[Hampshire] Firewall mistory.

Top Page

Reply to this message
Author: Clive Woodfine
Date:  
To: Hampshire LUG Discussion List
CC: 
Subject: [Hampshire] Firewall mistory.
I will try and keep this short but I might have difficulty in explaining.

I have been using Smoothwall Firewall (Sw)successfully on a box
between my LAN and the Internet via a D-Link DSL-300T modem. I have
been trying out the ClarkConnect Community edition on another box as
it offers more facilities such as a print server. However I am having
difficulty in connecting to my ISP (Demon Internet) through it.

Starting the modem and then ClarkConnect (Cc) does not connect to
Demon or their DNS servers (shown in red on the web interface as not
connected). I cannot ping these. If I now connect eth0 and eth1 cables
to Sw and restart the modem and Sw everything works. I now reconnect
the eth cables to to the still running Cc and it too works!!

I have Googled and searched the Clark Point forums but found nothing
useful. If anyone can point me in the right direction I would be very
pleased.

I have pasted here the last bits of the Cc system log which I think
are relevant.

Cc started
Jan 10 14:32:13 Cc cc-firewall: Defining custom chains
Jan 10 14:32:13 Cc cc-firewall: Running custom rules
Jan 10 14:32:13 Cc cc-firewall: Running common rules
Jan 10 14:32:13 Cc cc-firewall: Running incoming denied rules
Jan 10 14:32:13 Cc cc-firewall: Running user-defined incoming rules
Jan 10 14:32:13 Cc cc-firewall: Allowing incoming tcp port/range 80
Jan 10 14:32:13 Cc cc-firewall: Allowing incoming tcp port/range 1875
Jan 10 14:32:13 Cc cc-firewall: Running default incoming allowed rules
Jan 10 14:32:13 Cc cc-firewall: Running default incoming denied rules
Jan 10 14:32:13 Cc cc-firewall: Running user-defined port forward rules
Jan 10 14:32:13 Cc cc-firewall: Running user-defined proxy rules
Jan 10 14:32:13 Cc cc-firewall: Running user-defined outgoing block rules
Jan 10 14:32:13 Cc cc-firewall: Initializing bandwidth manager:
1000000 kbits up, 1000000 kbits down
Jan 10 14:32:13 Cc cc-firewall: Running 1-to-1 NAT rules
Jan 10 14:32:13 Cc cc-firewall: Enabling NAT on WAN/LAN interface eth0/eth1
Jan 10 14:32:13 Cc cc-firewall: Running default forwarding rules
Jan 10 14:32:13 Cc cc-firewall: Execution time: 0.793s
Jan 10 14:36:16 Cc ntpdate: Synchronizing time with time.pointclark.com
Jan 10 14:37:36 Cc ntpdate: Failed to synchronize: Error : Temporary
failure in name resolution
Jan 10 14:52:30 Cc webconfig: login - root login successful
Jan 10 15:01:02 Cc log2mysql: Processed 0 proxy log lines - 0 records added.
Jan 10 15:01:02 Cc log2mysql: Processed 0 content filter log lines - 0
records updated.

After reconnecting to the modem that was started with Sw
Jan 10 15:51:39 Cc cc-firewall: Running user-defined outgoing block rules...
Jan 10 15:51:39 Cc cc-firewall: Initializing bandwidth manager:
1000000 kbits up, 1000000 kbits down...
Jan 10 15:51:39 Cc cc-firewall: Running 1-to-1 NAT rules...
Jan 10 15:51:39 Cc cc-firewall: Enabling NAT on WAN/LAN interface eth0/eth1...
Jan 10 15:51:39 Cc cc-firewall: Running default forwarding rules...
Jan 10 15:51:39 Cc cc-firewall: Execution time: 0.679s...
Jan 10 15:51:40 Cc dynamicdns: Dynamic DNS detected Internet IP 62.56.86.44...
Jan 10 15:51:42 Cc dynamicdns: Dynamic DNS updated with 62.56.86.44...
Cc has now picked up my dynamicdns given by Demon.

I SEE THE CONNECTION HAS DROPPED WHILST WRITING THIS!

Here is the latest log.

Jan 10 15:51:40 Cc dynamicdns: Dynamic DNS detected Internet IP 62.56.86.44...
Jan 10 15:51:42 Cc dynamicdns: Dynamic DNS updated with 62.56.86.44...
Jan 10 16:01:02 Cc log2mysql: Processed 0 proxy log lines - 0 records added....
Jan 10 16:01:02 Cc log2mysql: Processed 0 content filter log lines - 0
records updated....
Jan 10 16:49:27 Cc cc-firewall: Starting firewall......
Jan 10 16:49:27 Cc cc-firewall: Loading environment...
Jan 10 16:49:27 Cc cc-firewall: Detected WAN role for interface: eth0...
Jan 10 16:49:27 Cc cc-firewall: Detected LAN role for interface: eth1...
Jan 10 16:49:27 Cc cc-firewall: Detected WAN info - eth0 192.168.1.2
on network 192.168.1.0/24...
Jan 10 16:49:27 Cc cc-firewall: Detected LAN info - eth1 192.168.2.12
on network 192.168.2.0/24...
Jan 10 16:49:27 Cc cc-firewall: Setting kernel parameters...
Jan 10 16:49:27 Cc cc-firewall: Using gateway mode...
Jan 10 16:49:27 Cc cc-firewall: Loading kernel modules...
Jan 10 16:49:27 Cc cc-firewall: Loading kernel modules for NAT...
Jan 10 16:49:28 Cc cc-firewall: Setting default policy to DROP...
Jan 10 16:49:28 Cc cc-firewall: Defining custom chains...
Jan 10 16:49:28 Cc cc-firewall: Running custom rules...
Jan 10 16:49:28 Cc cc-firewall: Running common rules...
Jan 10 16:49:28 Cc cc-firewall: Running incoming denied rules...
Jan 10 16:49:28 Cc cc-firewall: Running user-defined incoming rules...
Jan 10 16:49:28 Cc cc-firewall: Allowing incoming tcp port/range 80...
Jan 10 16:49:28 Cc cc-firewall: Allowing incoming tcp port/range 1875...
Jan 10 16:49:28 Cc cc-firewall: Running default incoming allowed rules...
Jan 10 16:49:28 Cc cc-firewall: Running default incoming denied rules...
Jan 10 16:49:28 Cc cc-firewall: Running user-defined port forward rules...
Jan 10 16:49:28 Cc cc-firewall: Running user-defined proxy rules...
Jan 10 16:49:28 Cc cc-firewall: Running user-defined outgoing block rules...
Jan 10 16:49:28 Cc cc-firewall: Initializing bandwidth manager:
1000000 kbits up, 1000000 kbits down...
Jan 10 16:49:28 Cc cc-firewall: Running 1-to-1 NAT rules...
Jan 10 16:49:28 Cc cc-firewall: Enabling NAT on WAN/LAN interface eth0/eth1...
Jan 10 16:49:28 Cc cc-firewall: Running default forwarding rules...
Jan 10 16:49:28 Cc cc-firewall: Execution time: 0.681s...
Jan 10 17:01:02 Cc log2mysql: Processed 0 proxy log lines - 0 records added....
Jan 10 17:01:02 Cc log2mysql: Processed 0 content filter log lines - 0
records updated....

Why has the Firewall restarted?

Is this a firewall problem or what?

This is sent via Sw but I see the dynamicdns has changed but I suppose
Cc did not pick it up. Why?

Clive Woodfine