Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > Network Security: Firewall, NAT, QoS, IPS and more

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 02-09-2004, 08:43 PM
Junior Member
 
Join Date: Jul 2002
Location: Miami Beach, Fl USA
Posts: 6
Default 2 3Com 5000 Routers, point to point T1, Comm issue

We are in the middle of a nightmare and are begining to think that the ASL is getting in our way.

We have 3 T1's, a PRI connected to a 3Com NBX100 for voice
We have a T1 for data connected to the ASL
Lastly we have a 3rd T1 that is a point to point to our remote office

The PRI is working fine...
The Data T1 is working fine...

The point to point checks out wtih Bell South, so it's up.

We have both 3com routers configured properly and we can't get any communication going between the two routers.

ASL= 10.0.0.1
Server = 10.0.0.2

Router 1 is set for
E0 10.0.0.5
S1 192.168.100.1
default gateway is set for 10.0.0.1

Router 2
E0 10.0.1.1
S1 192.168.100.2
Default gateway is set to go out thru S1


Is there any chance that the ASL is not allow the traffic to go between the point to point T1? Can it do that? Do I need to do something to the ASL for traffic to go across a point to point?

Does the ASL monitor all traffic on the network?

Because the default gateway on router 1 (where the ASL is physically located) is set to 10.0.0.1, the same as the ASL, does that possibly stop the router from working properly?

Any help would be appreciated


Reply With Quote
  #2 (permalink)  
Old 02-10-2004, 09:55 AM
Wizard
 
Join Date: Jun 2003
Location: Germany
Posts: 856
Default Re: 2 3Com 5000 Routers, point to point T1, Comm i

Why is the Server (10.0.0.2) in the same subnet as ASL (10.0.0.1)? Normally the Server should be behind the ASL, so the ASL is able to protect the Server.

In ASL's Kernellogfile you will find all the droped packets. A traceroute and a packetdump could help you to find the problem. Tcpdump for ASL is included in the PlusPack .
Reply With Quote
  #3 (permalink)  
Old 02-10-2004, 06:27 PM
AJo AJo is offline
Senior Member
 
Join Date: Mar 2002
Location: sweden
Posts: 140
Default Re: 2 3Com 5000 Routers, point to point T1, Comm issue

Dunnu if I got this layout right.
<font class="small">Code:</font><hr /><pre>
----- ASL (10.0.0.1)
|
|
|
R1 (E0:10.0.0.5)
| (S1:192.168.100.1)
|
|
--- (E0:10.0.1.1) --- R2 (S1:192.168.100.2)
</pre><hr />

Or am lost?
And the communication fails where?
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 03:37 PM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.