Sponsored Content
Full Discussion: ISP VPS, routing traffic
Special Forums IP Networking Proxy Server ISP VPS, routing traffic Post 302909414 by solaris_user on Wednesday 16th of July 2014 06:16:39 PM
Old 07-16-2014
Routing traffic from ISP datacenter to enterprise LAN

Hi guys

I need to setup server/router in my firm. We got from our ISP dedicated server in their data center. It has a static IP and it servers as replacement for out DSL connection. I configured our internal server to be border gateway and to connects to data center. "Remote" admin installed squid and IT staff can access to the websites but other can't. I want to remove that proxy server. I think I really don't need it.

Here is the picture how above situation looks

Image

Server router has two NICs, one is connected to ISP router which we can't access, and one nic is connected to our private LAN. I use CentOS Linux 6.5 x64 to act as router. I added in iptables firewall to forward all traffic from eth0 to eth1 (from internal to public) and allowed traffic to leave server. All output traffic is nated.

Problem is on the other site. I'm not a network engineer but only with some knowledge in networking and formal IT education at the firm. My problem is I can't ping anything on the Internet while our VPS can. On that same server only port 80 and 22 are opened. People who setup proxy can connect to outside world but can't ping, can't use other networking software.

I have some questions:

How I can see my private LAN from ISP network, I will need to setup VPN in the short time ?
Is possible to avoid proxy and just with firewall NAT get data from the net back to the hosts in the private LAN ?

I am afraid to mess with ISP server because they administrate that server, we are and I really won't to understand how configure a network.

Thanks for reading and suggestions.

Last edited by solaris_user; 07-16-2014 at 07:26 PM..
 

8 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

Linux for an internet server to an ISP

I just moved away from a T3 line back to a dial up I just wanted to know would a P200 with 64meg and a 4 gig hard drive be ok for a linux server for an additional 3 pcs all running win98. I will be dialing into an isp using a 56k v90 modem. Any support or help will be great. (3 Replies)
Discussion started by: izrailov
3 Replies

2. UNIX for Dummies Questions & Answers

Cannot connect to my ISP

I'm totally frustrated, my administrator has left the state and me high and dry! My modem cannot connect to my ISP all it does is start to ping and the a high pitched squeal for about a minute. I have logged on as the "root" in hope to get into my /etc/ppp/ppp.conf file however I get a... (8 Replies)
Discussion started by: coolteach
8 Replies

3. IP Networking

Routing Network Traffic With Mandrake

I am running Mandrake 8.0 (KDE ver 2.1.1) on a machine with 2 NICs. This is a college project. I am attempting to configure this machine as a firewall, and to pass packets from one network to another. Eth0 is on my external network. Eth1 is on my internal network. I set the gateway in "netconf"... (1 Reply)
Discussion started by: Deuce
1 Replies

4. UNIX for Dummies Questions & Answers

schedule dial-out different ISP's

Hi, I'm running user ppp on FreeBSD. I have an internet account which gives me the oppertunity to login for free (say €25 a month :)) during specific hours. Outside these hours I pay the normal fee. I also have another ISP which gives me the oppertunity to log in for a reduced fee all times. ... (2 Replies)
Discussion started by: Hansaplast
2 Replies

5. IP Networking

2 ip from one subnet my isp

Hi. my english is not so good. sorry. i have some problem. My isp give me second ip from subnet. One network is working, but secong don't. fxp0 - my network dc0 - network isp (that working) re0 - network isp (don't working) i try use ng_one2many, but it's don't working ngctl mkpeer... (0 Replies)
Discussion started by: kil
0 Replies

6. IP Networking

Routing traffic problem between 3G and Office Lan Network

Hi, I would like to ask some networking solution regarding my work LAN and 3G usb network problem. I want to route my internet traffic to the 3G network and sometimes connect to some of my work network for ssh to configure some workstation or print something. Currently my problem is i can't... (0 Replies)
Discussion started by: jao_madn
0 Replies

7. Solaris

Traffic routing through wrong interface

Solaris-9 server is having one primary IP 10.41.161.14 on qfe0 and 10.41.116.0 on qfe3:1. Traffic is going through virtual interface instead of physical interface. How should I force traffic to go with primary interface. root@smtsrvn01:/# netstat -nr Routing Table: IPv4 Destination ... (2 Replies)
Discussion started by: solaris_1977
2 Replies

8. IP Networking

Multiple isp physical connection

Hello all my friends see picture to understand my problem http://www.imageurlhost.com/images/8mf8ni4btu6r4qy1rp9_Networking-photo.png i want to know that how my company can connect multiple isp via switch and output from switch is directly connected to linux firewall. Any help Thanks (1 Reply)
Discussion started by: rink
1 Replies
network-test(1) 						  ifupdown-extra						   network-test(1)

NAME
network-test - check the network and test if everything is fine SYNOPSIS
network-test DESCRIPTION
The network-test program will test your system's network configuration using basic tests and providing both information (INFO), warnings (WARN) and possible errors (ERR) based on the results of these tests. It will check and report on: * Status of the network interfaces of the system including: link status, IP addressing and number of transmitted packets and error rates. * Accessibility to configured routes to external networks, including the default network route, checking the routers configured to give access to the network * Proper host resolution, testing DNS resolution against a known host. * Proper network connectivity, testing reachability of remote hosts using ICMP and simulating a web connections to a remote web server (the web server used for the tests can be configured through the environment, see below) The program does not need special privileges to run as it does not do any system change. However, the behaviour of the program when running as an unprivileged user is not the same as running as system administrator (i.e. root). If the program is run as system administrator it will try to run some tools that are only available to it to speed up some of the tests. The program relies on the use of ip, netstat, ifconfig, arp and (when running as root) ethtool or mii-tool, to obtain information about the system's networking configuration (status of available interfaces and configured network routes). It also uses ping, host and nc (netcat) to do tests of the network connectivity and ensure that the host can connect to the Internet. ENVIRONMENT
The program will, by default, check www.debian.org and its associated web server. If you want to use a different check host you can setup the environment as follows: CHECK_HOST The name of a host to use when testing DNS resolution. CHECK_IP_ADRESS The IP address of the host defined in CHECK_HOST CHECK_WEB_HOST The web server to use for testing purposes when testing network connectivity. CHECK_WEB_PORT The web server port of server CHECK_WEB_HOST that will be used for testing. EXIT STATUS
The program will exit with error (1) if any of the network checks fail. BUGS
This program does not have super cow powers so it is unable to fix the errors by itself. It is also unable to detect if the network is failing due to a local firewall policy been in place so make sure you check your system logs with dmesg (1) to detect if some of the active tests are being dropped due to your local firewall. Other known issues that might make the program not work reliable are: * IPv6: The program does not yet explicitly handle IPv6 only hosts, some of the tests might be biased towards IPv4 and might fail in IPv6 environments. * Proxies: The program does not check network connectivity for hosts that connect through the Internet using a proxy gateway for services. The program might report issues in hosts using proxies even when these might connect to the Internet properly through proxied services. * Firewall environments: some of the tests rely on direct connectivity to external hosts, which are tested using ICMP queries (through the use of ping. These tests might fail in hosts installed in networking environments with firewalls that block outbound ICMP communication. SEE ALSO
ip (8), netstat (8), ifconfig (8), ethtool (8), mii-tool (8), ping (8), nc (1) and host (1). AUTHOR
network-test was written by Javier Fernandez-Sanguino for the Debian GNU/Linux distribution. COPYRIGHT AND LICENCE
Copyright (C) 2005-2011 Javier Fernandez-Sanguino <jfs@debian.org>. This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2, or (at your option) any later version. On Debian systems, a copy of the GNU General Public License may be found in /usr/share/common-licenses/GPL. ifupdown-extra August 23 2011 network-test(1)
All times are GMT -4. The time now is 07:33 PM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy