News: This forum is now permanently frozen.
Pages: [1]
Topic: Static route from 2 Monowall...can't pass traffic...  (Read 1828 times)
« on: December 29, 2008, 19:36:06 »
zot *
Posts: 9

Sorry for my english....
I have a problem for connect two different LAN whit two different Mono...I have read many post for this problem but no have found a solution...maybe a bug???
this is the schema:


              WAN                                           WAN
                 |                                                  |
LAN<---MONO1--->OPT1<----->OPT1<---MONO2--->LAN

************************************************
MONO1 LAN  192.168.10.0/24
MONO1 OPT1 192.168.21.1/30
Static Route:
Interface     Network          Gateway
LAN           192.168.20.0/24  192.168.21.2 
************************************************
MONO2 LAN  192.168.20.0/24
MONO2 OPT1 192.168.21.2/30
Static Route:
Interface     Network          Gateway   
LAN           192.168.10.0/24  192.168.21.1 
************************************************

if I ping from a host on  MONO2 LAN to a host on MONO1 LAN  in the Firewall log I have:

Act   Time                          If          Source                Destination                              Proto
X      18:52:50.510923     OPT1    192.168.20.11    192.168.10.10, type echo/0     ICMP

if I ping from a host on MONO1 LAN to a host on MONO2 LAN I have the same log on the other monowall

If I try to ping from Mono Web interface trought the OPT1 interface all is OK,I can ping a host on the other MONO LAN interface.I have create a rule for all the interface that pass all traffic.
I think that the problem is some default rules on Monowall that block a traffic from an interface whit different network.
I try to disable/enable a "Bypass firewall rules for traffic on the same interface" on "System: Advanced setup" but is the same.
I have a 1.233 version...some help??!!
« Reply #1 on: December 30, 2008, 12:58:53 »
zot *
Posts: 9

I found a solution :the static routes should go on the OPT interfaces, not on the LAN...
thank's to all.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines