Re: [opensuse] Cannot access two internal nets with SuSeFirewall2



wanakom@xxxxxxxxx wrote:
Hi all,

My server with Opensuse 11.0 has 3 network adapters, eth3 as external
interface (public IP), eth0 (172.26.0.1) and eth2 (192.168.1.1) as
internal.

I am trying to link the two internal nets (172.26.x.x and 192.168.1.x)
so users from both networks can use the printers in both nets.

My SuSeFirewall2 config is as follow:
- FW_DEV_EXT="any eth3"
- FW_DEV_INT="eth0 eth2"
- FW_ROUTE="yes"
- FW_MASQUERADE="yes"
- FW_MASQ_DEV="zone:ext zone:int"
- FW_MASQ_NETS="172.26.0.0/16,192.168.1.0/24
192.168.1.0/24,172.26.0.0/16 192.168.1.0/24 172.26.0.0/16"
- FW_PROTECT_FROM_INT="no"

From network 172.26.x.x I can ping up to eth2 but no futher, and the
same with network 192.168.2.x
What about ssh ? Can you ssh from one net to another ?

My Google searches have not shown any result. What do I miss in my
configuration ?
Are you sure it's a firewall configuration ? It could be the
configuration of your print-server system. Many printing servers, by
default, only allow printing from the network it is connected to. Just
check it to make sure.
If you are sure it is a firewall configuration, could you provide the
firewall log right after a printing attempt ? Also state witch machine
is printing to witch machine.

Thanks,


--
Rui Santos
http://www.ruisantos.com/

Veni, vidi, Linux!

--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
For additional commands, e-mail: opensuse+help@xxxxxxxxxxxx



Relevant Pages

  • Re: Remote Access and Outlook Web Access on SBS 2003
    ... that's how the *Wizard* configured your network. ... NETWORKING CONFIGURATION SUMMARY ... Restrict default Web site of IIS to only respond to ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote Access and Outlook Web Access on SBS 2003
    ... SUMMARY OF SETTINGS FOR CONFIGURE E-MAIL AND INTERNET ... Internet Connection Wizard. ... network, firewall, secure Web site, and e-mail. ... NETWORKING CONFIGURATION SUMMARY ...
    (microsoft.public.windows.server.sbs)
  • Re: Windows 2K3 and Virtual Server 2005 guests NAT problem
    ... The first thing to check is that you have configured NAT correctly. ... internal network. ... in seeing the actual configuration and what your settings are. ... If you have configured DNS on the host and have set your vms to use ...
    (microsoft.public.windows.server.networking)
  • Re: ntpd fails on boot
    ... very complex network setups (multiple NICs of different brands, VLANs, ... If your network interface takes 60 seconds to come up and get configured ... daemons that rely on such connectivity, ... connected + configured during network configuration time, ...
    (freebsd-stable)
  • Re: Divide by zero error on printer access 0xC0000094
    ... > machine in the network. ... PC1 cannot print to this printer. ... > - It does not help to delete the printer configuration on ... > If I connect some old printer printing ...
    (microsoft.public.windowsxp.print_fax)