Hi! I'm running ASL 3.2 Final Release and have some basic problems with my setup:
- Cablemodem, working as bridge->10mbit Hub->ext. interface ASL
- 100mbit Hub on internal interface->PC
- dyn. IP on ext. ASL Interface (ext)
- ip on internal if: 192.168.1.10 (eth0)
- preference order gw: 1. ext, 2. eth0
- Private network masqueraded at ext. interface (masquerading->eth0_network_->ext)
- DHCP Server for eth0_network_, pool 192.168.1.100-.253, forwarding dns 1+2 from provider, gw .1, and a static mapping for my workstation
- http proxy transparent, for eth0_network_
- dns proxy for eth0_network_ forwarding dns 1+2 from provider
- socks proxy running for eth0_network_
- ident relay with forward connection
- NO smtp relay since no own mailserver internal.
- icmp on firewall and forwarding ->OFF
Sorry to list ALL this but I really can't see the point of the problem. The DHCP client part works, I get a dyn. IP to the ext. Interface. The DHCP server works also fine for my LAN. Surfing goes well as long as the proxy is set in the browser. When not set->no surfing, no matter if transparent or standard mode).
I can't ping outside with ip (request timed out), although i set a rule eth0_network_ -> ping -> any
I can't ping outside with name (unknown host) seem to have dns problems. Since I use dns proxy I have not set a rule for it. But even if I do in both sides, it wouldn't work.
I can't pop3 outside, rule: eth0_network -> pop3 ->any (and same with smtp)
Even if rule no. 1 is ANY->ANY->ANY I cannot get outside in ANY way but http through the proxy. If i deactivate the http proxy and make filter rules like eth0_network_ -> http -> ANY it wouldn't work, also i turned off the proxy setting in the browser in that case.
I have really no idea if I have a dns, masq, routing or whatever problem. Do I miss something basically? I read alot of threads and tons of stuff now about firewalling and I feel I have set it up right!
Please help! Trying for so long with asl in different versions and betas and I really looking forward to have this fantastic product running finally! Btw, I have no linux knowhow.
This thread was automatically locked due to age.