How best to route internal clients to internal web server?

From: Captain Dondo (yan_at_NsOeSiPnAeMr.com)
Date: 02/28/05


Date: Mon, 28 Feb 2005 10:04:11 -0800

I have the following setup:

an OpenBSD firewall. The only manchine on my network with a real IP.
a Linux server, which provides web (and other) services.
some linux clients.

A request for the web server comes in to the firewall, which NATs and port
forwards it to the internal server.

But clients on the inside cannot cannot use the web server, unless I put
appropriate host entries into the /etc/hosts file, resolving the 'real'
name of the web server to the private IP address.

Thus in /etc/hosts I must have

192.168.128.2 www.xxxx.com spam.xxxx.com
order hosts,bind

otherwise my internal clients cannot find the web server.

Is there a better way to handle this than editing each and every
/etc/hosts on the network?

I run my own dhcp and bind servers, but I don't think I can use bind to
serve up the domain names... ISTR the last time I tried, it wouldn't let
me since I am not authoritative for the domain, and it wreaked havoc with
DNS....

-- 
use munged address above to email me
SpamTrap DoMeNow@seiner.com 


Relevant Pages

  • Re: Fully parallel Scheme-based language w/ evaluator
    ... Windows Server 2003 and networks in simple - and irreverent - terms. ... If networking really is a big deal, ... Concepts and Terminology in Part I, and The Design and Deployment of Network ...
    (comp.lang.misc)
  • Re: Outgoing POP3 email missing/lost/not received
    ... Funny thing is that I have had this ISP for 8 years and it has always been ... It looks like when you last ran CEICW, you set the ISP's mail server to: ... Internet Connection Wizard. ... After the wizard completes, the following network connection ...
    (microsoft.public.windows.server.sbs)
  • Re: Logon Server Unavailable
    ... There are currently no logon servers available to service ... You use a office laptop to connect the office VPN, when you map a network ... you may receive this message: "This account is the ... The server is not configured for transactions"> "A domain controller for your domain could not be contacted" ...
    (microsoft.public.windows.server.dns)
  • Re: Logon Server Unavailable
    ... There are currently no logon servers available to service ... You use a office laptop to connect the office VPN, when you map a network ... you may receive this message: "This account is the ... The server is not configured for transactions"> "A domain controller for your domain could not be contacted" ...
    (microsoft.public.windows.server.networking)
  • Re: Logon Server Unavailable
    ... There are currently no logon servers available to service ... You use a office laptop to connect the office VPN, when you map a network ... you may receive this message: "This account is the ... The server is not configured for transactions"> "A domain controller for your domain could not be contacted" ...
    (microsoft.public.windows.server.general)