[Vyatta-users] Packets Wrongly forwarding

2008-03-06 Thread Go Wow
Hi My vyatta architecture is Now my eth0 is forwarding packets from eth0 to vlans by masquerading for internet access. Now some of the packets are getting wrongly forwarded to other vlans, for example look at this log *Quote:* Mar 6 23:59:47 localhost kernel: [vLAN20_Inbound 20 accept] IN=

Re: [Vyatta-users] vLAN Switch

2008-02-05 Thread Go Wow
Can someone help with with this, I have a switch withvLAN enabled from D-link DES-1226. I have my eth0 as 192.168.10.45 eth1 192.168.1.1 eth1.20 192.168.20.1 eth1.30 192.168.30.1 Now i want to access these 2 vLANs, what settings do i need to make in my

Re: [Vyatta-users] help: how to configure ssh login only one ip

2008-02-04 Thread Go Wow
Enable the ssh from command line for webgui and then add firewall settings to allow ssh from only one ip that you desire, rest all will be blocked automatically. ___ Vyatta-users mailing list Vyatta-users@mailman.vyatta.com

[Vyatta-users] vLAN Switch

2008-02-04 Thread Go Wow
Hey I Have configured vlan in vyatta and bought a vlan enabled switch its D-link DES-1226. I want to know when configuring the switch whether I need to give the VID in switch the same as the vLAN ID is created in vyatta? ___ Vyatta-users mailing list

[Vyatta-users] Problem with vyatta installation

2008-01-29 Thread Go Wow
Hi I have just install vyatta from livecd using the command install-system and everything went fine I got the message Done. But now when I removed my livecd and boot from HDD it doesnt read the partition table, its a brand new computer with Intel Dual Core, 1gb, RAM 80 GB SATA and Intel

Re: [Vyatta-users] Firewall: block internal telnet

2008-01-29 Thread Go Wow
last question because the answer wasn't specific to Vyatta. Beau Walker - CCNA, Linux+ -- *From:* Go Wow [mailto:[EMAIL PROTECTED] *Sent:* Tuesday, January 29, 2008 3:10 PM *To:* Beau Walker *Subject:* Re: [Vyatta-users] Firewall: block internal telnet Okay

[Vyatta-users] NAT:Almost Done

2008-01-29 Thread Go Wow
Yeah I can view my inside internal webserver through my router using NAT, what I cant do is to view the same webserver from internal lan. If I want to view it I have to issue its internal ip and I cant go through the router. My eth0 192.168.10.45 (acting as WAN) My eth1 192.168.1.1 (My Internal

[Vyatta-users] Firewall: block internal telnet

2008-01-29 Thread Go Wow
Hi I want to configure my firewall so that it blocks the internal systems from telnet'ing each other. My config is eth0 192.168.10.45 (acting as WAN) eth1 192.168.1.1 (Internal Lan) ___ Vyatta-users mailing list Vyatta-users@mailman.vyatta.com

Re: [Vyatta-users] Firewall: block internal telnet

2008-01-29 Thread Go Wow
-number 81 port-name http port-name https } } } } On 30/01/2008, Go Wow [EMAIL PROTECTED] wrote: How do I do this, my eth0 is WAN and eth1 is Internal LAN I want to unblock Internet for internal users and also i

Re: [Vyatta-users] Firewall: block internal telnet

2008-01-29 Thread Go Wow
And I have added it to eth0 for in and local traffic only. On 30/01/2008, Go Wow [EMAIL PROTECTED] wrote: This is my firewall config, look in rule 2 192.168.10.2 is my gateway, I added thinking that my internal LAN users would still have access to internet but there arent having can someone

[Vyatta-users] Squid Vyatta

2008-01-29 Thread Go Wow
I was searching the internet and found this script which can be used to get a complete url log using squid. http://www.benking.me.uk/2007/10/24/vyatta-forwarding-traffic-to-squid/ #!/bin/sh -e # # rc.local # # Modified to forward to squid cache # # This script is executed at the end of each

Re: [Vyatta-users] [Fwd: Re: Starting to get really frustrated... GRRR :D]

2008-01-29 Thread Go Wow
Nathan i can even view it, from inside LAN you cannot view it, if i remember correctly someone said when you try to enter on NAT'ted ip from inside network the router doesnt know the address where it needs to forward your request. Now look im not a networking guru and not even iptables guru so

Re: [Vyatta-users] [Fwd: Re: Starting to get really frustrated... GRRR :D]

2008-01-29 Thread Go Wow
Yeah I was about to say the same thing as Aubrey said, I had the same issue when i was trying to access the NATt'ed ip from inside the LAN, try to access it from outside any ip. ___ Vyatta-users mailing list Vyatta-users@mailman.vyatta.com

Re: [Vyatta-users] [Fwd: Re: Starting to get really frustrated... GRRR :D]

2008-01-29 Thread Go Wow
Another way would be to have these kind of servers (which needs to be access from LAN ) on another subnet. Looks feasible to me. ___ Vyatta-users mailing list Vyatta-users@mailman.vyatta.com http://mailman.vyatta.com/mailman/listinfo/vyatta-users

[Vyatta-users] help me with firewall

2008-01-29 Thread Go Wow
This is my complete configuration, I want to add firewall such that all the internal LAN should be able to access internet as there are having access now without firewall, I want only port 80 443 to be open to all (yes it should be accessible from anywhere) and lastly I have a webserver nat'ted on

[Vyatta-users] NAT: Website Access

2008-01-28 Thread Go Wow
Hi I have setup a website in my internal lan which is 192.168.1.0/24 ( 192.168.1.1 - 192.168.1.255) and my website is hosted on the system 192.168.1.77 on port 80 my eth0 is 192.168.10.45 and eth1 is 192.168.1.1 I want to access the website whenever I visit 192.168.1.1 on default port 80 and

Re: [Vyatta-users] NAT: Website Access

2008-01-28 Thread Go Wow
I forgot to mention it throw the error as Connection has timed out in mozilla, the system is up and running I can ping 192.168.1.77 from vyatta router. On 29/01/2008, Go Wow [EMAIL PROTECTED] wrote: Hi I have setup a website in my internal lan which is 192.168.1.0/24 ( 192.168.1.1