Networking Help
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationNetworking Help

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
Get inside! Sample the range of functionality easily built with JMSL Library for Time Series Data Analysis, Heat Maps, Portfolio Optimization, Monte Carlo Simulation, Stock Price Charting and more. Download Now!
  #1  
Old April 16th, 2008, 12:14 PM
Axweildr's Avatar
Axweildr Axweildr is offline
CPAN medic ...
Click here for more information.
 
Join Date: Mar 2003
Location: Location: Location:
Posts: 11,287 Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)  Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 4 Months 1 Day 8 m 31 sec
Reputation Power: 2751
Send a message via Google Talk to Axweildr
Orkut
BT Micro and VPN's

OK, first time at this

SBS 2003, and a BT Micro router (BT Micro is a VoIP(SiPS) enabled PABX with a built in firewall and router)

I've port forwarded (reserved mappings) the following ports to the server
25, SMTP
443, SSL
444, SSL (Sharepoint)
3389, RDP
1723, VPN Connections <- this is the one giving me the issues
4125, RWW

I've also created pinholes (port filters) for these to allow the traffic through.

When trying to connect to the server, the firewall logs on port 47 that 'Default Defense' is enabled. My question is what do I need to do to enable VPN traffic?

I've port forwarded 47, and port filtered, and then dropped the port forward for 47, so now it's just filtered.

Here's hoping someone can help, because at the minute my barber's wondering about his children's education fund
__________________
--Ax
without exception, there is no rule ...
The great thing about Object Oriented code is that it can make small, simple problems look like large, complex ones


09 F9 11 02
9D 74 E3 5B
D8 41 56 C5
63 56 88 C0
Some people, when confronted with a problem, think "I know, I'll use regular expressions." Now they have two problems.
-- Jamie Zawinski
Detavil - the devil is in the detail, allegedly, and I use the term advisedly, allegedly ... oh, no, wait I did ...

Reply With Quote
  #2  
Old April 17th, 2008, 03:33 AM
Axweildr's Avatar
Axweildr Axweildr is offline
CPAN medic ...
Click here for more information.
 
Join Date: Mar 2003
Location: Location: Location:
Posts: 11,287 Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)  Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 4 Months 1 Day 8 m 31 sec
Reputation Power: 2751
Send a message via Google Talk to Axweildr
Orkut
Turns out, apparently, just waiting on a reboot, that a RAW IP filter is required for port 47 (GRE), and not a TCP filter, and that this is something apparently handled transparently by lesser routers.

Could be a good reason for it, who knows, if someone could shed light on why this level of granularity is a good idea, I'm all ears ...

Reply With Quote
  #3  
Old April 22nd, 2008, 07:44 AM
jpyeates jpyeates is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2008
Posts: 5 jpyeates User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 40 m 30 sec
Reputation Power: 0
BT Micro

I had this problem also i guess it boils down to GRE being a protocol not a port as such. I have however still got problems with my mail routing. Are you using the DMZ port of the router for your server or just the internal LAN. I can;t seem to talk smtp to my server from the outsite world. I am similarly using SBS 2003 and would apreciate any insight on your processes. I can telnet to port 25 from the local ip sucessfully but not to the external IP from offsite.

Any thoughts?

Reply With Quote
  #4  
Old April 22nd, 2008, 12:30 PM
Axweildr's Avatar
Axweildr Axweildr is offline
CPAN medic ...
Click here for more information.
 
Join Date: Mar 2003
Location: Location: Location:
Posts: 11,287 Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)  Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 4 Months 1 Day 8 m 31 sec
Reputation Power: 2751
Send a message via Google Talk to Axweildr
Orkut
just the internal LAN, I had port forwarded 25,100, 1721, 3389, 4125, and enable pinholes for them as well, I might be able to get the current setups later this evening, you in Ireland or the UK? The BT Micro helpdesk is 1560 787 700 in Ireland, but it's only open from 9-ish to 5. And I got put through to a couple of nice lads in the North, but they'd never heard of it, and the fact that BT don't actually vend VoIP or SIPS has me wondering why I bought it in the first place. Well, actually, the client bought it because of what the sales guy told him

I closed down a number of the ports because they were being hammered, I'll post later

Reply With Quote
  #5  
Old April 22nd, 2008, 03:30 PM
Axweildr's Avatar
Axweildr Axweildr is offline
CPAN medic ...
Click here for more information.
 
Join Date: Mar 2003
Location: Location: Location:
Posts: 11,287 Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)  Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 4 Months 1 Day 8 m 31 sec
Reputation Power: 2751
Send a message via Google Talk to Axweildr
Orkut
Quote:
Originally Posted by Axweildr
just the internal LAN, I had port forwarded 25,100, 1721, 3389, 4125, and enable pinholes for them as well, I might be able to get the current setups later this evening, you in Ireland or the UK? The BT Micro helpdesk is 1560 787 700 in Ireland, but it's only open from 9-ish to 5. And I got put through to a couple of nice lads in the North, but they'd never heard of it, and the fact that BT don't actually vend VoIP or SIPS has me wondering why I bought it in the first place. Well, actually, the client bought it because of what the sales guy told him

I closed down a number of the ports because they were being hammered, I'll post later
in pdf, the terminologies threw me initially
Attached Files
File Type: pdf BT-MIcro.pdf (14.5 KB, 42 views)

Reply With Quote
  #6  
Old April 23rd, 2008, 02:24 AM
jpyeates jpyeates is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2008
Posts: 5 jpyeates User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 40 m 30 sec
Reputation Power: 0
very annoyingly the customer has the BT Micro router but on a residential BT line and a third party broadband provider. If it wasn't for the easy PBX functions and the fact that they're a charity and have no money i'd be ripping it out right now in favour of something I know how to work.

This has two major drawbacks.

1. BT won't speak to you about it unless your a BT Business customer

2. I can't configure the SIP trunks, they're locked to BT's settings.

Addtionally there is little if any community support for this router, yours was the only post i could find.

I'm based in London.

The wierd thing is i got the VPN side to work. i've used similar port mappings in the same locations as yourself but just specified IP addresses on the DMZ instead of the internal lan. VPN works but smtp and http/https doesn't or doesn't appear to from the outside. Very odd, i will continue to experiment.

Reply With Quote
  #7  
Old April 23rd, 2008, 02:31 AM
jpyeates jpyeates is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2008
Posts: 5 jpyeates User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 40 m 30 sec
Reputation Power: 0
btw what's port 4125 for?

Reply With Quote
  #8  
Old April 23rd, 2008, 03:51 AM
jpyeates jpyeates is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2008
Posts: 5 jpyeates User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 40 m 30 sec
Reputation Power: 0
It seems my routing is correct after all. I had to add the remote IP to the connections list in Exchange so must be an domain host issue if the mail is still bouncing

Reply With Quote
  #9  
Old April 23rd, 2008, 04:22 AM
Axweildr's Avatar
Axweildr Axweildr is offline
CPAN medic ...
Click here for more information.
 
Join Date: Mar 2003
Location: Location: Location:
Posts: 11,287 Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)Axweildr User rank is General 27th Grade (Above 100000 Reputation Level)  Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1Folding Points: 122403 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 4 Months 1 Day 8 m 31 sec
Reputation Power: 2751
Send a message via Google Talk to Axweildr
Orkut
you set up the MX records for your mail host? I did another one yesterday, and it only resolved this morning at about 2 am

Reply With Quote
  #10  
Old April 23rd, 2008, 10:25 AM
jpyeates jpyeates is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2008
Posts: 5 jpyeates User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 40 m 30 sec
Reputation Power: 0
Yeah i did , the hostname resolves as well, they were changing some system or other and they have some interesting ways of filtering things sometimes. At the very least i'll be able to see if they can telnet in, which they should be able to as they're on the allowed ip range

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationNetworking Help > BT Micro and VPN's


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support |