From owner-freebsd-questions@FreeBSD.ORG Tue Jul 29 16:02:42 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E452E37B401 for ; Tue, 29 Jul 2003 16:02:42 -0700 (PDT) Received: from lakemtao06.cox.net (lakemtao06.cox.net [68.1.17.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id AEBB943F3F for ; Tue, 29 Jul 2003 16:02:41 -0700 (PDT) (envelope-from micheal@cancercare.net) Received: from dredster ([68.12.70.4]) by lakemtao06.cox.net (InterMail vM.5.01.04.05 201-253-122-122-105-20011231) with SMTP id <20030729230241.UWXM15657.lakemtao06.cox.net@dredster>; Tue, 29 Jul 2003 19:02:41 -0400 Message-ID: <00ad01c35625$8ea48070$0201a8c0@dredster> From: "Micheal Patterson" To: "William Knechtel" , References: <000c01c35620$6f401a00$44d37b80@ad.psinp.org> Date: Tue, 29 Jul 2003 18:02:57 -0500 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 Subject: Re: Help with FreeBSD Bridged Firewall X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 29 Jul 2003 23:02:43 -0000 ----- Original Message ----- From: "William Knechtel" To: Sent: Tuesday, July 29, 2003 5:26 PM Subject: Help with FreeBSD Bridged Firewall > Hello! > > Help!! I'm running a PC with dual NICs and FreeBSD 4.8 as a bridged > firewall. I've got a private IP 10.0.0.1 tied to the internal card on > the > box for remote management. The firewall blocks any 10.x traffic coming > in on > the external card, so to remotely admin it, I have to shell into a > machine > on the same isolated network segment that it's on, and then shell over > from > that machine. > > Today around noon, the machine suddenly stopped responding to pings. I > went > down to the server room and couldn't find anything wrong. No notes on > the > console screen, no anomalous entries in the security or message logs. > So, in > the interest of getting it back up quickly, I rebooted it. That worked. > About an hour later, the same thing happened... my network monitor tells > me > that it's not responding to pings. So before I go down to the server > room, I > run a few tests... the firewall is still blocking packets like a champ. > I > run nmap against a host the firewall protects, and everything comes back > fine. But when I go downstairs to the console, I can't ping out to it's > 10.0.0.2 buddy, and no incoming pings work either. I'm at a loss on how > to > troubleshoot this, folks. I could really use a few ideas, so please > send > them along! > > Thanks in Advance! > Bill > Is this server directly behind your router and does it have a valid routeable ip on it also? -- Micheal Patterson Network Administration Cancer Care Network 405-733-2230