The iFolder-server (nw6.0-sp5-box) has single nic with ip
192.168.6.2 and secondary ipaddress 192.168.6.50 (where
iFolder runs fine from the inside!). The Brdm-Server
(private ip 192.168.6.3) has secondary ip 10.0.0.50 bound to
public interface (ip 10.0.0.1) with static nat established
on the public interface from 10.0.0.50 to 192.168.6.50.

Additional I set up following rules (EXTERN=public nic,
INTERN=privat nic):

TCP/IP Packet Forwarding Filters
Status: Enabled
Action: Deny Packets in Filter List

Filters:

#1
Packet Type: <ANY>
Source: <All Interfaces>
All Circuits
Any Address
Destination: EXTERN
All Circuits
Any Address
Comment: Added by BRDCFG to block all IP packets.

#2
Packet Type: <ANY>
Source: EXTERN
All Circuits
Any Address
Destination: <All Interfaces>
All Circuits
Any Address
Comment: Added by BRDCFG to block all IP packets.


Exceptions:

#1
Packet Type: new ifolder in (TCP, source 1024-65535,
dest 52080, ack disabled, statefull disabled)
Source: EXTERN
All Circuits
Any Address
Destination: INTERN
All Circuits
192.168.6.50

#8
Packet Type: new ifolder out (TCP, source 52080, dest
1024-65535, ack enabled, stateful disabled)
Source: INTERN
All Circuits
192.168.6.50
Destination: EXTERN
All Circuits
Any Address

When I access the iFolder-web-frontend from the internet
("http://mydomain.dyndns.com:52080"), this comes up fine in
the browser, the iFolder-Client is downloadable etc.. When I
try to connect the iFolder-Client to the same address
nothing happens (I had an error-message once with
"Authentification failed -105). I have the very strong
feeling, that I misunderstood something with static nat and
the belonging rules. Any hint for the right direction of
further research is highly welcome.

Sincerely

Karl