hi,
v. 5100 is installed.
Config is:
1) network 192.168.0.x/24
2) subnetwork 192.168.10.x/24
- Surfing from network 1) through ASL is ok
- Surfing from network 2) through ASL is not ok
Ping from subnetwork to ASL is OK. (L3 is ok)
Http does not work.
(packet drop:
2005:01:27-15:38:36 (none) kernel: DROP: IN=eth0 OUT= MAC=00:50:8b:4c[:D]c:86:00:10[:D]b:79:37:02:08:00 SRC=192.168.10.7 DST=192.168.0.8 LEN=48 TOS=0x00 PREC=0x00 TTL=126 ID=22 DF PROTO=TCP SPT=3009 DPT=8080 WINDOW=64240 RES=0x00 SYN URGP=0
2005:01:27-15:38:39 (none) kernel: DROP: IN=eth0 OUT= MAC=00:50:8b:4c[:D]c:86:00:10[:D]b:79:37:02:08:00 SRC=192.168.10.7 DST=192.168.0.8 LEN=48 TOS=0x00 PREC=0x00 TTL=126 ID=24 DF PROTO=TCP SPT=3009 DPT=8080 WINDOW=64240 RES=0x00 SYN URGP=0
2005:01:27-15:38:45 (none) kernel: DROP: IN=eth0 OUT= MAC=00:50:8b:4c[:D]c:86:00:10[:D]b:79:37:02:08:00 SRC=192.168.10.7 DST=192.168.0.8 LEN=48 TOS=0x00 PREC=0x00 TTL=126 ID=25 DF PROTO=TCP SPT=3009 DPT=8080 WINDOW=64240 RES=0x00 SYN URGP=0
)
I did:
a) packet filter rules (http to allow subnet to any)
what else?
Do I need to make a NAT rule from defined Subnetwork?
Thanks,
Ma
This thread was automatically locked due to age.