Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Networking Forum > Protocols and Routing
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Protocols and Routing IP, IPX and other protocol support

Reply
 
LinkBack Thread Tools
Old 01-21-2009, 03:46 PM   #1 (permalink)
Registered User
 
Join Date: Jan 2009
Posts: 1
OS: XP SP3


Need help with routing table entry...

Hi all, I hope someone can help me.

I have a Symantec Gateway Security 360 appliance as the external gateway/firewall on my network. The external wan port is configured to the static ip from my isp, and the internal lan address is 192.168.0.33/27.

I recently added another similar gateway device (Firewall/VPN 100), and configured the wan port on this device as 192.168.0.35/27 and connected it to a lan port on the 360. I set the internal lan of this unit to 192.168.0.1/27.

I added a routing table entry on the new gateway to forward packets to the first gateway, through the wan port (destination ip:192.168.0.33/27, gateway:192.168.0.35, interface:WAN), and I can communicate with that subnet from the new network.

However I've tried adding a number of different routing table entries on the original router, to allow communication from the original subnet to the new one, to no avail. For example, I've tried the following:
  • destination ip:192.168.0.1/27, gateway:192.168.0.35, interface:LAN
  • destination ip:192.168.0.1/27, gateway:192.168.0.35, interface:WAN
  • destination ip:192.168.0.1/27, gateway:192.168.0.33, interface:LAN
  • destination ip:192.168.0.1/27, gateway:192.168.0.33, interface:WAN

None of which allowed me to ping the new gateway from a computer on the original network. Using the first entry above, after checking the log on the Firewall/VPN 100, it seems to be blocking the ping as a port scan attack. See the below log entry:

UTC Time Message Source Destination Note
01/21/2009 21:58:12.83 Port Scan attack !!! 192.168.0.38 192.168.0.1 ICMP

I have the access filter set to "No Restrictions".

Does anyone have any thoughts? If you need more info, or if I haven't explained something properly, please let me know.



TIA,



Rob
rsullivan2704 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 01:24 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85