Welcome to Linux Forums!

With a comprehensive Linux Forum, information on various types of Linux software and many Linux Reviews articles, we have all the knowledge you need a click away, or accessible via our knowledgeable members.

Linux Forum ArticlesLinux ForumsLinux Forum DownloadsLinux Hosts
Home|Register|FAQ|Member List|Calendar|Unanswered Posts|Forum Rules|Today's Posts|Advanced Search|
SEARCH FOR IN
Go Back   Linux Forums > GNU Linux Zone > Linux Networking
Reload this Page Firewall issue - after awhile external ip addr inaccessible locally
Linux Forums
Linux Forums
Welcome To The Linux Forums!
Welcome to Linux Forums. We pride ourselves in being one of the largest Linux communities on the web, we encourage you to REGISTER on our forums and participate in the community. There are over 150,000 members ready to answer your questions. JOINING US today will allow you to make new posts, get support, send messages to other members and submit downloads to our downloads directory and many other great features!

Linux Networking Hardware/Software related, Modems, Internet connection sharing, IPTables etc.

Reply
 
Thread Tools Display Modes
Old 06-16-2006   #1 (permalink)
q1001001
Just Joined!
 
Join Date: May 2006
Posts: 3
Firewall issue - after awhile external ip addr inaccessible locally

Hi,

I have a FC 3 box as my nat/firewall/router. It is running firestarter.
My nework looks similar to this:

,-------------------------,
,--|192.168.1.1 (Computer A) |
L | |-------------------------|
A |--|192.168.1.2 (Computer B) | eth1
N | '--------------------------'
| ,-------------------------,
'--|192.168.1.100 | inside
======| (ROUTER) |================
,--|11.22.33.44 | outside
| '-------------------------'
I |
S | eth0 / DSL
P \|/
v

Everything seems to work just fine. Then after it runs for awhile, (maybe an hour or so) something happens that effects the way it forwards
packets. The exact problem is that Computer A (or B for that matter)
is no longer able to access the box unless the 192.168.1.100 address is used.

For instance, a web access to 11.22.33.44 yields a message like this in /var/log/messasges:


May 30 15:21:11 lab kernel: Unknown InputIN=eth1 OUT= MAC=00:c0:f0:58:21:c1:00:40:ca:6d:b6:07:08:00 SRC=192.168.4.20 DST=xx.xx.xx.xx LEN=48 TOS=0x00 PREC=0x00 TTL=128 ID=9748 DF PROTO=TCP SPT=1193 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0

...obviously the xx.xx.xx.xx has been replaced to no show the real address.

Any idea why this would happen? I find it particularly strange since it works just fine for awhile.

A restart of firestarter fixes the problem temporarily...til it happens again.

- Mike
q1001001 is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT. The time now is 05:27 AM.




© 2000 - 2008 - All Rights Reserved - Property of  MAS Media

Content Relevant URLs by vBSEO 3.0.0