Dear Remold and FB,
Guys, thank you for much for your responses.
FYI, FB was correct about his findings on my SGD response for Internet
users. Yes, even my friend from Singapore can login to my SGD page. I
found my mistake. I was connected to a secure vlan network which is a
bit secure.
Anyway, tks again.
# Yours Sincerely,
# Mohamed Ali Bin Abdullah.
Message: 5
Date: Fri, 22 Feb 2008 08:58:22 +0000
From: The Fat Bloke <[EMAIL PROTECTED]>
Subject: Re: [SGD-Users] SGD 4.4: Can't connect from outside network
To: Sun Secure Global Desktop Users mailing list
<[email protected]>
Message-ID: <[EMAIL PROTECTED]>
Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed
Mohamed,
On 22 Feb 2008, at 04:19, Mohamed Ali wrote:
> Dear forum users,
>
> I have installed SGD 4.4 in my SFT2000 server. The hostname is
> portal-01. Here are the features i have configured:
> 1) Securing Connections Between Client Devices and SGD Servers
> 2) Securing the Connection Between a Web Browser and a Web Server
> on the SGD Host
> 3) Firewall Traversal (Firewall Forwarding)
> 4) Configure SGD to use TCP port 443 for encrypted connections.
> 5) Configure each SGD Web Server in the array to bind to localhost:
> 443.
> 6) Configure each SGD server in the array to forward HTTP traffic
> to localhost:443.
> 7) I edited External DNS Names ( *:portal-01.esuria.com.bn &
> *:portal.esuria.com.bn )
> Note: Our FW admin has NAT the public IP 202.160.14.43 to
> 172.16.3.82( portal-01 ) and allowed port 80 & 443 only.
>
> Outcome:
> 1) I can successfully login to SGD via http and https from my
> internal network( 172.16.2.x )
> 2) I tried http to SGD, enter username and password but it failed
> with error message " Cannot connect to the server
> portal-01.esuria.com.bn:443 ".
> 3) Also from outside Network, i tried using https and this time i
> don't even see the username and password page but its came out with
> message " The connection has timed out ".
> 4) From outside Network laptop, in the command prompt, i typed
> "telnet portal-01.esuria.com.bn 80" or "telnet portal.esuria.com.bn
> 80" and the connection responded.
> 5) Outside network, i typed telnet portal-01.esuria.com.bn 443 or
> telnet portal.esuria.com.bn 443, the results shows " Could not open
> connection to the host, on port 443: Connect failed ".
To add more datapoints, I can successfully reach:
http:portal-01.esuria.com.bn/sgd/
https://portal-01.esuria.com.bn/sgd/
and
http://portal.esuria.com.bn/sgd/
https://portal.esuria.com.bn/sgd/
Obviously this is from the outside Network (Internet).
I can't look any further into this without credentials but thought
you should know that the Web server looks correct.
So I can't explain Outcome 3), 4) or 5).
Check your client-side proxy configuration and that you're resolving
names as expected on the outside network.
-FB
_______________________________________________
SGD-Users mailing list
[email protected]
http://www.filibeto.org/mailman/listinfo/sgd-users