SYSTEM WARNING: 'date_default_timezone_get(): It is not safe to rely on the system's timezone settings. You are *required* to use the date.timezone setting or the date_default_timezone_set() function. In case you used any of those methods and you are still getting this warning, you most likely misspelled the timezone identifier. We selected the timezone 'UTC' for now, but please set date.timezone to select your timezone.' in '/usr/share/mantis/www/core.php' line 264

0001073: make NAT optional on RED - MantisBT
MantisBT - Endian Firewall
View Issue Details
0001073Endian FirewallNetwork related (VPN, uplinks)public2008-07-04 07:472008-07-09 20:47
mgabriel 
peter-endian 
normalfeatureN/A
closedfixed 
2.2-rc1 
2.2-rc1 
0001073: make NAT optional on RED
at this time, it is not possible to route through RED, RED gets always NATted. This prevents to use endian as a security router in mid to big network environments.
No tags attached.
Issue History
2008-07-04 07:47mgabrielNew Issue
2008-07-04 07:47mgabrielStatusnew => assigned
2008-07-04 07:47mgabrielAssigned To => peter-endian
2008-07-08 08:02peter-endianStatusassigned => closed
2008-07-08 08:02peter-endianNote Added: 0001420
2008-07-08 08:02peter-endianResolutionopen => fixed
2008-07-08 08:02peter-endianFixed in Version => 2.2-rc1
2008-07-08 20:28mgabrielStatusclosed => feedback
2008-07-08 20:28mgabrielResolutionfixed => reopened
2008-07-08 20:28mgabrielNote Added: 0001422
2008-07-09 07:54peter-endianNote Added: 0001423
2008-07-09 20:46mgabrielNote Added: 0001427
2008-07-09 20:47mgabrielStatusfeedback => closed
2008-07-09 20:47mgabrielNote Added: 0001428
2008-07-09 20:47mgabrielResolutionreopened => fixed

Notes
(0001420)
peter-endian   
2008-07-08 08:02   
SNAT has been implemented in 2.2
It's available wil 2.2-rc1
(0001422)
mgabriel   
2008-07-08 20:28   
Source NAT is available in 2.2rc1, right. But I meant to be able to route packets rather than source natting them.
(0001423)
peter-endian   
2008-07-09 07:54   
ah, sorry. did not end the sentence..
with the snat editor you can toggle off snat for a specific network/interface/zone/openvpn user.. etc

then it will be routed
(0001427)
mgabriel   
2008-07-09 20:46   
ah, okay. did not recognize that option. thank you :-).
(0001428)
mgabriel   
2008-07-09 20:47   
closed.