This example covers a Port by Port scenario using Mixed Mode With Proxies).
Network 1 Topology is designed so that Routing networks communicate with Routing networks, and Stealth networks communicate with Stealth networks (that is, host A [Stealth] cannot talk to host B [Router]).
NAT works in Stealth networks only, since Routing networks are not able to NAT through a Stealth network (that is, not able to NAT host A to talk to host B).
Proxies cannot be used from the Stealth networks to the Stealth networks.
Routing network to Routing network (EFS_qfe0 -> EFS_qfe1)
Telnet or ftp from A to Server2 through the EFS Proxy Server:
telnet 172.32.16.1
ftp 172.32.16.1)
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Telnet or ftp from A to Server2 directly:
telnet 192.9.61.84
ftp 192.9.61.84)
Stealth network to Stealth network:
SPF_hme0 -> EFS_qfe2)
Telnet or ftp from B to Server2 directly:
telnet 192.9.61.84
ftp 192.9.61.84)
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Surfing the Web Server (Server1) from A through the Routing Proxy Server:
Set up browser to use proxy server172.32.16.1 on A.
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1)
Surfing the Web Server (Server1) directly from A:
Do not set up browser to use proxy on A.
Stealth network to Stealth network:
SPF_hme0 -> EFS_qfe2)
Surfing the Web Server (Server1) directly from B:
Do not set up browser to use proxy on B.
Stealth network to Stealth network:
SPF_hme0 -> EFS_qfe2
Set up Static and Dynamic NAT rules to hide Web Server and FTP/Telnet Server addresses.
NAT works only in Stealth networks, since Routing networks are not able to NAT through a Stealth network (that is, not able to NAT host A to talk to host B).
Cannot telnet or ftp directly from A (Routing network) to B (Stealth network) or B to A without using a Proxy.
Routing network to Stealth network:
EFS_qfe0 -> EFS_qfe 1-> SPF_qfe2 -> SPF_hme0
Telnet or ftp from A to B through the Routing Proxy Server:
telnet172.32.16.1
ftp 172.32.16.1)
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Telnet/ftp from A to Server2 through the Routing Proxy Server:
telnet172.32.16.1
ftp 172.32.16.1)
Stealth network to Routing network:
SPF_hme0 -> SPF_qfe2 -> EFS_qfe1 -> EFS_qfe0
Telnet or ftp from B to A through the Routing Proxy Server:
telnet 207.88.218.2
ftp 207.88.218.2)
Stealth network to Stealth network:
SPF_hme0 -> SPF_qfe2
Telnet or ftp from B to Server2 through the Routing Proxy Server:
telnet 207.88.218.2
ftp 207.88.218.2
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Telnet or ftp from A to Server2 directly:
telnet 192.9.61.84
ftp 192.9.61.84)
Stealth network to Stealth network:
SPF_hme0 -> SPF_qfe2)
Telnet or ftp from B to Server2 directly:
telnet 192.9.61.84
ftp 192.9.61.84
Routing network to Stealth network:
EFS_qfe0 -> EFS_qfe1 -> SPF_qfe2 -> SPF_hme0
Surfing the Internet directly from A:
Set up the browser to use Proxy server 172.32.16.1 on A.
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Surfing the Web Server (Server1) from A through the Routing Proxy Server:
Set up browser to use proxy server 172.32.16.1 on A.
Stealth network to Stealth network:
SPF_hme0 -> SPF_qfe2
Surfing the Web Server (Server1) from B through the Routing Proxy Server:
Set up the browser to use Proxy server 207.88.218.2 on B.
Routing network to Routing network:
EFS_qfe0 -> EFS_qfe1
Surfing the Web Server (Server1) directly from A:
Do not set up browser to use Proxy on A.
Stealth network to Stealth network:
SPF_hme0 -> SPF_qfe2
Surfing the Web Server (Server1) directly from B:
Do not set up browser to use proxy on B.