boshcash
hello guys im having a stupid problem cant solve it tried everything , so please help me , the problem is :

I am connected to a nrtwork to a switch to the router , i make port forwarding through my router , and when anybody inside the LAN request the server with the WAN ip , it rejects the connection . only accepts people outside , so what do u think is solution , i know its the router firewall but how can i disable it , i want to be able to connect to my WAN ip , its really crucial , plz no one tell me to connect to the local IP of that server because this isnt a solution i want to connect through the WAN ip , so how could i make it work

i tried the DMZ host didnt work out so any idea guys help would be appreciated , as im stuck on this problem for 1 month now
belgther
well, maybe connecting to your router and setting it will solve the problem...
to find the ways of doing it, refer to your instruction manual since every router has a different way to adjust the settings.
hope this helps...
pantoche
QUOTE(boshcash @ Feb 1 2005, 05:19 PM)
hello guys im having a stupid problem cant solve it tried everything , so please help me , the problem is :

I am connected to a nrtwork to a switch to the router , i make port forwarding through my router , and when anybody inside the LAN request the server with the WAN ip , it rejects the connection . only accepts people outside , so what do u think is solution , i know its the router firewall but how can i disable it , i want to be able to connect to my WAN ip , its really crucial , plz no one tell me to connect to the local IP of that server because this isnt a solution i want to connect through the WAN ip , so how could i make it work

i tried the DMZ host didnt work out so any idea guys help would be appreciated , as im stuck on this problem for 1 month now
*



Let me see if I understand, you have computers behind the router trying to access your computer with the WAN ip???
If I understand well, why they don't connect directly with the internal IP of your computer??
ozzy
Hi

This is normaly, that you can't connect from the Intern Network to your WAN IP..
You must habve a 2. Internet Accsess to Conect..


ozzy
forza
i agree with the others, normally it will not work..
but why do you want to connect with the WAN-ip instead the LAN-ip??
andydis
boshcash,


whats ur INTERNAL IP ADDRESS RANGE? / defualt gateway?

you may not be able to connect to your external IP becuase NAT doesnt support 2 ips on one interface.

ther are serveral ways to overcome your problem;


1) upgrade your router to a more sophosticated network

2) use a proxy / socks proxy program to achieve access to your WAN address.

3) if your ISP supports it, switch between internal and external ip addres on your pc (e.g. if you have broadband with 5 ips+) .

boshcash
i will tell u why i need this


first thing for testing my own servers to work successfully

second thing : to be able to create game on a server , and allow another network user to connect to it ..

The proxy solution is a solution but its not a very good one , do i have to do something with the subnet masks or DMZ host , the DMZ host doesnt solve this , but i think if i seperate the two local ips with the subnet mask configuration it may work , so the router doesnt reject connection made from one local ip to connect to the other through the router


im using the stupid conexant router btw , and if anyone has a good pro solution plz post it , and i dont like answers like check ur network , something is wrong and stuff like that , nothing is wrong i need a solution to let the router allow a local host to connect to the WAN ip , which redirects to another host on the LAN
Fletcher
yes it's normal, what you can do to resolve is: add route on the untrust card.
(i hope that you have minimum 2 card)
packet
This is a very common problem on even many "pro" firewalls as they dont like to take your connection going out, NAT it outbound, then without actually sending it anywhere, turn around and NAT it back in.

Normally this is handled by split-DNS so that you do actually resolve to the local IP but since you don't want to do that I'd have to say a Netscreen (Juniper) firewall can do this as well as if I remember correctly the Sidewinder.

Other than that the proxy out and back in is definitly the best solution...

--P>G>>
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.