|
|
#1 (permalink) |
|
Newbie
Join Date: May 2009
Posts: 3
|
Greetings all, I had my Cisco PIX die this morning, and I had been thinking about an UT install anyway. So far, I can browse the Internet from the UT machine, but none of the work stations or servers can see the Internet. They can see each other, but not the UT machine. Before I start, I have searched forums and wiki and am still lost.
Setup - Netopia modem in bridge mode, 5 static ips. UT machine does the PPPoe log in. External - wasn't sure what to Alias IPs, but I do have my XXX.XXX.XXX.XXX/29 subnet in there. Internal interface I have as static, Primary IP address is the UT machine, 192.168.1.254/32 No IP address alias's NAT policies for two internal servers as xxx.xxx.xxx.xxx/32 and point to an external source address Port forwards are standard for email and web, although those aren't working either, since the machines can's see the net. hostname edge.xxxxx.local No DHCP or DNS as that is done on the server. Luckily no one is in today except me, but I need to get this fixed. Untangle is not answering there phones today, probably because of the holiday. Is there someone out there that can help? Thanks! Stan M |
|
|
|
|
#2 (permalink) |
|
Master Untangler
Join Date: Jun 2009
Location: Westminster, CO
Posts: 481
|
I'm brand new to UT and I don't know too much about it. Are you doing the NAT on UT or on the Netopia box? If you're doing that on the modem, is UT in bridge mode or routed mode?
I'm guessing that you're doing NAT on UT (which I haven't run across yet) and it's in routed mode. Is that correct? |
|
|
|
|
#7 (permalink) |
|
Master Untangler
Join Date: Jan 2009
Location: Eugene, OR
Posts: 579
|
Your internal LAN segment needs to be on the same subnet as your actual LAN, so if you are running say 192.168.0.0/24 on all internal machines then your internal IP should be sometihng like 192.168.0.x/24. By setting it at 32 it is not in the same subnet as your LAN and will not talk to it at all.
You add your external IP's to be aliased under the External Interfaces tab. Once those are there, then you can use NAT to send your servers traffic out via those, as well as setup the port forwards you noted. For the firewall do you have the default set for pass or block? If it is block then you need to make sure you have rules in there to allow traffic to pass. If you have the default as pass, for now nothing else would be needed to get it working. Your NIC card probably has nothing wrong with it, if you truely had /32 in your LAN IP address, different subnet means no communication. Last edited by raditude; 07-03-2009 at 08:58 PM.. Reason: Added alias info/firewall & NIC |
|
|
![]() |
| Thread Tools | |
|
|