V
Vlad Doubrov
Hello!
I have an organization unit which has it's own internal network
(192.168.17.x). I need to connect it to the global organization
intranet and internet via the link which they provided me. The routing
protocol used in the network is RIP.
I have setup a Win2k server and RRAS and enabled RIP and NAT on it.
The server has two NICs - one for internal network (192.168.17.1), and
one for the external link (81.90.55.55 - the real internet address).
The other side of the link is a Cisco router.
Everything seems to work just fine. The server receives RIP routes for
the organization's intranet network (192.168.16.0/24, 192.168.15.0/24,
81.90.55.0/24, etc), and everyone in my local segment has an access
both to the internet and those networks.
The problem is that when I access the intranet, the server does NAT on
those packets. Therefore, for everyone in the network they see all my
workstations just like the address of my external NIC - 81.90.55.55.
Also, nobody can access any of the workstations using their real IPs -
like 192.168.17.2, and so on.
So, is there any way to force RRAS don't NAT on the packets heading
out via RIP routes, but only via the default route? I wish I could
setup somewhere a list of destination networks which shouldn't be
NATed. Just like setting up the filters in RRAS.
I know I could do this easily whith Linux, but the server should be
under Win2k only.
Thanks a lot!
-- vlad
I have an organization unit which has it's own internal network
(192.168.17.x). I need to connect it to the global organization
intranet and internet via the link which they provided me. The routing
protocol used in the network is RIP.
I have setup a Win2k server and RRAS and enabled RIP and NAT on it.
The server has two NICs - one for internal network (192.168.17.1), and
one for the external link (81.90.55.55 - the real internet address).
The other side of the link is a Cisco router.
Everything seems to work just fine. The server receives RIP routes for
the organization's intranet network (192.168.16.0/24, 192.168.15.0/24,
81.90.55.0/24, etc), and everyone in my local segment has an access
both to the internet and those networks.
The problem is that when I access the intranet, the server does NAT on
those packets. Therefore, for everyone in the network they see all my
workstations just like the address of my external NIC - 81.90.55.55.
Also, nobody can access any of the workstations using their real IPs -
like 192.168.17.2, and so on.
So, is there any way to force RRAS don't NAT on the packets heading
out via RIP routes, but only via the default route? I wish I could
setup somewhere a list of destination networks which shouldn't be
NATed. Just like setting up the filters in RRAS.
I know I could do this easily whith Linux, but the server should be
under Win2k only.
Thanks a lot!
-- vlad