Das Profi-Forum für LANCOM-User
LANCOMs günstig bei Ebay ersteigern
LANCOM

 Static Ip Addresses on 1722
Nächstes Thema anzeigen
Vorheriges Thema anzeigen
Beiträge der letzten 24 Stunden anzeigen

Neues Thema eröffnenNeue Antwort erstellen
Autor Nachricht
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mo 25 Sep, 2006 12:04 Antworten mit ZitatNach oben

Hello all,

've a 1722. I have 8 static Ip addresses (217.221.x.208/29), I've configurated my internet access (PPPoA, Encapsulation VC-MUX). Everything works fine, except the fact that my 1722 doesn't take one of the static Ip addresses, but one given by the provider (something like 88.20.25.x). (I saw that with Lanmonitor)

Does someone know where I have to specify my static Ip addresses, or what else I have to do to configure them?

My LAN is 192.168.100.x and my router is 192.168.100.253.

Thank you a lot
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Guest






Verfasst am: Nach oben

backslash
Moderator


Anmeldungsdatum: 08.11.2004
Beiträge: 4571
Wohnort: Aachen

BeitragVerfasst am: Mo 25 Sep, 2006 14:59 Antworten mit ZitatNach oben

Hi Voixes,

to be able to use the static adresses, you have to configure the router's DMZ, e.g. DMZ-address 217.221.x.209, DMZ-netmask 255.255.255.248. If you do so, the router requests the DMZ address from your provider. However, the provider still may assign a different address to the router. If so, ther provider needs this as a transfer network - don't care about it.

The only important point is, that you are able to access the router on its DMZ address (and all other hosts in your DMZ) from the internet (don't try this from your intranet, because in this case the router just sends the packtes to your DMZ bypassing the internet).

regards
Backslash
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Fr 13 Okt, 2006 19:45 Antworten mit ZitatNach oben

backslash hat folgendes geschrieben:
Hi Voixes,

to be able to use the static adresses, you have to configure the router's DMZ, e.g. DMZ-address 217.221.x.209, DMZ-netmask 255.255.255.248. If you do so, the router requests the DMZ address from your provider. However, the provider still may assign a different address to the router. If so, ther provider needs this as a transfer network - don't care about it.

The only important point is, that you are able to access the router on its DMZ address (and all other hosts in your DMZ) from the internet (don't try this from your intranet, because in this case the router just sends the packtes to your DMZ bypassing the internet).

regards
Backslash

Hi there,

ok, that's fine. I've configured several static ip addresses as you told me.
Now, I've a device, in my local are network that I want to map on a static IP addess, so that I can use my telnet client to access it.
I've tried to use N:N mapping, configuring the Remote Access with my adsl connection, Original source address the static IP address that I want to use, Netmask 255.255.255.255, and Mapped source address the ip address of the device in the LAN.

but if I try to reach it with telnet, I directly connect to my 1722.

Where do I get wrong?
So, to summarize, I want that everything that goes on one of my static Ip adresses, goes inside my Intranet, directly to a device/pc/firewall/everything that I want ^^'

Thank you all so much

Kind regards
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
backslash
Moderator


Anmeldungsdatum: 08.11.2004
Beiträge: 4571
Wohnort: Aachen

BeitragVerfasst am: Mo 16 Okt, 2006 14:28 Antworten mit ZitatNach oben

Hi Voixes

Zitat:
Original source address the static IP address that I want to use, Netmask 255.255.255.255, and Mapped source address the ip address of the device in the LAN.


do it vice versa...

the origninal address is the computer's real LAN address and the mapped address is the address on which the computer is seen from the internet

regards
backslash
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mo 16 Okt, 2006 20:36 Antworten mit ZitatNach oben

backslash hat folgendes geschrieben:
Hi Voixes

Zitat:
Original source address the static IP address that I want to use, Netmask 255.255.255.255, and Mapped source address the ip address of the device in the LAN.


do it vice versa...

the origninal address is the computer's real LAN address and the mapped address is the address on which the computer is seen from the internet

regards
backslash


Hi Backslash,
thanks for your support.

Ok, I've done it, but it seems not to work. If I map an Ip address as you told me, then I cannot even ping it. Otherwise, all the other public IP addresses that i've configured in my dmz, they all work and they route my directly on my 1722.
I haven't configured anything in my Inverse masquerading list, the DMZ part is configured with my static IP addresses with DMZ check on loose.


Where do I get wrong? Do I miss something?
Thanks a lot for your help
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mo 16 Okt, 2006 22:33 Antworten mit ZitatNach oben

Zitat:


Hi Backslash,
thanks for your support.

Ok, I've done it, but it seems not to work. If I map an Ip address as you told me, then I cannot even ping it. Otherwise, all the other public IP addresses that i've configured in my dmz, they all work and they route my directly on my 1722.
I haven't configured anything in my Inverse masquerading list, the DMZ part is configured with my static IP addresses with DMZ check on loose.


Where do I get wrong? Do I miss something?
Thanks a lot for your help


Hello Backslash,
sorry, i did before something wrong.
Now, i can ping and reach one of the addresses mapped to one of my computer, but if I try to reach it with a webbrowser, I still go on my 1722 page.It seems that it doesnt' route my request.

Suggests?

Thanks and best regards
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mi 18 Okt, 2006 14:39 Antworten mit ZitatNach oben

None can help me? T_T
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
backslash
Moderator


Anmeldungsdatum: 08.11.2004
Beiträge: 4571
Wohnort: Aachen

BeitragVerfasst am: Mi 18 Okt, 2006 14:46 Antworten mit ZitatNach oben

Hi Voixes

if you can ping the host, yoe can reach it with the browser, too - what you describe is *impossible* (except you have configured a proxy, which delivers wrong pages).

regards
backslash
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mi 18 Okt, 2006 17:00 Antworten mit ZitatNach oben

Hi Backslash,
it seems impossible to me too but it's like this. N:N configured as you told me, if I digit the static ip address that i've mapped on one of my machine in my LAN, it still bring me on my 1722 webpage.
Do you have any idea what it can be?

Kind and best regards
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
backslash
Moderator


Anmeldungsdatum: 08.11.2004
Beiträge: 4571
Wohnort: Aachen

BeitragVerfasst am: Mi 18 Okt, 2006 21:01 Antworten mit ZitatNach oben

Hi Voixes

i can't believe this...
make an IP-router trace of this. one for the ping and one for the browser...

regards
backslash
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Do 19 Okt, 2006 09:48 Antworten mit ZitatNach oben

Hello Backslash,

here it is how i've configurated my 1722.

note that if, with my webbrowser, I digit the static ip address that I've configured in my N:N mapping, I go on my 1722 webpage.

Kind regards

Voixes[/img]



N.N.JPG
 Beschreibung:
 Dateigröße:  97.9 KB
 Angeschaut:  1317 mal

N.N.JPG



TCP.IP Loopback.JPG
 Beschreibung:
 Dateigröße:  90.68 KB
 Angeschaut:  1317 mal

TCP.IP Loopback.JPG



TCP.jpeg
 Beschreibung:
 Dateigröße:  90.86 KB
 Angeschaut:  1317 mal

TCP.jpeg


Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Fr 20 Okt, 2006 09:30 Antworten mit ZitatNach oben

goodmorning Backslash,

have you seen the screenshots?
Which tool should I use to make traces? The telnet client?

Kind regards

Voixes
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
backslash
Moderator


Anmeldungsdatum: 08.11.2004
Beiträge: 4571
Wohnort: Aachen

BeitragVerfasst am: Fr 20 Okt, 2006 14:15 Antworten mit ZitatNach oben

Hi Voixes

Zitat:
have you seen the screenshots?


Yes, and i also saw your mistake.

You configred the addresses you want to reach as loopback addresses. In this case it ist clear, that the LANCOM answers, because the loopback addresses are addresses the LASNCOM owns. Just remove all loopback addresses, and it will work.

Zitat:
Which tool should I use to make traces? The telnet client?


yes, but i think it is no longer needed...

regards
backslash
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mi 01 Nov, 2006 17:05 Antworten mit ZitatNach oben

Hi there Backslash

the pain is not yet finished...I've done what you told me. Result: still not able to reach my device:

here is the ip router trace. As you can see, there's the ping request from MY public ip address, correctly routed to the internal device, and the answer from it.
But I still can't get the ping back, or enter via webbrower.

Firewall is configured not to block anything from and to the device (192.168.100.208)

Any suggest?

Kind and best regards

Voixes



ip router trace.rar
 Beschreibung:

Download
 Dateiname:  ip router trace.rar
 Dateigröße:  367 Bytes
 Heruntergeladen:  18 mal

Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Voixes



Anmeldungsdatum: 25.09.2006
Beiträge: 17

BeitragVerfasst am: Mi 01 Nov, 2006 17:08 Antworten mit ZitatNach oben

Do I perhaps have to ack also on the inverse masquerading? As long as I know, N:N mapping should forward all the port as well.

Kind and best regards again

Voixes
Benutzer ist OfflineBenutzer-Profile anzeigenPrivate Nachricht senden
Beiträge der letzten Zeit anzeigen:      
Neues Thema eröffnenNeue Antwort erstellen

 Gehe zu:   

Nächstes Thema anzeigen
Vorheriges Thema anzeigen
Beiträge der letzten 24 Stunden anzeigen