Tech Zero said:
Reality folded in on itself, and somewhere the following words from
"geo" appeared in history:
All NAT routers also act as border firewalls. You may want to turn on
SPI (advanced/filters), but it doesn't really add much. If you have
any issues with P2P or IM clients drop me a line an I'll try to help.
I was going to quietly email you with a question but I assume
"(e-mail address removed)" isn't a valid address.
I've been using a very old Version 1 BEFSR41 for maybe 8 months
with good success, with http, https, telnet, ssh, ftp, and some
other necessary services all seeming to work in this configuration.
Qwest DSL only supports ActionTec DSL modems with a custom version
of firmware running NAT to a single computer, anything else and it
"is my problem." It only has a single wired port so I have used the
Linksys, also with NAT, to provide connections to the three computers
here, everything given static ip addresses, and it all worked fine.
When I was trying to figure out why I couldn't get Tivo to work
using this I found it was hanging when trying to set the time. Then
I realized the computers weren't setting the time, and not just
because of an old Microsoft patch that broke this. This specific
problem was tracked down to probably being the ActionTek firewall
policy but I can deal with that later. First there is a problem.
One person said that I should update the Linksys firmware because
it was almost five years old, the new version would fix some security
problems and I would have more options to set firewall rules.
So I went to the Linksys site, went down into the Version 1 firmware
page, downloaded 1.46.02 and successfully installed it in the
Linksys. Initially everything looked ok, ssh continues to work,
http and https work. But now ftp, telnet, and several other services
I need and that have been working for many months now all fail or
hang.
I've tried resetting the Linksys to factory defaults and then
re-entering ip addresses, mask, etc. I've tried checking all the
web pages for configuring it and I don't see anything out of line.
I wasn't doing any port forwarding when using the old version.
I don't believe I made any changes to the ActionTec configuration
so I'm guessing that it isn't the problem at this point.
To try to diagnose this, if I enable the outgoing log in the Linksys
and I try to ftp out to a host I've used many times I do get one
line in the Outgoing log table showing FTP. If I try to diagnose
what the ActionTec is doing, all it will show is the NAT table and
the "Web activity log" so I can't really see a logfile the way the
Linksys can, but I do see entries show up in the NAT table when I
try to open an ftp session, so I'm guessing the packet got to the
ActionTec and likely went out.
My guess at this point is that somehow returned packets are getting
dumped, likely by the Linksys because of the new firmware. I found
various posts on the web describing how many different versions of
new firmware for the Linksys broke something for someone.
So, what I'd like to do at this point is forget trying to get time
sync to work and just get back to having ftp and a couple of other
ports work that worked with the old firmware version. I don't think
I have the old firmware version number, and even if I did the ftp
host for Linksys doesn't seem to include Linksys version numbers
along with the firmware version numbers for anything but the latest,
and different router versions use different firmware.
I'd appreciate any assistance.
Thanks
Email address is valid, I've been "dont" since BEFORE there was spam!