Modify ↓
Ticket #1188 (closed defect: invalid)
Firewall problems
| Reported by: | simplexion@… | Owned by: | juruen@… |
|---|---|---|---|
| Milestone: | Component: | firewall | |
| Severity: | normal | Keywords: | more_info_needed |
| Cc: |
Description
- Firewall doesn't allow "Road Warriors" access to much of the internal network. I was unable to access items on the internal network such as shared folders on internal client computers. I was also unable to Remote Desktop or SSH to internal windows clients.
I had to add a rule to allow the VPN subnet to all internal in the firewall.
- When I enabled logging of the Firewall I had no problems until about 24 hours later. After server restarts all users were able to access web pages via the proxy but after around 10-15 minutes this would fail again.
I noticed that some of the iptables settings looked a bit funny (relating to the logging of the Firewall). I disabled firewall logging in ebox-logs and this repaired the problem.
Attachments
Change History
Note: See
TracTickets for help on using
tickets.
It turns out that the problem with the firewall blocking access to the proxy wasn't to do with the log settings. I am able to use OpenVPN to connect to the network and then I have a few rules in the firewall to allow the OpenVPN to all internal ports as this doesn't work automatically. I am able to use the proxy via the VPN with this firewall rule in place. Internal users are losing access to the proxy continuously. I have now set a rule to allow all internal to ebox and all internal to external through the firewall and they have no problems using the proxy.