LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 11-29-2009, 09:46 PM   #1
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Rep: Reputation: 1
Can only access the internet in DMZ


I've just set up a webserver and forwarded ports 80, and 22, and I cannot access the inernet on that machine but I can connect via ssh and visit a page on the server when on a different network.

When I put the router in dmz mode I can connect to the internet properly.

Any suggestions?
 
Old 11-29-2009, 09:52 PM   #2
evo2
LQ Guru
 
Registered: Jan 2009
Location: Japan
Distribution: Mostly Debian and CentOS
Posts: 6,724

Rep: Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705Reputation: 1705
Sounds like your outgoing nat is not setup. I'm guessing it was working earlier and somehow it got broken when you modified your router setup to forward ports 22 and 80 for incoming traffic. Please check your router configuration.

Evo2.
 
Old 11-29-2009, 09:53 PM   #3
alunduil
Member
 
Registered: Feb 2005
Location: San Antonio, TX
Distribution: Gentoo
Posts: 684

Rep: Reputation: 62
What exactly is your setup? You talk about setting up a server as a DMZ through your router and you can't connect from the server to the Internet? But the reverse situation works just fine? Have you tried pinging from all possible directions and see what that tells you about your connection?

Regards,

Alunduil
 
Old 11-29-2009, 10:20 PM   #4
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Original Poster
Rep: Reputation: 1
Quote:
Originally Posted by evo2 View Post
Sounds like your outgoing nat is not setup. I'm guessing it was working earlier and somehow it got broken when you modified your router setup to forward ports 22 and 80 for incoming traffic. Please check your router configuration.

Evo2.
My router configuration looks fine. But you're right, it was working fine, then after I forwarded ports, it suddenly stopped working. I've pretty much looked through all my routers settings and havnt noticed anything wrong. Maybe I'm overlooking something?
 
Old 11-29-2009, 10:23 PM   #5
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Original Poster
Rep: Reputation: 1
Quote:
Originally Posted by alunduil View Post
What exactly is your setup? You talk about setting up a server as a DMZ through your router and you can't connect from the server to the Internet? But the reverse situation works just fine? Have you tried pinging from all possible directions and see what that tells you about your connection?

Regards,

Alunduil

Yes that's correct. I tried pinging other domains but I get "unkown host". Now when ik putmy router in dmz mode it works fine. Maybe there is some other port that needs forwarding besideds 80 and 22
 
Old 11-29-2009, 10:28 PM   #6
alunduil
Member
 
Registered: Feb 2005
Location: San Antonio, TX
Distribution: Gentoo
Posts: 684

Rep: Reputation: 62
What do you mean by, "put my router in DMZ mode?" Do you mean configure your server as a DMZ in the router? It seems like you simply have a DNS issue to work through regardless. So you have a router and a server and when the server is not the DMZ it can't get to the Internet, but when it is it can? What is the difference in /etc/resolv.conf in both of those cases?

Regards,

Alunduil
 
Old 11-29-2009, 10:37 PM   #7
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Original Poster
Rep: Reputation: 1
Quote:
Originally Posted by alunduil View Post
What do you mean by, "put my router in DMZ mode?" Do you mean configure your server as a DMZ in the router? It seems like you simply have a DNS issue to work through regardless. So you have a router and a server and when the server is not the DMZ it can't get to the Internet, but when it is it can? What is the difference in /etc/resolv.conf in both of those cases?

Regards,

Alunduil
Yes, that's correct. There is no difference in resolv.conf whe sn I make the changes.
Would you like for me to cat /etc/resolv.conf?
 
Old 11-29-2009, 10:41 PM   #8
alunduil
Member
 
Registered: Feb 2005
Location: San Antonio, TX
Distribution: Gentoo
Posts: 684

Rep: Reputation: 62
No, if there is no difference then an autoconfiguration isn't muddling with it. What kind of router are you using as your middle man?

Regards,

Alunduil
 
Old 11-29-2009, 10:47 PM   #9
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Original Poster
Rep: Reputation: 1
2wire 1701hg
 
Old 11-29-2009, 11:09 PM   #10
alunduil
Member
 
Registered: Feb 2005
Location: San Antonio, TX
Distribution: Gentoo
Posts: 684

Rep: Reputation: 62
Does this link (http://www.avforums.com/forums/netwo...er-before.html) have anything like what you are observing? Without more information as to what's going on I don't know how helpful I can be in troubleshooting.

Regards,

Alunduil
 
Old 12-01-2009, 01:49 AM   #11
vanstarr
LQ Newbie
 
Registered: Nov 2009
Posts: 8

Original Poster
Rep: Reputation: 1
Actually, I can't access the website from a different network when the computer is not in DMZ. Also, is it safe to just leave it in DMZ for the time being until I can get it fixed? What are the risks?

Any suggestions?

Last edited by vanstarr; 12-01-2009 at 01:59 AM. Reason: Appened
 
Old 12-02-2009, 02:00 PM   #12
alunduil
Member
 
Registered: Feb 2005
Location: San Antonio, TX
Distribution: Gentoo
Posts: 684

Rep: Reputation: 62
Leaving it in the DMZ is just fine but be aware that you are making that particular host directly accessible from the Internet. Double check your security and everything should be just fine.

Regards,

Alunduil
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
DMZ cannot access internet TheGNUbie Linux - Networking 11 11-30-2009 02:47 AM
How to access DMZ from LAN? GerianneMcC Linux - Security 3 12-04-2008 04:23 PM
IPCop DMZ zone internet access hosler Linux - Security 1 10-18-2006 01:12 PM
Can't access DMZ external IP kelper Linux - Networking 4 11-04-2003 09:47 PM
Access Web Server lacated on DMZ plexi100 Linux - Newbie 2 10-13-2003 09:01 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 02:29 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration