»
 

Go Back   ResellerRatings Store Ratings > ResellerRatings Forums > Tech Support

Reply
 
LinkBack Thread Tools Display Modes
Old 10-07-2003, 01:29 PM   #1 (permalink)
Registered User
 
Join Date: Aug 2002
Location: Meeshigan
Posts: 597
Ruler2112 is on a distinguished road
Kids Tunnelling through a NAT

I would like to use VNC to remotely control the desktops of various PCs where I work. I've already gotten it working over the LAN; very slick setup. However, the next step is to control them from the homes of employees. This will be done from either a cable modem, DSL, or dial-up, all of which have dynamic IPs and are most likely NATed. Our LAN here at work is NATed by the ISP providing our T1 line as well. I think this should be possible, but am by no means an expert at networking stuff.

The main problem that I see is knowing what PC on the network to go to when connecting to the firewall/gateway. I have access to neither the machine doing the NATing here at work or the ones used by our employees ISPs, so configuration changes at that level will be difficult if not impossible to implement.

The basic layout is this:

home pc ---> ISP ---> i-net ---> T1 ---> LAN

The home PC will have a private IP, but only within the ISP; all the traffic will appear to be coming from the ISP machine as viewed from the internet at large and the ISP machine will handle the routing of packets going out/coming in to the proper machine on that private network. The machines on the LAN have IPs unique only to that LAN; the traffic coming from every PC on the LAN appears to be coming from the T1 machine. (I've verified this last part to be accurate - looks very much like the IP Masquerading setup I did on a RedHat box a while back.)

I've already searched the VNC mailing list and read all the posts with NAT in them. Several are really good, some conflict, and a few soar right over my head. (Like I said, my specialty isn't networking.) My gut tells me that this should be possible, and there are several messages on the VNC mailing list that concur. (All are either incomprehensible to me, pertain to a different setup, refer to webpages that no longer exist, or a combination thereof.) I'm heading to google next, but was wondering if maybe somebody here had any experience and/or knowledge of doing this kind of thing.

__________________
About 5% of the people in the world can't think.
Another 5% can think and do.
The remaining 90% can think, but don't.
Ruler2112 is offline   Reply With Quote
Old 10-07-2003, 06:39 PM   #2 (permalink)
Registered User
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 5,577
DVNT1 is on a distinguished road
Based on the information provided: without making changes to the NAT box at the office, there isn't anyway to do this through the NATed T1 connection. If you control the box doing NAT, then you can map Internet traffic to specified LAN computers.

Even if have control over the box doing NAT, you may still have trouble directing requests on one public IP to the appropriate LAN computer IP. One way this could work, use non-default port mappings on the public side then direct each one separately to the appropriate LAN computer IP. Depending on you NAT device, this may not be a possible configuration.
DVNT1 is offline   Reply With Quote
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Most Active Discussions

Recent Discussions

All times are GMT -6. The time now is 02:49 AM.