[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Xen-users] networking nat strange behaviuor

I use debian etch amd64 and xen from the debian repositories;
I have created 2 paravirtualized server, (always debian amd64), a web server 
and a mail server.

The dom0 is attached to internet through  an ethernet modem (ppp0), with a 
dynamic ip.

I use, in dom0,

(network-script network-nat)
(vif-script     vif-nat = web server domU (gateway = mail server domU (gateway

In the dom0 firewall i have these relevant rules:

Input, output and forward all on accept;

echo 1 >> /proc/sys/net/ipv4/ip_forward

iptables -t nat -A POSTROUTING -o ppp0 -j MASQUERADE

iptables -A PREROUTING -t nat -p tcp -i ppp0 --dport 25 -j DNAT --to

iptables -A PREROUTING -t nat -p tcp -i ppp0 --dport 465 -j DNAT --to

iptables -A PREROUTING -t nat -p tcp -i ppp0 --dport 143 -j DNAT --to

iptables -A PREROUTING -t nat -p tcp -i ppp0 --dport 993 -j DNAT --to

iptables -t nat -A PREROUTING -p tcp -i ppp0 --dport 80 -j DNAT --to

Result: the web server can be contacted from outside, works perfectly
The mail server can't be contacted form outside;

What's wrong?


Xen-users mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.