Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems
Aug 02 04 7:56 pm
I've a problem with WWW gateway selection on W6.
on w2000 Server i've two NIC card (3com): one on the internet IP 82.xx.xx.xx S/N 255.255.255.248 GTW 82.xx.xx.xx. the other on the intranet 192.168.1.xx S/N: 255.255.255.0 GTW 192.168.1.10. the intranet DMZ is linked to the internal firewall so the intranet gateway (192.168.1.10) must be present.
In such schema Wingate 6 doesn't work even if i assign the external GTW and IP on the WWW service gateway.
N.B: if i clear the intranet gateway (192.168.1.10) all works fine, but i can connect only form the DMZ because of the firewall. I cannot switch off the firewall because of other external connection.
Can anybody help me, to make wingate yo work in such schema?
Aug 02 04 9:08 pm
When you say intranet gateway, is that another firewall going into your internal LAN?
What adapter usage do you have set on this adapter in WinGate? Internal or DMZ?
DMZ is only for use if you have public IP addresses on that adapter, so you would in your case need to specify that adapter usage as Internal.
Gateway selection is for when you need to connect to say the Internet THROUGH a gateway. So, does this 192.168.1.10 machine have its own internet connection?
Adrien
Aug 02 04 9:20 pm
Yes another firewall is on the internal LAN. (NetScreen)
The adapter usage is set manually to INTERNAL.
the 192.168.1.10 is the gateway port of the firewall (there are 4 Sub Lan: 192.168.0; 192.168.1; 192.168.2; 192.168.3; and an external WAN 80.xx.xx.xx not to be used for normal internet traffic). The normal internet traffic should be redirected on Wingate on the external IP 82.xx.xx.xx.(an ADSL Line with 16 static IP) not connected to the main firewall.
The problem is that all the pc on the 4 sub LAN must see Wingate and if I remove the gateway on 192.168.1.10 wingate is seen only by the PC on the local LAN 192.168.1.xx. and not by the others LAN.
Aug 02 04 11:30 pm
Sounds like you might be better off with specific routes on the WinGate machine to the internal subnets through the DMZ gateway.
E.g. if you go to the WinGate machine and type from a command prompt.
route add -p 192.168.0.0 MASK 255.255.255.0 192.168.1.10
route add -p 192.168.2.0 MASK 255.255.255.0 192.168.1.10
route add -p 192.168.3.0 MASK 255.255.255.0 192.168.1.10
Then you can remove the default gateway setting on the internal adapter, and your LANs will still have access to the WinGate server.
Adrien
Aug 03 04 9:24 am
It seems to work, fine!
Thank you.
Giuseppe
Powered by phpBB © phpBB Group.
phpBB Mobile / SEO by Artodia.