EFW Support

Support => General Support => Topic started by: rica01 on Saturday 11 June 2011, 05:49:32 am



Title: cant access servers on orange
Post by: rica01 on Saturday 11 June 2011, 05:49:32 am
Hi

i have a webserver running on HOST1:8010

and i added the rules on NAT and on
Uplink main    TCP/8010    ALLOW    HOST1 : 8010
ALLOW from:    <ANY>


Outgoing Traffic (attached below)
11    GREEN BLUE ORANGE    ->      RED    TCP/8010    ALLOW




Yet i cant access them on the browser when i got to http UPLINKUP:8010

could somebody tell me what am i doing wrong? :P thanks



Title: Re: cant access servers on orange
Post by: rica01 on Tuesday 28 June 2011, 12:33:37 am
hello?


Title: Re: cant access servers on orange
Post by: susantadutta84 on Tuesday 28 June 2011, 02:36:35 pm
Dear,

First tell me,in which zone ip 192.168.0.10 is reside.
2nd) do you want to access you internal server(port 8010) for internet.
3rd) do you want to access you server from others zones(blue/orange/green)


Title: Re: cant access servers on orange
Post by: rica01 on Tuesday 28 June 2011, 03:39:41 pm
Dear,

First tell me,in which zone ip 192.168.0.10 is reside.
2nd) do you want to access you internal server(port 8010) for internet.
3rd) do you want to access you server from others zones(blue/orange/green)


sure my  thanks for the help:

1) that IP is in the Orange zone
2) yes; the idea is taht 192.168.0.10:8010 is visible from internet through the firewall
3) yes =)


Title: Re: cant access servers on orange
Post by: susantadutta84 on Tuesday 28 June 2011, 08:09:31 pm
first , create a nat policy with position - first to allow web server access from wan/internet.
check the screenshot for the same.

2nd)create outgoing policy for 192.168.0.10 to allow internet access.

source - 192.168.0.10    destination - RED    service - <ANY>

** check the gate ip for host-192.168.0.100 ,gateway ip should be orange interface ip of endian firewall.also check that could you access internet from host 192.168.0.10.

picture 2.png (your attachment) rule is not usefull here.

3rd) create a inter zone traffic policy to allow web server access from green and blue zone to orange zone and vice versa.

see screen shot for example.

now check and inform me.


Title: Re: cant access servers on orange
Post by: susantadutta84 on Tuesday 28 June 2011, 08:11:36 pm
screenshot


Title: Re: cant access servers on orange
Post by: susantadutta84 on Tuesday 28 June 2011, 08:12:02 pm
screenshot


Title: Re: cant access servers on orange
Post by: rica01 on Thursday 30 June 2011, 05:41:21 am
Thanks for your help susantadutta84.

Im not able to fix this still i have these rules (on the attachs). Right now i have 2 servers one running on port 80 on blue zone. That one works with the external IP: 200.9.33.205 and another server on port 8010 on orange zone, this last one i can't access it from the external IP: 200.9.33.205:8010. Im not pretty sure what is wrong here...


PS: u wont be able to access this site from Internet, just from Internet2 or CLARA( but i can :P yet i cant get to server on orange).




Title: Re: cant access servers on orange
Post by: rica01 on Thursday 21 July 2011, 08:25:39 am
=(


Title: Re: cant access servers on orange
Post by: daehnomel on Thursday 22 December 2011, 08:50:45 am
Rica,

did you ever get this figured out? I am having a similar issue.  I have several servers in orange zone that I can't configure for external or even inter zone access from green.  I 've read the endian manual firewall and network sections several times to no avail.  It seems like access from green to orange is open by default but does this mean that oragne will receive packets but not be able to send any back? Also the language used to secribe port forwarding in the manual is atrocious.  It's like endian engineers want you to call them or something.


Title: Re: cant access servers on orange
Post by: rica01 on Thursday 22 December 2011, 02:41:35 pm
no i haven't but due to other problems, ihad to leave this behind but i haven0t been able to fix it. maybe we can try to make it work toghter?