Menu

#5 Firewall support broken

open
nobody
6
2002-06-02
2002-04-08
Eric Seidel
No

From the reports I have heard, the implemented
Firewall/NAT device bypassing (IP spoofing) which
I have implemented into OpenAG does not seem
to work.

This would be something great for someone to
investigate who has this type of setup, since I am
currently stuck behind several firewalls and a
PPPoE connection.

Discussion

  • Eric Seidel

    Eric Seidel - 2002-04-13

    Logged In: YES
    user_id=151346

    I have had seeming reports from some of this
    working... but I am not sure.

    Here is part of the original complaint:

    I've used it [my router] successfully with LimeWire and
    MacPheX on the gnutella network, and XNap on
    napster clones. The ony thing between me and the
    rest of the world is the router.

     
  • Marc-Andre Lavoie

    Logged In: YES
    user_id=554082

    I'd be happy to contribute as I have a basic configuration :
    A Win98 machine receives the PPPoE connection, and the WinGate
    engine acts as the firewall/proxy. It's directly connected to my Mac
    (running os 10.1.4)
    And I cannot connect with OpenAG. (LimeWire, for example, works fine)
    Here is the error:
    ----
    2002-05-27 14:12:56.094 OpenAG X[365] I recieved an unhandled error
    while attempting a connection to the redirection server: 64.245.58.81, I
    am reseting connection and trying again.

    The error generated was: 60 which means: Operation timed out
    -----

    Which port should I open ?
    Is there anything I should test ?

     
  • Eric Seidel

    Eric Seidel - 2002-06-02

    Logged In: YES
    user_id=151346

    The setup which should "theoretically" work, is the following:

    A router (NAT device) set up to forward ports 41000-42000 to the
    computer running OpenAG.

    OpenAG running, with an IP specified to be THE EXTERNAL IP of the
    NAT device. Specified in the Preferences Pane, or preferences file
    (command line -- only 1.2 dev-test or later).

    That's all.

    For kicks you could also forward port 21 to the computer runing
    OpenAG/OpenAG X.

    If someone could take a TCPDump (inside and outside the NAT device)
    to tell me if things are actually getting redirected correctly... or if
    someone could report a success story... that would be nice.

     
  • Eric Seidel

    Eric Seidel - 2002-06-02
    • priority: 5 --> 6
     

Log in to post a comment.