Hi Guys....i have installed a brick firewall with the apparently proper
rules to permit traceroute from one of the workstations to the internet. The
connection diagram is as follows:

Workstation (private address) ------ Internal Router -------- Brick Firewall
(using one to one NAT) -------- External Router -------Internet

When I try a traceroute from www.traceroute.org it works fine, i get all the
path, but when the traceroute is originated in the workstation, i lost all
the path, receiving an answer like:

1. first router (Internal Router)
2. *
3. *
4. *
.....
n. Destination 

The rules for the workstation are: Going out of the zone: everything
permitted , going in to the zone: just traceroute, NTtraceroute, and ICMP
(ping works fine)

I hope some of you can give an advise on this. THANKS!


_______________________________
Octavio Novoa Linares

Administrador de Servicios Internet
DIVEO Telecomunicaciones del Perú
Ph. 511-4224522 Ext. 2154 Fax 511-4220064
mail: [EMAIL PROTECTED]

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to