News: This forum is now permanently frozen.
Pages: [1]
Topic: Allow ALL traffic coming from LAN to go outbound (regardless of IP)  (Read 2120 times)
« on: October 06, 2007, 13:45:21 »
SomaFM *
Posts: 20

I am looking for a way to allow any traffic coming from my LAN to be able to access the WAN without being blocked. My network is currently set up with 1 LAN (192.168.1.1/24), and the WAN is hooked into my cable modem.

If I use raw sockets to send a single udp packet that comes from a spoofed ip that isn't on my lan (eg: 12.13.14.15), it is blocked at m0n0wall. What could I do to allow this traffic (and any traffic) to go outbound to WAN even though it isn't an actual IP coming from the LAN? I have tried setting up a LAN firewall rule to allow all source IPs to access all destination IPS, but that didn't work. Any other rules I can try, or is there something else I should be doing? Thanks  Cool.


* test.jpg (12.04 KB, 559x83 - viewed 297 times.)
« Reply #1 on: October 08, 2007, 20:19:29 »
Max2950 ***
Posts: 120

Some spoofed IP which resides outside your m0n0wall's subnet wont be able to send anything on the WAN.... This simply how IP works......
« Reply #2 on: November 02, 2007, 03:53:05 »
cmb *****
Posts: 851

m0n0wall has built in anti-spoofing that can't be disabled. If traffic is sourced from an IP that isn't inside your network it's dropped, and you can't disable that.

I can't imagine what legit reasons you have to spoof traffic to the Internet anyway.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines