- CheckMates
- :
- Products
- :
- Quantum
- :
- SMB Gateways (Spark)
- :
- Weird Port redirection on 1400
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Weird Port redirection on 1400
I'm running a 1490 (R77.20.75) centrally managed (R80.10) and have a number of NAT rules for inbound traffic.
One of them is a mail server running in a DMZ, when I want to collect my mail with IMAP or POP3, I use my external DNS name which resolves to the external IP of the FW. Running this on mobile devices should explain the why that is the external IP.
Now we are running into the problem NATting is not done, neither the destination nor the source NAT is taking place. I added an explicit NAT rule for the internal range to the external IP of the FW to be source NATted to the IP of the GW and the destination to the DMZ server IP.
Log line shows no NAT IP's but the NAT Ruleis showing when you double click the line.
Also when we try to reach a http web page, it is redirected to the gui of the FW itself with the explicit port setup for the Management WebUI.
Anyone seen this behaviour?
- Tags:
- 1400
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just after posting this and extensively searching the knowledge base, I found Gunther's list of all SMB SK's. Browsing through that list and searching for redirect I found this one:
SK100471 When trying to access a website behind a LocallyManaged 600_1100, user is redirected to Web GUI
While searching for this SK I ran into a similar SK which actually describes the problem a bit better:
SK130034 Port forwarding to a server with custom port from a different LAN is not working
Well guess what, I did a test with a Wireless network and set it as a bridged network, after working through this SK I was back in business!
Thanks Gunther!!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Well the story continues, We tested SK130034 as well, did not solve the issue, only removing the bridge will forward the traffic normally, when coming from internal networks.
So SK100471 was still the only solution for this problem.
