LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices



Reply
 
Search this Thread
Old 05-04-2006, 05:15 PM   #1
gepas
LQ Newbie
 
Registered: Feb 2006
Posts: 19

Rep: Reputation: 0
Really strange problem with NAT router


Hello,

I'm running a Slackware 10.2 as a NAT router, with latest kernel 2.4.32. The problem I'm suffering from is strange enough to sound but it is true! After some days of operation the router refuses to make new Internet connections - but which is curious not from all the machines that are behind the NAT, but instead from just let's say from 2-3 machines. At this moment, I can ping from those problematic machines any address with no problem, also I can open and browse the FTP site on the router itself successfully. And of course from the rest of the machines the Internet and NAT-ting is working perfectly.

Here are the simptons once again in brief in case I was not clear enough:

1. A network of 30 PCs with a Slackware router, NAT.
2. At some moment for 2-3 PCs (IPs) it becomes impossible to make new and any connections to Internet services: HTTP, FTP, ICQ, Skype, etc.
3. From those 2-3 PCs (IPs) it is still possible to ping and receive answer from any Internet site/address!!!
4. From those 2-3 PCs (IPs) I can access and use the Web/FTP service on the Linux router itself with no problems!!!
5. From the other 28 PCs (IPs) Internet access is still working perfectly.
6. The problem is fixed after rebooting the Linux - but regularly repeats itself again after some period of time.

Please, somebody shed some light how to diagnose this strange and absolutley unlogical situation and problem !

Just an additional note: this is a newly setup router which replaced a Redhat 9 Linux machine - when I return the Redhat machine in place the problem does not appear.

thank you
Evgeni

Last edited by gepas; 05-04-2006 at 05:18 PM.
 
Old 05-04-2006, 05:27 PM   #2
frankjoshua
Member
 
Registered: May 2006
Posts: 32

Rep: Reputation: 15
This is tough. I am curious if the router is cutting off traffic from those machines on purpose. I might use an ethernet packet sniffing program to see if there is a lot of traffic coming from those machines. If that is the case could be anything from viruses to spyware to defective network cards. Are you using iptables or something else?

Joshua Frank
joshfrank.com
 
Old 05-04-2006, 05:36 PM   #3
gepas
LQ Newbie
 
Registered: Feb 2006
Posts: 19

Original Poster
Rep: Reputation: 0
Thanks frankjoshua,

How can I see if the router is cutting traffic from this machines on purpose? It is impossible to simulate the problem at any time since this happens only at some unknown moment, and when this happens I have to react very quickly and usually am pushed to restart the machine... But how can I deeper diagnose this shitty problem ??

I'm using iptables just for the NAT, some port forwarding to IPs behind the nat, and also iptables to drop traffic out on well-known Windows virus-prone ports like 135,136, etc.

Just for reference, see post http://www.linuxquestions.org/questi...d.php?t=435728, this guy I think has exactly the same problem like me, and also with Slackware ??

Evgeni
 
Old 05-05-2006, 12:05 PM   #4
frankjoshua
Member
 
Registered: May 2006
Posts: 32

Rep: Reputation: 15
You need to install ethereal and do some network sniffing. I read the other post and upgrading the kernel is not a bad idea but I don't believe it's the solution here. Due to the fact that the problem is only on a couple a machines I would be very suprised if the problem was on your server. If you have allready checked for virus and spyware on the effect machines I would try to swap network cards from a good machine and a problematic one. I have seen similar problems cause by bad network cards also it could be a port on your switch. Any way these are pretty easy things to check and important to rule out.

Joshua Frank
joshfrank.com
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
problem update via router with NAT and Firewall qinelo Linux - Networking 1 01-13-2006 05:03 PM
please help: strange problem with NAT??? cutejai Linux - Networking 3 12-16-2005 06:37 AM
strange nat problem KennyNotDead Linux - Networking 3 05-11-2005 01:21 PM
nat problem with newly set up router cutejai Linux - Networking 2 04-29-2005 03:01 AM
dsl router + NAT + ssh = problem valleyman Linux - Networking 5 12-10-2003 10:19 AM


All times are GMT -5. The time now is 06:38 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration