09-17-2012 10:09 PM
Hi there,
Just purchased an RV220W for a customer to replace a WRVS4400N that had no support for One-to-One NAT and have found the One-to-one NAT for this router is only marginally better.
I have three WAN addresses and three devices to map them to. With the RV0xx I've used the following configuration over a dozen times.
WAN Address 1 - the router's public address
Port forward HTTP, HTTPS, and SMTP to Windows Small Business Server 2011
Email and Remote Web Access are accessible at remote.company.com
WAN Address 2
One-to-one NAT to private IP address of Ubuntu Server
Add the following access rules:
Companies website is accessible at company.com and I can update the website with SSH and FTP
WAN Address 3
One-to-one NAT to private IP address of the Hyper-V server's Intel RMM module (Lights out remote management)
Add the following access rules:
I can access server at rmm.company.com from my companies network connection
My problems are as follows:
There must be some way around this! I don't understand why the Destination IP option is greyed out for all Inbound access rules. I have been using this same configuration with the Cisco RV0xx, many Sonicwall firewalls, as well as several Cisco ASAs. Obviously this is not an ASA but this implementation of One-to-one NAT is useless!
Any help is greatly appreciated. Thanks,
Kevin
Solved! Go to Solution.
09-20-2012 12:39 PM
Due to the GUI restricting only one service in the one-to-one NAT page, users have to go to the Firewall>Access Rules page to specify additional services that are allowed.
09-20-2012 07:33 AM
In order tp get an acurate and quick answer, try on the correct forum "small business - wireless". You can move your post using the Actions Panel on the right.
09-20-2012 11:40 AM
This question is 100% about routing and 0% about wireless. Looking at the posts in the Small Business - Wireless forum I believe this to be in the right place.
Cheers,
Kevin
09-20-2012 12:39 PM
Due to the GUI restricting only one service in the one-to-one NAT page, users have to go to the Firewall>Access Rules page to specify additional services that are allowed.
09-20-2012 05:30 PM
Thanks tekliu,
That was what I was looking for.
I didn't realize that Access Rules on the RV220W actually enabled you to specify NAT as part of the settings.
The working settings were as follows:
Action: Always Allow
Service: SSH-TCP
Send to Local Server (DNAT IP): IP Address of Ubuntu Server
Use Other WAN (Internet) IP Address: Enable
WAN (Internet) Destination IP: External IP Address that is being One-to-One NATted to the server.
09-20-2012 06:19 PM
Kevin, thank you for sharing the detailed config example with the community.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide