This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Connection to Access Point Administration Timed Out?

I have 3 interfaces:

External [Public IP]: connected to DSL Modem
Internal [192.168.1.254/24]: connected to local switch 
Guests [192.168.2.254/24]: connected to an Access Point (192.168.2.2/24)

I created 2 Firewall rules (Web Filter and IPS are disabled):
Internal -> Any -> Any.
Guests -> Any -> Internet IPv4, IPv6

And 2 Masquerading rules: 
Internal (network) -> External Interface
Guests (network) -> External Interface 

The problem is that I cannot access the Access Point (192.168.2.2) from a computer on the Internal network (eg. 192.168.1.121), when I try to access http://192.168.2.2/ or telnet 192.168.2.2 I got connection timed out while HTTP and telnet work if I connect the Access Point directly to a computer (eg. 192.168.2.10).

Also the connection has timed out when try to access http://192.168.2.254:4501/

What's going wrong?


This thread was automatically locked due to age.
  • What does the firewall log show?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I'm not that familiar with investigating UTM logs but when I go to 
    Logging & Reporting > View Log File > Today's Log Files > Firewall > View
    and search "192.168.2.2" no results found!

    I forget to mention that I have to masquerading rules:
    Internal (Network) -> External (Interface)
    Guests (Network) -> External (Interface)
  • If this was pinging and you have it enabled on the 'ICMP' tab of 'Firewall', it sounds like a routing issue.  See #3 and #3.1 in Rulz.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I respected Rule #3 and #3.1 but no access!
  • Which service routes packets between networks: Firewall rules or Masquerading?
  • Does the accesspoint have the UTM (192.168.2.254) set as default gateway?

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)
  • Does the accesspoint have the UTM (192.168.2.254) set as default gateway?


    Yes it does.
  • Should I add a Masquerading rule from Internal (Network) to Guests Interface?
  • This might help but doesn't solve the root cause.

    What model is the access point? Does it have some kind of security feature, that only allows connections from local network?

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)
  • This might help but doesn't solve the root cause.


    What is the root cause?


    What model is the access point? Does it have some kind of security feature, that only allows connections from local network?


    Linksys WRT54G v5.1 with DD-WRT firmware.