I have a W2K server on my internal LAN xxx.xxx.xxx.xxx (private ip)
I am using iptables and need to connect from the outside to the W2K server
using MS Terminal Service.
I need to open and forward port 3389 TCP and UDP for this to work as far as
I know

This is what I came up with so far. All services works except this

*nat
-A PREROUTING -p tcp -m tcp --dport 3389 -j DNAT --to-destination
xxx.xxx.xxx.xxx
-A POSTROUTING -o eth0 -j SNAT --to-source yyy.yyy.yyy.yyy (server external
eth0)
-A PREROUTING -p udp -m udp --dport 3389 -j DNAT --to-destination
xxx.xxx.xxx.xxx

*filter
-A FORWARD -p tcp -m tcp --dport 3389 -j ACCEPT
-A FORWARD -p udp -m udp --dport 3389 -j ACCEPT
-A INPUT -p tcp -m tcp -s 0/0 --dport 3389 -j ACCEPT
-A INPUT -p udp -m udp -s 0/0 --dport 3389 -j ACCEPT

Any help would be much appreciated
Martin Schoeman




-- 
Psyche-list mailing list
[EMAIL PROTECTED]
https://listman.redhat.com/mailman/listinfo/psyche-list

Reply via email to