Re: firewall rules for NAT
Lucio Crusca wrote:
>[...]
> It works like a charm, but there is one problem: my mail server receives
> all the connections from the router, which has its own private IP
> address (10.7.33.100), so the mail server can't enforce SPF policies nor
> DNS RBL rules on incoming mail connections.
That shouldn't be happening -- you may have an errant rule you didn't
show from one of the hosts in there that's doing this to you (perhaps
NAT Hairpin).
--
|_|O|_| Registered Linux user #585947
|_|_|O| Github: https://github.com/dpurgert
|O|O|O| PGP: 05CA 9A50 3F2E 1335 4DC5 4AEE 8E11 DDF3 1279 A281
Reply to: