Firewall2 not forwarding

From: Michael Soibelman (kindhornman_at_earthlink.net)
Date: 09/02/03


Date: Tue, 02 Sep 2003 18:59:03 GMT

Hello.

I've been using GNU/Linux for some time now and still having problems with
my LAN (or lack thereof..). I don't want to write my own firewall scrips
unless I absolutely have to! I have 2 computers each of which I can
connect to the internet directly. Therfore, I'm led to believe I at least
have the basic card configurations right. I have SuSE Firewall2 set up on
a SuSE 8.1 system. When I hook up the LAN via 4port hub the connection
works. I can ping from my box to the internal box. I can ping from my
internal box to my internal facing nic no problem. But I can't ping from
the internal box to my outward facing nic! Seems IP Forwarding is not
working. I've checked my Firewall settings several times but still no
succes. When the system boots up I do see the message "enabling IP
Forwarding". So I'm still not sure why forwarding (Masquerading) is not
working.

My setup is as follows:

My box-

Internal network
NIC 1
eth0
192.168.0.1
ip forwarding enabled

To Internet
NIC 2
eth1
192.168.1.1
ip forwarding enabled

Internal LAN box-
NIC 1
eth0
192.168.0.3
gateway address 192.168.0.1

Firewall 2 settings on my box using SuSE Firewal2 setup dialog.
External interface: ppp0 (I use DSL)
Internal interface: eth0
Services available on this server: none
Features: Allow traceroute:yes
          Forward traffic and do masquerading: yes
          Protect all running services: yes
          Protect from internal network: no
Log options: Log critical dropped packets: yes
             Log critical accepted packets:yes
             Log all dropped packets: no
             Log all accepted packets: no

I can provide any log or other messages if that will help!
Please, please, if anyone wants to tell me to read the @#$% manual...
FORGET IT! I've read lots of manuals, how-to, etc...The basics ARE
working! I'm pretty sure this is something particular to SuSE which is
just not obvious to me. I DID get the network up for a month or so ONCE
UPON A TIME AGO, but haven't been able to since. I think I just need
someone who is willing to help me trouble shoot this thing so I can do
more useful things as my business grows. I just got Aethera with
Whiteboard plug-in and need to start using it with my partner to develop
our products/business plan.

I hope someone wil help me :~)

I help others whenever I can!!!!

Thanks.



Relevant Pages

  • RE: Firewall / Internet Gateway Config Fails
    ... in the address of it's internet address so it can be routed on the net. ... Firewall / Internet Gateway Config Fails ... configured correctly shouldn't the lan clients be able ...
    (RedHat)
  • Re: Internet Connection Firewall
    ... You actually might want to keep the firewall on in a lan environment. ... TCP 445 - SMB over TCP ... > The built-in firewall is designed to be used only on a direct> connection to the Internet, not on any internal LAN connections. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: RD works on LAN not across Internet
    ... RD works fine within my LAN but not across the ... I turned off Windows Firewall and NIS on all computers. ... >>> settings to fully use DHCP to access the Internet. ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: Internet Connection Sharing AND networking?
    ... >> XP machine the same as that used on the windows 98 machine. ... I can get to the Internet through ... >I cannot disable the firewall for just the LAN connection. ...
    (microsoft.public.windowsxp.network_web)
  • RE: Firewall / Internet Gateway Config Fails
    ... Firewall / Internet Gateway Config Fails ... all the machines on the lan are already configured to ...
    (RedHat)