[Pdns-users] PowerDNS behind NAT

Sagar.Padamwar at tatatechnologies.com Sagar.Padamwar at tatatechnologies.com
Fri Sep 5 08:11:29 UTC 2014


Hi all

Please find tcpdump as requested,  note that 172.16.50.135 is nated to internet facing/Public IP address

----------------------------------------------------------------------
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on eth1, link-type EN10MB (Ethernet), capture size 65535 bytes
13:34:22.530563 IP nemec2.internet.lv.57892 > 172.16.50.135.domain: Flags [S], seq 2205124008, win 7300, options [mss 1380,sackOK,TS val 17933866 ecr 0,nop,wscale 8], length 0
13:34:22.531608 IP 172.16.50.135.37013 > google-public-dns-a.google.com.domain: 24655+ PTR? 135.50.16.172.in-addr.arpa. (44)
13:34:22.547215 IP 172.16.50.135.36735 > google-public-dns-a.google.com.domain: 54786+ PTR? 51.46.198.88.in-addr.arpa. (43)
13:34:22.628054 IP 172.16.50.135.45223 > google-public-dns-a.google.com.domain: 23163+ PTR? 8.8.8.8.in-addr.arpa. (38)
13:34:22.670405 IP nemec2.internet.lv.57892 > 172.16.50.135.domain: Flags [.], ack 1512147578, win 29, options [nop,nop,TS val 17933901 ecr 83470538], length 0
13:34:22.670406 IP nemec2.internet.lv.57892 > 172.16.50.135.domain: Flags [F.], seq 0, ack 1, win 29, options [nop,nop,TS val 17933901 ecr 83470538], length 0
13:34:22.815065 IP nemec2.internet.lv.57892 > 172.16.50.135.domain: Flags [.], ack 2, win 29, options [nop,nop,TS val 17933936 ecr 83470679], length 0
13:37:01.565947 IP www.t1shopper.com.48778 > 172.16.50.135.domain: Flags [S], seq 1049615006, win 5840, options [mss 1380,sackOK,TS val 4083465336 ecr 0,nop,wscale 8], length 0
13:37:01.566575 IP 172.16.50.135.41226 > google-public-dns-a.google.com.domain: 63751+ PTR? 230.252.64.208.in-addr.arpa. (45)
13:37:01.842332 IP www.t1shopper.com.48778 > 172.16.50.135.domain: Flags [.], ack 3079773118, win 23, options [nop,nop,TS val 4083465613 ecr 83629574], length 0
13:37:01.842333 IP www.t1shopper.com.48778 > 172.16.50.135.domain: Flags [F.], seq 0, ack 1, win 23, options [nop,nop,TS val 4083465613 ecr 83629574], length 0
13:37:02.118948 IP www.t1shopper.com.48778 > 172.16.50.135.domain: Flags [.], ack 2, win 23, options [nop,nop,TS val 4083465890 ecr 83629851], length 0
----------------------------------------------------------------------
-----Original Message-----
From: Marc Haber [mailto:mh+pdns-users at zugschlus.de] 
Sent: 05 September 2014 13:21
To: Padamwar, Sagar
Cc: Pdns-users at mailman.powerdns.com
Subject: Re: [Pdns-users] PowerDNS behind NAT

On Fri, Sep 05, 2014 at 04:59:47AM +0000, Sagar.Padamwar at tatatechnologies.com wrote:
> I am also facing same problem. I have installed PowerDNS on CentOS 
> with MySql as backend. My powerdns behind NAT not working, While 
> everything's works fine within the internal network(intranet)
> 
> IPtables has been configured to allow all traffic

Please show tcpdump data from your PowerDNS box.

Greetings
Marc

--
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Leimen, Germany    |  lose things."    Winona Ryder | Fon: *49 6224 1600402
Nordisch by Nature |  How to make an American Quilt | Fax: *49 6224 1600420
**************************************************************************************************************************************************
Email Disclaimer:

Information contained and transmitted by this e-mail (including any attachments) is confidential, proprietary and legally privileged data of Tata Technologies that is intended for use only by the addressee. If you are not the intended recipient, you are notified that any review, use, dissemination, distribution, copying or printing of this e-mail is strictly prohibited. You are requested to delete this e-mail or any copies immediately and notify the sender by reply email. Internet communications cannot be guaranteed to be timely, secure, error or virus-free.  Tata Technologies does not accept any liability for virus infected email or errors or omissions or consequences which may arise as a result of this e-mail transmission. To know more about Tata Technologies please visit http://www.tatatechnologies.com
************************************************************************************************************************************************


More information about the Pdns-users mailing list