Welcome, Guest. Please login or register.
Did you miss your activation email?
Sunday 22 December 2024, 11:42:01 pm

Login with username, password and session length

The Latest Endian Firewall is now available for download HERE
14262 Posts in 4377 Topics by 6517 Members
Latest Member: Sandro
Search:     Advanced search
+  EFW Support
|-+  Support
| |-+  General Support
| | |-+  routing between network card
0 Members and 4 Guests are viewing this topic. « previous next »
Pages: [1] Go Down Print
Author Topic: routing between network card  (Read 21522 times)
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« on: Wednesday 16 September 2009, 11:00:56 pm »

Hi,

This is a summary of our situation :

We have a modem routeur IP 10.0.0.1

I have endian installed with two network card 10.0.0.65 (main br) gw 10.0.0.1  and 10.0.2.1 (eth1)

I have a test server with this IP config :

IP 10.0.2.10
gw 10.0.2.1


With that we have a lot of servers and XP Clients.
Servers and computers using the old gateway (10.0.0.1) can communicate to this range 10.0.2.x

BUT my test server can only ping both IP address of the gateway.
for the rest it doesn't work.

With a traceroute I get

1/ 10.0.2.1
2/ timed out
...


It seems that endian can relay to the another network card ??

Someone have an idea, what I'm missing ??

Thank you,
Regards,

Frédéric

Logged
StephanSch
Full Member
***
Offline Offline

Gender: Male
Posts: 57


« Reply #1 on: Friday 18 September 2009, 03:59:37 am »

Are your clients behind efw or connected to the modem?
Did you accept the ping from green to red in the efw firewall?
What subnet mask has the server/efw/modem?
Logged
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« Reply #2 on: Friday 18 September 2009, 04:06:19 am »

Hi,

Thank you for your response.

Both, I have client connected to the modem directly and some "test" computer connected behind efw, but I only have a problem with computer connected behind endian.
For the other I have no problem.

The firewall is completly disabled. I set a rule Allow ANY from ANY !

Everyone is one the same subnet mask 255.255.255.0

Regards,
Frédéric

Logged
StephanSch
Full Member
***
Offline Offline

Gender: Male
Posts: 57


« Reply #3 on: Friday 18 September 2009, 04:11:08 am »

which clients of them you cannot ping to?
Logged
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« Reply #4 on: Friday 18 September 2009, 04:13:06 am »

Computers behind efw cannot ping computers connected to the modem.
But the other way is working perfectly ...

Fred
Logged
StephanSch
Full Member
***
Offline Offline

Gender: Male
Posts: 57


« Reply #5 on: Friday 18 September 2009, 04:53:05 am »

It should work if the clients connected to the modem have xactly the same ip (no vlan) as gateway as the efw has

Is there a firewall on the modem? What modem/router is it?
Logged
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« Reply #6 on: Friday 18 September 2009, 05:04:41 am »

This is a simple modem Linksys ADSL2, I will check tommorow morning for the firewall !

Fred
Logged
StephanSch
Full Member
***
Offline Offline

Gender: Male
Posts: 57


« Reply #7 on: Friday 18 September 2009, 05:38:28 am »

Looking at the manual of the ADSL2 it seems it has no real firewall.
Another possibility: the firewall on the clients (both nets possible).

Are the clients behind efw able to access internet?
Logged
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« Reply #8 on: Saturday 19 September 2009, 03:01:36 am »

Hello,

I just check, there is no active firewall running on the modem.
PC's behind efw cannot acces internet.

There is also a strange thing. I set a new server (Windows) with the same IP configuration and everything is working fine???
Is there a special or route - forward that I have to set up on efw ?

Thank you
Frederic
Logged
mrcomponent
Jr. Member
*
Offline Offline

Posts: 7


« Reply #9 on: Saturday 19 September 2009, 07:36:22 am »

YES, I found the solution !!

The problem is with iptables... I don't know why there is a difference between the graphical interface and iptables ??
Is it the same or an added program.
 
I try this and everything is working fine (Internet,ping, ...)

Latest problem, when I restart I have to set those command again... Does someone have more experience with that ??

# iptables -X
# iptables -t nat -F
# iptables -t nat -X
# iptables -t mangle -F
# iptables -t mangle -X
# iptables -P INPUT ACCEPT
# iptables -P FORWARD ACCEPT
# iptables -P OUTPUT ACCEPT

Logged
Pages: [1] Go Up Print 
« previous next »
Jump to:  

Page created in 0.109 seconds with 19 queries.
Powered by SMF 1.1 RC2 | SMF © 2001-2005, Lewis Media Design by 7dana.com