt 0.8ex;border-left:1px solid rgb(204, 204, 204);padding-left:1ex"> e questo???<br>
<br>
sopra 101 qui 100<br>
<br>
Hmmmmmmmmmmmmmmmmmmmmmmmm<br>
<br>
</blockquote>
</div>
<div>Sorry my mistake copy/past<br>
Scusa, ho sbagliato cuando copiavo qui.<br>
</div>
<blockquote class="gmail_quote" style="margin:0pt 0pt 0pt 0.8ex;border-left:1px solid rgb(204, 204, 204);padding-left:1ex"> Diaolin<br>
<br>
</blockquote>
</div>
<font color="#888888">Giuliano<br>
</font></blockquote>
</div>
<br>
<br>
<fieldset></fieldset>
<br>
</div></div><div class="im"><pre>_______________________________________________
pve-user mailing list
<a href="mailto:pve-user@pve.proxmox.com" target="_blank">pve-user@pve.proxmox.com</a>
<a href="http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user" target="_blank">http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user</a>
</pre>
</div></blockquote>
<br>
<br>
</div>
<br>_______________________________________________<br>
pve-user mailing list<br>
<a href="mailto:pve-user@pve.proxmox.com">pve-user@pve.proxmox.com</a><br>
<a href="http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user" target="_blank">http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user</a><br>
<br></blockquote></div><br>