Gateway set up trials and tribulation
Has anyone managed to successfully, reliably and compatibly set up a Lion Server as an internet gateway?
AFAICT, there is no feature/assistant in the current Server.app to do this. Accordingly, I have downloaded the Server Administration tools and used the Gateway Assistant there (on the NAT service) as well as all the fiddling around that the Apple TechNote tells you to do in order to use 192.168.2.* on the LAN side, which is apparently the only working configuration (and despite the assistant telling you it is configuring 192.168.1.*!).
I can get this to work as well as it ever seemed to in Snow Leopard, but whatever configuration is produced is disrupted whenever Server.app is run. Unfortunately, you pretty much have to run Server.app with Lion Server, as so many of the settings previously available via the more advanced Server Admin Tools have now disappeared (web, user mail configuration to name but two). Of course some things like virtual hosting have gone altogether, but that's another story.
If I do run Server.app for some reason, by browser will stop loading pages on the server machine, and no internet traffic will be passed over the gateway from LAN clients. I have found that this can be fixed easily enough:
1. Reboot the server (make sure no Server.app is running at this point though!)
2. Run Safari's Network Diagnostics and follow the workflow up to/including the resetting of the WAN device (cable modem in my case)
The Diagnostics assistant will then 'green-light' your ISP, Internet and Server items (previously red) and you'll be back in business. LAN clients will eventually start working again - though I think maybe their DHCP addresses need refreshing first.
With the gateway stuff configured I have also noticed that Server.app always fails to add users to a fresh OD database (two errors: non-unique full name, or failed to complete transation, if my memory serves). The users do appear to get created, but perhaps not properly. I still have to experiment with this to find out if this really has anything to do with the gateway configuration, or something completely independent. My installaton of Lion Server is 'clean' btw, not a migration from Snow Leopard (though I have other issues with that workflow too).
PowerMac, Mac OS X (10.7)