Old 03-28-2011, 02:03 PM   #1 (permalink)
Newbie
 
Join Date: Mar 2010
Location: Desert Southwest
Posts: 10
jclambert1 is on a distinguished road
Default Sentinel LM problem

I am just using Free version for now of untangle 8 for testing.
I put this unit in place between router and internal network. Works great.
Well, that is aside form one thing. I have a Sentinel LM that seems to be somehow blocked by the default configuration (other subnets can no longer get a license from the server). The LM uses: UDP Port 5093
I am using :
Phish
Spyware
Web Lite
Virus
Intrusion
Protocol C
Ad blocker
Attack Blocker

When I remove untangle from the system, it works fine. I have not found this Sentinel LM in any of the logs so far. Any hints?
How would I open UDP 5093? I would expect this under firewall, but I am not using this module.
jclambert1 is offline  
Old 03-28-2011, 02:15 PM   #2 (permalink)
Untangle Junkie
 
dmorris's Avatar
 
Join Date: Nov 2006
Location: San Mateo, CA
URLs submitted: 10
Posts: 10,613
dmorris is on a distinguished road
Default

Hi jclambert. welcome to the forums.

There are no ports closed by default (egress/outbound). You don't need to do anything.
I would start by describing your network configuration and untangle configuration.
__________________
Attention: Support and help on the Untangle Forums is provided by
volunteers and community members like yourself.
If you need Untangle support please call or email support@untangle.com
dmorris is offline  
Old 03-28-2011, 02:59 PM   #3 (permalink)
Newbie
 
Join Date: Mar 2010
Location: Desert Southwest
Posts: 10
jclambert1 is on a distinguished road
Default

Untangle is set as bridged mode. Inline between router/firewall and internal switch.
i.e. Internet - Router - Untangle - Switch
Phish Blocker: Scan SMTP (quarantine), Pop3 (Mark), IMAP (Mark)
Spyware Blocker: Blocks Spyware ans Ad URLs, Blocks tracking and ad cookies, block malware activex install
Web Filter Lite: Blocks Proxy and Porn, flags some others
Virus Blocker: scan http, email (remove), scan ftp
Intrusion Prevention:
Protocol Control: none blocked... many logged
Ad Blocker: defaults
Attack Blocker: default
OpenVPN is installed but not configured.
jclambert1 is offline  
Old 03-28-2011, 04:36 PM   #4 (permalink)
Untangle Ninja
 
dbunyard's Avatar
 
Join Date: Nov 2008
Location: Westerville, Ohio, USA
Posts: 1,021
dbunyard is on a distinguished road
Default

The interfaces could be switched also.

But a drawing of your network would be very helpful, as Dirk suggested.
__________________
Dan

You may one day find something interesting here. Today is not that day. Tomorrow isn't looking too good either.
dbunyard is offline  
Old 03-28-2011, 06:54 PM   #5 (permalink)
Newbie
 
Join Date: Mar 2010
Location: Desert Southwest
Posts: 10
jclambert1 is on a distinguished road
Default Diagram

simple Image attached. The problem exists on connection from switches 1-3. I did not have anything available on switch 4 (Voip only)
Attached Images
File Type: jpg Network SU.jpg (51.3 KB, 12 views)

Last edited by jclambert1; 03-28-2011 at 07:01 PM.. Reason: add info
jclambert1 is offline  
Old 03-28-2011, 06:58 PM   #6 (permalink)
Untangle Ninja
 
dwasserman's Avatar
 
Join Date: Jun 2008
Location: Argentina
URLs submitted: 57
Posts: 3,634
dwasserman is on a distinguished road
Default

And the problem is with traffic between vlan1 and vlan2?
__________________
The world is divided into 10 kinds of people, who know binary and those not
dwasserman is offline  
Old 03-28-2011, 07:02 PM   #7 (permalink)
Newbie
 
Join Date: Mar 2010
Location: Desert Southwest
Posts: 10
jclambert1 is on a distinguished road
Default

If the interfaces were switched, I would be blocked from accessing the untangle interface (by default) from what is actually an internal IP, right?
jclambert1 is offline  
Old 03-28-2011, 07:04 PM   #8 (permalink)
Untangle Ninja
 
dbunyard's Avatar
 
Join Date: Nov 2008
Location: Westerville, Ohio, USA
Posts: 1,021
dbunyard is on a distinguished road
Default

So where does the problem lie in your network? You say from 1-3 but those don't even pass through the Untangle box for access.
__________________
Dan

You may one day find something interesting here. Today is not that day. Tomorrow isn't looking too good either.
dbunyard is offline  
Old 03-28-2011, 07:07 PM   #9 (permalink)
Newbie
 
Join Date: Mar 2010
Location: Desert Southwest
Posts: 10
jclambert1 is on a distinguished road
Default

Quote:
Originally Posted by dwasserman View Post
And the problem is with traffic between vlan1 and vlan2?
Sorry, the problem is from other subnets. Router (shown) connects to other offices via VPN. These locations can no longer see the server hosting the Sentinel LM located on switch 1. Remove Untangle and replace with a Ethernet cable and all works well.

Can't see what's in my brain huh? Sorry, I failed to explain things well enough...
jclambert1 is offline  
Old 03-28-2011, 07:18 PM   #10 (permalink)
Untangle Ninja
 
dbunyard's Avatar
 
Join Date: Nov 2008
Location: Westerville, Ohio, USA
Posts: 1,021
dbunyard is on a distinguished road
Default

I'm sorry if I'm seeming ignorant here but I want to make sure I understand your setup. So the problem is the flow of traffic like this, right:
|Remote site|<==>|Internet|<==>|Local Router|<==>|Untangle|<==>|LAN|
The remote sites cannot access a server in the LAN even though a VPN is established to the local router? Sorry for the questions, I just want to make sure I understand.
__________________
Dan

You may one day find something interesting here. Today is not that day. Tomorrow isn't looking too good either.
dbunyard is offline  
Closed Thread

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 03:10 AM.


© 2010 Untangle, Inc. All Rights Reserved.   SEO by vBSEO 3.6.0 PL2