Hello,

I don't know, how to resolve this problem:

I have 3 servers running NetWare 6 + SP3. One of them is mail server
with
GroupWise 6.5, second should host www and FTP, on third i have
installed
BorderManager 3.7 + SP2. I obtained 2 subnets of public IP addresses
from
my ISP. One subnet is 217.17.32.68 to 217.17.32.71 with mask
255.255.255.252. This one is used only to connect to provider's
router. I
have bound 217.17.32.70 to BorderManager server's public NIC and
default
route is 217.17.32.69. I don't have any hardware router from my ISP,
the
cable is connected directly to public NIC. I also have second public
IP
addresses subnet, 217.17.41.96/27, range from 217.17.41.96 to
217.17.41.127 wit mask 255.255.255.224. In my LAN i use private
address
klas A 10.xxx.xxx.xxx with mask 255.0.0.0

I need to use dynamic NAT for users and static NAT for services. I
have
defined static NAT on public BorderManager's NIC: 217.17.41.97 to
10.xxx.xxx.xxx for mail server, created filter exceptions for service
and
ewerything work fine. Also static NAT for the next IP address from
this
range works fine. But now I need to use 217.17.41.100 for next service
and
this address is unreachable from Internet, of course I have defined
filter
exceptions for services, but still not work.
It seems to be a second subnet of four IP addresses: from 217.17.41.96

(network address), two addresses for services, and 217.17.41.99 as
broadcast.

I presume, the mask from previous subnet is readed by NAT.

How to force using IP 217.17.32.70 to connect to ISP and IP
217.17.41.XXX/27 for services via static NAT on the same server?
Is it possible to resolve this problem without using separate,
hardware
router and moving IP address 217.17.32.70 to that router?

Regards
Maja Stepowska