Modify

Ticket #1188 (closed defect: invalid)

Opened 4 years ago

Last modified 4 years ago

Firewall problems

Reported by: simplexion@… Owned by: juruen@…
Milestone: Component: firewall
Severity: normal Keywords: more_info_needed
Cc:

Description

  1. Firewall doesn't allow "Road Warriors" access to much of the internal network. I was unable to access items on the internal network such as shared folders on internal client computers. I was also unable to Remote Desktop or SSH to internal windows clients.

I had to add a rule to allow the VPN subnet to all internal in the firewall.

  1. When I enabled logging of the Firewall I had no problems until about 24 hours later. After server restarts all users were able to access web pages via the proxy but after around 10-15 minutes this would fail again.

I noticed that some of the iptables settings looked a bit funny (relating to the logging of the Firewall). I disabled firewall logging in ebox-logs and this repaired the problem.

Attachments

Change History

comment:1 Changed 4 years ago by simplexion@…

It turns out that the problem with the firewall blocking access to the proxy wasn't to do with the log settings. I am able to use OpenVPN to connect to the network and then I have a few rules in the firewall to allow the OpenVPN to all internal ports as this doesn't work automatically. I am able to use the proxy via the VPN with this firewall rule in place. Internal users are losing access to the proxy continuously. I have now set a rule to allow all internal to ebox and all internal to external through the firewall and they have no problems using the proxy.

comment:2 Changed 4 years ago by anonymous

  • priority changed from normal to high

comment:3 Changed 4 years ago by juruen@…

  • Keywords more_info_needed added

Can you reproduce this issue with the latest version?

comment:4 Changed 4 years ago by juruen@…

  • Status changed from new to closed
  • Resolution set to invalid

Closing ticket because we haven't got an answer.

Please, reopen it if you experience this issue again.

View

Add a comment

Modify Ticket

Change Properties
<Author field>
Action
as closed
The resolution will be deleted. Next status will be 'reopened'
Author


E-mail address and user name can be saved in the Preferences.

 
Note: See TracTickets for help on using tickets.