Download your favorite Linux distribution at LQ ISO.
Go Back > Forums > Other *NIX Forums > Solaris / OpenSolaris
User Name
Solaris / OpenSolaris This forum is for the discussion of Solaris, OpenSolaris, OpenIndiana, and illumos.
General Sun, SunOS and Sparc related questions also go here. Any Solaris fork or distribution is welcome.


  Search this Thread
Old 03-17-2018, 02:34 PM   #1
Registered: Mar 2010
Distribution: Slackware
Posts: 90

Rep: Reputation: 0
help with a little complex network configuration

I have one server with solaris11.4,two nics
I use it for testing,learning,etc..
I have one network,the classical
But for virtual machines i want to use another network
So I follow this procedure
a)First I have create a bridge with net1 and net0,otherwise net1 start "disconnected"

dladm create-bridge -l net0 -l net1 bridge1
b)Then I configure ipv4 addr for net1
ipadm create-ip net1
ipadm create-addr -T static -a net1
ipadm and dladm report no errors

c)Then I run on solaris11 server isc-dhcp,and isc-dns
All works fine,tested,I can resolve external hostnames
and dhcp assing address

d)I have installed VirtualBox,machines with bridged-networking point to net1

e)I have configured firewall with nat

# Vars
webports="{443, 80}"

##  make IP reassembly work
set reassemble yes no-df

## ignore loopback traffic
set skip on lo0

# block everything unless told otherwise
# and send TCP-RST/ICMP unreachable
# for every packet which gets blocked
block return in log all
pass out all

# accept incoming SSH connections
pass in proto tcp to any port 2122

# accept dhcp connections
pass in proto udp to any port 67:69
pass in proto tcp to any port 67:69

# accept dns connections
pass in proto udp to any port 53
pass in proto tcp to any port 53

# accept webeservers SSH connections
pass in proto tcp to $ext_if port 8888:8889
pass in proto tcp to $ext_if port $webports

# accept icmp
pass in proto icmp all

## allow all connections initiated from this system,
## including DHCP requests
pass out

pass out on net0 from $int_net  to any nat-to (net0)
f)With routeadm i have enabled routing and ip-forwarding.

Now the "result"

I can ping from OK
I can ping from vm's OK
I can ping external address(,etc) from vm's OK
I cannot connect with any protocol from the vm's!! NOT OK
Of course I have checked route with netstat -rn and said default
But telnet,links,yum and any kind of connection fail!
Only ping and dns resolution works(sic!)
What to check?

Last edited by camerabambai; 03-17-2018 at 02:37 PM.
Old 03-17-2018, 03:20 PM   #2
Registered: Mar 2010
Distribution: Slackware
Posts: 90

Original Poster
Rep: Reputation: 0
Firewall too restrictive.
Now I study some rule to permit reaching http,ftp,etc..


gateway, network, routing, solaris

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Need to solve complex network problem soliberus Linux - Networking 4 02-23-2008 03:46 PM
For Linux GURU's: route configuration in complex network netguy2000 Linux - Networking 1 09-06-2004 09:00 AM
Complex home network xblade2003 Linux - Networking 3 07-08-2003 11:16 AM > Forums > Other *NIX Forums > Solaris / OpenSolaris

All times are GMT -5. The time now is 04:54 AM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration