Wed Mar 09, 2016 9:37 pm
Thank you Shayan for the reply. I am familiar with one-to-one NAT and how it works, but my client wants to use public IP addresses on the back side of the router. There is a word for this....it seems like it is a Microsoft term....I have been racking my brain for a couple of days now trying to come up with the word. Anyway, I will try to do a better job of explaining what my client is attempting to accomplish and how I am trying to help them.
So my client has a business and they have purchased a public IP from my company. For ease of following my story, we are going to give them a public static IP address of 1.1.19.131 (not their real IP address, not even close, just made up.) Their Watchguard firewall has a MAC address of AA:BB:CC:DD:EE:FF which I have completed the process of 'Set as Static' on the WinBox. Therefore the firewall, with the above referenced MAC address, has an IP address of 1.1.19.131. Now, they have a mail server, I don't know the MAC yet, which they would like to set with an IP address of 1.1.19.132, as they purchased six static IP addresses from my company. They don't want to have to purchase a managed switch and set it up so the mail server, along with other devices, are facing the public Internet directly. They would like to place the mail server (1.1.19.132) behind the firewall, but still have it either pull the static IP address, or manually place the public static IP address on it. We did some testing where we put the public static IP address on the mail server, but pings and other traffic dies out before it gets there. They have set up the Watchguard firewall to forward all the mail traffic out to the public gateway (1.1.19.129 - which is my gateway on the WinBox). This is where I am stuck. Do we need to go back to one static public IP address, then have the firewall do port forwarding to the other devices, or would I be able to assign the five other static public IP addresses to the devices from the WinBox through the firewall? Or do I just need to explain to the client that they need to purchase a managed switch and just have all of their devices facing the public Internet so the WinBox can hit one of them directly?
I really do appreciate the assistance. Thank you.