EFW Support

Support => General Support => Topic started by: bernieL0max on Wednesday 12 October 2011, 10:29:12 am



Title: ARP Spoofing Protection?
Post by: bernieL0max on Wednesday 12 October 2011, 10:29:12 am
Hi,

Does anyone know how to disable ARP Spoofing Protection?


My situation;
I have an IPSec admin VPN to all of my clients sites; all sites including my own are using Endian Community Edition 2.4, this solution is working well for all but 1 of my sites.

My cable internet connection has the IP 20x.20y.6z.58/24 with the gateway 20x.20y.6z.1
My client's cable internet connection with the same provider has the IP 20x.20y.6z.104/24 with the gateway 20x.20y.6z.1
both IPs are assigned via the ISPs dhcp

The netmask obviously means that the router will expect the client's site to be on the same switched network segment and will not send packets via the gateway.

The cable provider is telling me that the modems will communicate directly, but that I need to find and disable a feature called "ARP Spoofing Protection" in the routers... but I am having no luck finding any such setting in the Endian GUI.



Note that both of these systems are VMs running under ESXi 4.1, so this may be a setting I need to find in the virtual switch config, which is where I'm about to go digging... :)


Hoping someone can help me... Thanks in advance :)


Title: Re: ARP Spoofing Protection?
Post by: bernieL0max on Wednesday 12 October 2011, 11:16:48 am
At this stage I think I might be onto something with ESXi's 'Promiscuous Mode' in the vSwitch that the cable modem & VM connect to; I wont know for sure until I set it at both sites.