Guarddog blocking packets in the same zone



I have Slackware running on my network as:

DHCP server
Mail server
DNS Server
Web Server
router with two NIC's (internet and LAN) LAN side has NATed addresses
Guarddog firewall

Internet -------> Slackware box ------->- 16 port switch ------> PC's

My LAN network is 192.168.0.0/24 and I have about 6 devices hooked to
it. All works fine.

Recently I added a Linksys WRT54G wireless router. It's network is
192.168.1.0/24. I added this network to the LAN zone on Guarddog and
everything is cool EXCEPT it won't allow packets to pass in and out of
the same interface between networks.

I.E. If I try to run Remote Desktop from a device on the wireless
network to a device on the wired network (0.0 to 1.0) Guarddog blocks
it with the following written to syslog:

Dec 7 20:33:45 homer kernel: DROPPED IN=eth1 OUT=eth1 SRC=192.168.0.21
DST=192.168.1.100 LEN=40 TOS=0x00 PREC=0x00 TTL=127 ID=29063 DF
PROTO=TCP SPT=3389 DPT=1155 SEQ=125327193 ACK=1586171222 WINDOW=65535
RES=0x00 ACK URGP=0

eth0= internet interface
eth1= lan interface

If I disable the firewall, packets are allowed to pass normally. I
don't see anyway in Guarddog where I can tell it to allow packets in
the same zone but different networks pass.

The problem has to be with Guarddog as when I disable it, everything
works fine.

Help!!

Todd

.



Relevant Pages

  • Network Admin-Myrtle Beach, SC
    ... SofTec I.T. has a terrific permanent opportunity with a premier client ... for a Senior Network Administrator. ... Configures and maintains the organizations LAN server and LAN ...
    (comp.dcom.sys.cisco)
  • Re: DHCP issue
    ... It is just frozen on Acquiring Network ... switch, new cable, but LAN just cannot get any addresses. ... Does this server host DNS? ... FYI, despite its name, the DHCP Client service is actually the DNS ...
    (microsoft.public.windows.server.general)
  • Re: Network Speed issues
    ... the server was clean installed about 2 months ago. ... Well the nic card that I am using for the LAN side is a card and it is a ... dns suffix servername.local ... >> becomes slow network wide, ...
    (microsoft.public.backoffice.smallbiz2000)
  • Re: Dial-up ICS settings = Configuration Problems
    ... On Machine #1 have you told it that it is to share its Internet connection? ... Double click on your LAN connection ... IntelPRO/100 VE Network Connection - Packet Scheduler Miniport ... Primary WINS Server: 0.0.0.0 ...
    (microsoft.public.windowsxp.network_web)
  • Re: Cant browse the network over VPN?!
    ... running WINS on the LAN, WINS will have an entry for the Domain Master ... If the client has the correct WINS address, ... > server, and you attempt to connect to a computer using a PPTP/VPN client, ... > opening Network Knighthood. ...
    (microsoft.public.windows.server.networking)

Quantcast