News: This forum is now permanently frozen.
Pages: [1]
Topic: New firewall rules don't work  (Read 1682 times)
« on: February 08, 2013, 08:25:01 »
tronz *
Posts: 8

Tried to install Ekiga and ran into an issue with port forwarding:

http://img577.imageshack.us/img577/2802/ekigaporterror.jpg

followed their instructions:

http://wiki.ekiga.org/index.php/Enable_port_forwarding_manually

and set up new firewall rules based on some old ones:

http://img811.imageshack.us/img811/304/firewallrules3.jpg

but still nothing worked.  So I checked if the new ports were, in fact, open using PFPortChecker1.0.39 (from portforward.com) and nope...  the ports that were supposed to be opened by new rules were still closed.  So, made some more rules based on the ones that always worked just fine (and still do) just to check with PFPortChecker
and again no luck.  Therefore, old rules work, new rules can be created and appear in the rules table but do NOT work.
The only recent changes to my LAN setup was the upgrade to m0n0 1.34 and switching all comps to static IP's.  After turning off DHCP server my comps could see each other OK but the box that ended up on a new rule (for bit torrent) lost the ability to download (I guess the matter should have attracted my attention there and then...).  I am really out of ideas so any help is greatly appreciated.
« Reply #1 on: February 08, 2013, 17:40:32 »
Fred Grayson *****
Posts: 994

In addition to Firewall Rules you also need the associated Firewall: NAT: Inbound rules. Do you have them?

--
Google is your friend and Bob's your uncle.
« Reply #2 on: February 09, 2013, 05:11:26 »
tronz *
Posts: 8

I am not doing NAT (never had it set up; so my new problem cannot be the result of that).
« Reply #3 on: February 09, 2013, 05:56:36 »
Fred Grayson *****
Posts: 994

Your destination address is 192.168.1.199 which is a private IP address. You are doing NAT somewhere.

How is your m0n0wall WAN set up?

--
Google is your friend and Bob's your uncle.
« Reply #4 on: February 10, 2013, 02:17:07 »
tronz *
Posts: 8

You were right - it was a NAT issue.  Apparently I set up my NAT so long ago that I forgot all about it.

Thank you and sorry for the confusion.
« Reply #5 on: February 10, 2013, 02:29:28 »
Fred Grayson *****
Posts: 994

Yer welcome. I guess you have it all working now?

--
Google is your friend and Bob's your uncle.
« Reply #6 on: February 10, 2013, 06:48:23 »
tronz *
Posts: 8

Still trying to call someone with Ekiga but all the right ports are testing as open so its no longer m0n0wall's fault Smiley

Thanks again for pointing me in the right direction.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines