GroupBrowser  




Go Back   GroupBrowser > Novell Newsgroups > Border Manager > Border Manager Packet Filtering
User Name
Password
 
 
Thread Tools Search this Thread Display Modes

Why isn't this exception working?
Old 11-05-2008, 03:36 PM #1
seth turner 04
Guest
 
Status:
Posts: n/a
Default Why isn't this exception working?


I have and exception that's supposed to allow outbound traffic on port
1500. This is to allow a server running some testing software for our
students to go out and talk with the software developers master update
server and download any updates for the program.

I made the following exception to try and do this, but it's not
working.

Source Interface Type: Interface
Source Interface: Private (Private)

Destination Interface Type: Interface
Destination Interface: PUBLIC (Public)

Patcket Type: A+nywhere Protocol: TCP
Src Port(s): <All> Dest Port(s): 9500
ACK Bit Filtering: Disabled Stateful Filtering: Enabled

Src Addr Type: Any Address
Dest Addr Type: Any Address
Logging: Disabled


So what do I not have configured right? All I need is for our server to
be able to reach the master update server and then it downloads the
service packs over port 80.


--
seth_turner_04
------------------------------------------------------------------------
seth_turner_04's Profile: http://forums.novell.com/member.php?userid=7098
View this thread: http://forums.novell.com/showthread.php?t=349924

  Reply With Quote

Re: Why isn't this exception working?
Old 11-10-2008, 08:26 PM #2
Craig Johnson
Guest
 
Status:
Posts: n/a
Default Re: Why isn't this exception working?

In article <seth_turner_04.3if3i0@no-mx.forums.novell.com>, Seth turner
04 wrote:
> So what do I not have configured right? All I need is for our server to
> be able to reach the master update server and then it downloads the
> service packs over port 80.
>

Still working on this?

The filter exception looks fine to me, which indicates the following
possibilities:

1. Dynamic NAT not enabled
2. Incorrect/missing default gateway on internal host
3. Other port numbers involved
4. Port 9500 working fine, but if traffic is then pulled down on port 80,
that traffic may either need another filter exception (no proxy being
used), or an access rule (proxy being used). Proxy authentication also
might come into play here.

Does this work if you unload ipflt for a test?

Craig Johnson
Novell Support Connection SysOp
*** For a current patch list, tips, handy files and books on
BorderManager, go to http://www.craigjconsulting.com ***


  Reply With Quote
 


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes





Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Forum Jump




Adobe Newsgroups | Software Newsgroups


Powered by: vBulletin Version 3.0.7
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
© 2003-2004 All Rights Reserved GroupBrowser LLC.