Re: Firewall HELP

From: Javier Gomez [SBS MVP] (javier_gomez_at_remove.this.engineer.com)
Date: 09/19/04


Date: Sun, 19 Sep 2004 14:07:20 -0400

Birger,

When you say that you get the "login to the firewall"... do you mean that
when you type the address you get the webpage to configure the router? I
would try deactivating all remote login options in the router (or at least
changing them to another port). You might be having a conflict between
forwarding the port and the router trying to use it for its remote config
page.

-- 
Javier [SBS MVP]
<< SBS ROCKS !!! >>
"Marina Roos [SBS-MVP]" <marina@roos.nodontwantspam.nl.com> wrote in message 
news:emzozfmnEHA.1160@tk2msftngp13.phx.gbl...
> Hi Birger,
>
> Yes, your firewall is the cause of your problems. You said earlier that 
> you
> set the WAN IP to your public IP. Normally you don't have to do that, as 
> it
> will pick up your public IP automatically.
>
> -- 
> Regards,
>
> Marina
> Microsoft SBS-MVP
>
> "birger" <btp56@mail.dk> schreef in bericht
> news:etEJLNmnEHA.3352@TK2MSFTNGP15.phx.gbl...
>> Marietta
>>
>> Could it be my ISP blocking the traffic. They donīt allow outgoing on
> SMTP.
>> But that would not block the traffic on other prots would it? Whenever I
> try
>> to enter my serversite from  a public PC all I get is the login to the
>> firewall, and when Iīve entered the ID and password I get a page saying
> that
>> the page Iīm asking for is not available.
>> But as Iīve said in an earlier mail if I plug the server directly to the
>> DSL-modem everything is OK. So I still think that itīs the firewall
> causing
>> me all the problems.
>>
>> Birger
>>
>> "Mariette Knap [SBS MVP]" <mariette@smallbizserver.local> skrev i en
>> meddelelse news:ukkBU4lnEHA.3172@TK2MSFTNGP10.phx.gbl...
>> > In news:OzaBKcknEHA.608@TK2MSFTNGP09.phx.gbl,
>> > birger <btp56@mail.dk> wrote:
>> >
>> > > My public IP is 195.41.27.3 (static).
>> >
>> > >telnet 195.41.27.3 25
>> > Connecting To 195.41.27.3...Could not open connection to the host, on
> port
>> > 25: C
>> > onnect failed
>> >
>> > Does tell me that your router is blocking port 25.
>> >
>> > >tracert 195.41.27.3
>> >
>> > Tracing route to 0xc3291b03.naenxx3.adsl-dhcp.tele.dk [195.41.27.3]
>> > over a maximum of 30 hops:
>> >
>> >   1    <1 ms    <1 ms    <1 ms  server.smallbizserver.local
> [192.168.18.2]
>> >   2     1 ms     1 ms     1 ms  1.2.3.4
>> >   3     7 ms     7 ms     6 ms  195.190.249.28
>> >   4     9 ms     8 ms    22 ms  42.ge-2-1-1.xr1.d12.xs4all.net
>> > [194.109.5.133]
>> >   5     8 ms     8 ms     9 ms  0.so-2-3-0.xr1.tc2.xs4all.net
>> [194.109.5.86]
>> >   6     9 ms     8 ms     8 ms  195.69.144.104
>> >   7    22 ms    21 ms    22 ms  pos6-0.2488M.kd4nxg2.ip.tele.dk
>> > [80.63.82.78]
>> >   8    25 ms    24 ms    24 ms  pos6-0.2488M.boanxg2.ip.tele.dk
>> > [195.249.7.229]
>> >
>> >   9    25 ms    25 ms    25 ms  pos6-0.2488M.albnxg1.ip.tele.dk
>> > [195.249.2.37]
>> >  10    26 ms    26 ms    26 ms  pos4-0.622M.naenxg1.ip.tele.dk
>> > [195.249.13.2]
>> >  11    28 ms    26 ms    26 ms  fe0-0.100M.naenxx3.ip.tele.dk
>> > [195.249.65.83]
>> >  12     *        *        *     Request timed out.
>> >  13     *        *        *     Request timed out.
>> >  14     *        *        *     Request timed out.
>> >  15     *        *        *     Request timed out.
>> >  16     *        *        *     Request timed out.
>> >  17     *        *        *     Request timed out.
>> >  18     *        *        *     Request timed out.
>> >
>> > Tracert fails too and ping is not possible. The last could be because 
>> > of
>> > your router blocking this but the trace is worrying.
>> >
>> > --
>> > Mariëtte Knap - MVP
>> > http://www.smallbizserver.net
>> > Take part in SBS forum:
>> > http://www.smallbizserver.net/Default.aspx?tabid=154
>> >
>> >
>> >
>>
>>
>
> 


Relevant Pages

  • Re: Block ssh login prompt for *.kr *.jp etc.
    ... >to be PROMPTED for a login. ... You probably want your whole machine to be invisible, not just the SSH ... Block as much as you can at the router. ... Consider running SSH on a non-standard port. ...
    (comp.security.ssh)
  • Cant Connect to XP
    ... wrt54g router, I cannot connect anymore and receive 'Generic Platform ... Web 0' login box, I've tried typing in router login, PC admin, even ... I've forwarded the port to 3389 using the url 1 below, ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: great article on NAT router security
    ... Regarding the remote login service of many NAT routers, I have set my port 80 ... I own a Linksys BEFSR41 router, and find that if I type in my WAN (Internet) IP ...
    (alt.computer.security)
  • Router hijacking
    ... I had a belkin's router with a simple packet filtering firewall. ... allow any connections to port 80 that comes from the external interface. ... My router also used to get a couple of port scans that it used to log. ... he hardly used to login himself) and tried to login and add the entry ( ...
    (comp.security.firewalls)
  • Re: Ports getting hammered?
    ... I recently installed ZoneAlarm and it is blocking attempts at port access. ... And you know this is happening with WAN Internet IPor LAN IP- your machines behind the router? ... You may have something else happeing like some kind of mis-config of the router and there are ports open or something like that or it's LAN traffic that ZA is blocking. ... Both computers are behind the SMC. ...
    (comp.security.firewalls)