RV042 port forwarding / routing

Hello folks,
I'm having a really hard time tring to set up port forwarding to my LAN. Let me explain a bit of how my enviroment is set up.
RV042 -> MS-TMG (former ISA Server) -> LAN
RV042 WAN IP: Public IP (Does not matter)
RV042 LAN IP: 10.31.11.1
TMG WAN: 10.31.11.2
TMG LAN: 10.3.1.2
I've set up a port forwarding directing port 3002/TCP to 10.31.11.2 (TMGWAN) so that TMG can redirect to my LAN, but when I look at TMG Log, I see that the packages have the destination address of TMG WAN (10.31.11.2).
I don't know why RV042 is changing the destination address of the packages and for the TMG it seens that the packet is coming for him (wich is not true and it's not allowed).
I can't port forward to my lan (10.31.1.x directly bacause of the webinterface does not allow this).
I've also tried DMZ but the behavior is the same.
I've also tried uPnP but the packages are not arriving at TMG...
Here is the route table of RV042
200.XXX
255.255.255.255
186..XXX
40
ppp0
200..XXX
255.255.255.255
186..XXX
40
ppp0
186..XXX
255.255.255.255
40
ppp0
186..XXX
255.255.255.255
45
ipsec1
189.XXX
255.255.255.255
40
ppp0
189.XXX
255.255.255.255
45
ipsec1
10.31.11.0
255.255.255.0
50
ixp0
10.31.3.0
255.255.255.0
186.213.76.1
10
ipsec1
10.31.2.0
255.255.255.0
186.213.76.1
10
ipsec1
10.31.1.0
255.255.255.0
10.31.11.2
2
ixp0
10.31.1.0
255.255.255.0
50
ixp0
default
0.0.0.0
186.XXX
40
ppp0
Does anyone have a clue how can I get this thing working?

Hi Eric, the default state table may be the problem.
Try to make an access rule something like-
Action Deny
Service All
Source interface WAN
Source IP any
Destination IP any
Save
Action Permit
Service RDP
Source interface WAN
Source IP -xx.xx.xx.xx
Destination IP - xx.xx.xx.xx
Save
-Tom
Please mark answered for helpful posts

Similar Messages

  • RV042 Port forwarding stops working when Firewall is enabled

    Hey all,
    I have a RV042 router on a single WAN and an internal LAN. I have configured port forwarding as follows:
    HTTP[TCP/80~80]->10.0.0.6
    HTTPS[TCP/443~443]->10.0.0.6
    IMAP[TCP/143~143]->10.0.0.5
    IMAP SSL[TCP/993~993]->10.0.0.5
    SMTP SSL[TCP/587~587]->10.0.0.5
    Everything works just fine when I have the firewall DISABLED. However, when I enable it the behaviour is erratic. 1 out of 10 attempts to connect to ANY port forwarded works. Almost all attempts time out.
    Notice that this happens even if using only the default firewall rules (which should be bypassed by the port forwarding as I read in other posts).
    My second try was to create firewall rules manually, overriding the default ones. I tried adding rules from source WAN1 (where my connection is) to ANY and to SINGLE IP's on every port. Nothing seems to work.
    I don't know what I'm doing wrong, this is really bugging me. I had to turn the firewall off so we can access our servers from outside the office. This shouldn't have to be done.
    Do you know anything I could try?
    Best regards,
    Theo
    EDIT:
    Just found out that my firewall is getting LOTS and LOTS of Blocked - SYN Flood entries. I think this is why we are having trouble with the firewall. Could this be the problem? I have no idea where all these SYN packets are coming from since they appear with spoofed IPs or come from different bots all over.

    Hi Theo, if you want to over ride the default state table, you need to first make firewall rules to block all access then make your permission rules.
    Such an example would be-
    Action Deny
    Service All
    Source interface WAN
    Source IP any
    Destination IP any
    Save
    Action Permit
    Service RDP
    Source interface WAN
    Source IP -xx.xx.xx.xx
    Destination IP - xx.xx.xx.xx
    Save
    As for your concern about the syn flood, it can be a likely cause of your problems. Does the logging facility of the router give any indications?
    -Tom
    Please mark answered for helpful posts

  • Port Forwarding/Router Firewall HELP

    I'm trying to use my iSight built in cam with "aMSN" and they give me error messages when I configure. It says I have firewall/port issues to free up or something. Here's what help says to do:
    "To do this, open your router web-based configuration (check router manual for details on this). Once you have the web-based configuration open, browse for a setting called "port forwarding" or "port range forwarding" or something similar to that. (This might be found under the advanced features for your router).
    Now that you have the port forwarding page open, you will want to set the port forwarding range so that aMSN will be able to accept and send the webcam stream.
    Here's an example of how you will set up your port forwarding:
    Application: aMSN
    Start: 6890
    End: 6900
    Protocol: Both(TCP & UDP)
    IP: xxx.xxx.x.xxx
    Enabled: X (Yes/True)
    Note: xxx.xxx.x.xxx is the IP of your machine that you are trying to send / receive webcam
    If you have a web server open on your port 80, you can try to disable it too, sometimes it helps. "
    All I'm asking is how do I get to the port forwarding page to do what they have displayed above? I've tried Apple support topics on the subject and all were irrelevent or only dealt with iChat.
    Any ideas? Thank you!

    Are you using an Airport? If not, what type of router do you have connected? Each manufactor is different, but should provide the information in their manuals.

  • RV042 Port Forwarding bypassing ACL

    I have a RV042 with Port Forwarding configured for RDP. This Port Forwarding Rule is being applied before my ACL - so subnets that are not authorized through are being allowed in. Firmware version 4.0.0.07. Any help would be greatly appreciated.                  

    Hi Eric, the default state table may be the problem.
    Try to make an access rule something like-
    Action Deny
    Service All
    Source interface WAN
    Source IP any
    Destination IP any
    Save
    Action Permit
    Service RDP
    Source interface WAN
    Source IP -xx.xx.xx.xx
    Destination IP - xx.xx.xx.xx
    Save
    -Tom
    Please mark answered for helpful posts

  • Port forwarding router to connect to netflix

    panasonic is telling me i have to port forward on router ( airport express) in order for me to connect to netflix. How do i do this?

    As I stated this is not a feature of an Airport Express.
    Normally, ports 80 and 443 are always open. The former is a standard http port. The latter is a standard https port typically used by email applications. Port 48705 is not used by OS X.
    You will need a standard type of router such as an AEBS. An Airport Express is not a true router.

  • RV042 Port Forwarding

    Router has latest firmware.  WAN1 connected, WAN2 not connected
    RDP 3389 & 3390 are forwarded and functioning correctly.  Port 8080 functions correctly when configured for Remote Management.  I have Port 8081 functioning as Remote Management currently.  I forward Port 8080 and it still remains blocked at the router?  I have tried all HTTP/HTTPS ports and they are blocked at the rounter as well

    Hello,
    Thank you for your reply,
    As a first step i am glad to know that what is done is enough and there is no step(s) missed.
    On my first comment, i mentioned that i am using the Linksys router on dual mode and not DMZ mode; does that have any relation with the current problem?
    Concerning firewall, firstly i disable the firewall on the Linksys router.
    Second, i configured a laptop with the application Xerver to act as a webserver on port 80. i tested accessing this laptop through a lan switch and test was ok.
    i tried the same test through the Linksys router where i connected this webserver laptop to a one of the lan ports of the Linksys router, and with the same config of port forwarding on the Linksys (i just modified ip address of the webserver to be the ip of the laptop) and tried to open http access through internet explorer to the ip of the Linksys router and test was negative. Test failed.
    So the problem is not related to a misconfig on the isa(firewall,..)
    So this indicates that there is a problem specifically in forwarding traffic from wan interface to lan interfaces. but i am not able to identify where this problem is.
    What do you advise?
    note: when i do enable remote mgt for the rv router, i get to the authentication screen of the rv router where i should enter username and password.
    thank you again,

  • RV042 - Port forward/translation from ext to int

    Hy,
    I recently buy a CSRV042-EU. I need to make a translation port to acces remote some of my server on lan.
    I use a primary WAN with static IP 83.166.XXX.XXX .The LAN has aprox. 30 clients.
    I want to acces remote one of the computer from LAN, as example:
    83.166.xxx.xxx:10101 -> 192.168.10.10, using 10101 as external port and 3389 as internal port for remote on 192.168.10.10 machine
    83.166.xxx.xxx:10102 -> 192.168.10.11, using 10102 as external port and 3389 as internal port for remote on 192.168.10.11 machine
    I don't konw how to do this forward because in Port Forward i cannot find the option to enter teh ext port and the int port.
    Could you please help me with an example, how ca i make this forward?
    Thank you !

    I know it's been this long post, but I have the following question ...
    I have several external IPs and would like to designate for each type of service.
    eg:
    200.0.0.1 => http => 10.0.0.2
    200.0.0.2 => https => 10.0.0.1
    How could this setting in RV?
    Today I have two models in the network-to-VPN Gw Gw the RV016 and 042.
    Regards,

  • RV042 port forwarding issue

    I have a RV042 using (for now), just the single WAN interface. I am trying to forward all packets to port 9000 from the WAN to a single IP address on the network.  I've set up both forwarding rules under Setup -> Forwarding and under the Firewall -> Access Rules.
    I cannot connect to my device from the outside world, however.  Is there something I'm missing?

    Scott,
    Can you please let me know if you are able to access the device via the local Lan IP Address with the required port number? Also, can you please let me know what firmware version you are running on the device?
    Thanks,
    Blake Mereby

  • Cannot Port Forward RV042 in "Router" Mode

    I use an RV042 exclusively as our VPN host to our main network for branch office connectivity. The RV042 is configured in Router Mode and does not provide Internet / NAT access to the LAN. I would like to add an additional role to this unit by having it Port Forward web requests to an internal Web Server. It appears that the router cannot do Port Forwarding while configured in Router mode; can you confirm this to be true? Is there a work around or an alternate configuration that would allow me to port forward web requests from the Internet to my Internal Web Server and still keep the RV042 in Router only mode?
    Thanks

    Mike,
    The port forwarding feature only works in the context of NAT. This is true for all small business routers.

  • Port Forwarding with Port Translation RV042, RV016, RV082

    This is a feature request for the Linksys RV series Routers.  Currently, it appears that the Cisco/Linksys RV042, RV082, and RV016 only support port forwarding and 1-to-1 Nat.  One item that I find very helpful with customers is port forwarding with port translation.  I am requesting that this feature be included with a future firmware relase for these RV series routers.
    Here is an example of the request.
    Take an incoming service request on a TCP or UDP destination port and forward it to an internal IP on a different TCP or UDP port.  For example, customer A wants to allow different machines on the internal network to receive Windows RDP connections inbound.  To make PC maintenance identical between the internal machines, the customer does not want to change the listening port for RDP on the individual PC workstations through the Windows Registry.  The customer also does not want to dedicate separate IP's to each machine in a 1-to-1 NAT setup.  The only option is to have remote connections to each of these PC's to use a different destination port.  So, for example, PC one could be reached on TCP port 5151, PC two on TCP port 5152, and PC three on port 5153.  This requres a firewall that is able to translate each of these connection requests to a different internal IP on the default RDP port (TCP 3389).  So, the following setup is required:
    Port Forwarding with Port Translation:
    Router External IP on TCP port 5151 ---> forwarded to PC One's internal IP on TCP 3389
    Router External IP on TCP port 5152 ---> forwarded to PC Two's internal IP on TCP 3389
    Router External IP on TCP port 5153 ---> forwarded to PC Three's internal IP on TCP 3389
    There are several comparable "small business" class router competitors to the RV042, RV082, and RV016 that will perform this port forwarding with port translation process without incident.  Unfortunately, these Cisco/Linksys small business routers will not accomplish this task currently.
    Please implement this feature in a future firmware release.
    Thanks!

    Excellent.  I see this now.  None of our customers actually use the UPNP feature, so we never realized that Port Forwarding with Port Translation features existed on this page along with the ability to enable or disable UPNP.
    Perhaps, in the future, this functionality could be moved to and incorporated into the port forwarding page which seems to be a more logical location.
    In either case I'm very happy to know that this feature is available on the RV's.
    Thanks for your assistance.

  • RV042 vpn&port forwarding problems

    Hello,
    I spent a few days trying to configure  the RV042 router but I messed up. I need this router for VPN access on my  site and Port Forwarding to an internal web server. Apparently very  simple task, isn't it?
    So:
    1. PPTP is working fine but I need more than 5 concurrent accesses.
    2.  Quickvpn does not work when the DHCP server is checked  and I can't  access any computer from my lan. I have a DHCP server in my LAN but when  I'm conected through Quickvpn I never reach it. In the log file there  are messages like:
    Connection refused - Policy violation TCP 169.254.x.x->192.168.1.2 (DHCP server from my lan)
    3.  On Setup > Forwarding I added a Port Range Forwarding for HTTP port  80 to an internal IP address (192.168.1.x). I although added a firewall  access rule to allow traffic to Port 80 from any source interface and  any source IP to 192.168.1.x.
    From the internal LAN, using the WAN IP of the router,  the Port forwarding works but not form the outside, though in the log file of the router it appears to work:
    Connection Accepted TCP 208.64.252.230:33027->192.168.1.x:80 on ixp1
    What could I have done wrong?
    The  router is configured with a static address as a gateway and it has the  latest firmware 1.3.12.19-tm. The access rules are the default ones and  the one I added.
    Any help would be much apreciated.
    Thanks.

    Can't answer as to why QVPN fails when you enable DHCP on the router, but concidering your requirements it seems to be a moot point. So, you have a DHCP server on your network which I will guess is also running your Web service. If this is a Windows server does your current configuration allow you to enable PPTP on it? If so, that would solve the five user limit. You will need to turn off the PPTP server on the router and then forward port 1723 TCP to your server and you are done. As for your http access, remove any rule that you have in reference to "allow" port 80 connectivity to your web server. Not sure why but this tends to confuse the poor little things. Once you have verified that port 80 is active on the server via the LAN (which you already have) then you are done. If you are still not successful with the connection to the server from the WAN you may want to default the router and start over (lame I know).
    *** SORRY, just noticed that you stated that you added a "port range" forwarding rule. Remove that, and configure a UPnP rule for the same server instead. Do not know why they call it that, they just do. This is the same as configuring a single port forward they just call it something different. So just port forward 80 tcp to your server on 192.168.1.x and you are done.

  • Port Forwarding for Counter Strike Server - DSL Modem to Linksys Router then to my Laptop (wifi)

    Hi,
    i have read many posts here but did not find any solution. Below is my current situation.
    Objective: I want to create a Counter Strike 1.6 Server and for that i have to forward port 27015.
    Networking Issues: Im currently using a Shiro (Dsl Modem) which is given by my ISP & i have connected my DSL modem to my Linksys WRT54G (ver 7.2) router. I connect my laptop thorugh wifi to router.
     I know basic port forwarding but that does not help me. I need a complete tutorial on this issue coz i dont have much network knowledge.
    waiting for reply
    thank you

    Try this link to forward port for Counter Strike on the router.

  • Can not port forward on WRT54GS v6 "You cannot use the router IP"

    Hello, I'm trying to open a port number, but when I try to use my router's IP, the following message appears
     "You cannot use the router IP, network, or broadband address"
    [IMG]http://i45.tinypic.com/107qond.jpg[/IMG]
    My ADSL was working as a NAT behind a NAT connection, so I had to change my Local IP Address to 192.168.2.1.
    Router: WRT54GS v6 firmware 1.52.8 (latest)  -  Bellsouth router: Westell 6100
    Microsoft Windows [Version 6.1.7600]
    Ethernet adapter Local Area Connection:
       Connection-specific DNS Suffix  . : launchmodem.com
       Link-local IPv6 Address . . . . . : fe80::40a9:a76e:61b3:6435%11
       IPv4 Address. . . . . . . . . . . : 192.168.2.100
       Subnet Mask . . . . . . . . . . . : 255.255.255.0
       Default Gateway . . . . . . . . . : 192.168.2.1
    So, please help me, how can I open ports on my router? =[
    PS: I tried to use 192.168.2.100, and even though it lets me use it, it still seems not to open that port... my IP is dynamic.

    Generally: NAT behind NAT is a bad idea. There is usually no need for double NAT. Either configure the ADSL router as bridge and use the WRT for your internet connection or set up the WRT as simple access point behind the ADSL router.
    It's also unclear to me what is working or not. First I thought you can't set up forwarding at all because you get that error message. Then, in your PS you write you tried to use 192.168.2.100 and that seemed to be possible. The IP address to forward to must be the IP address of the computer to which you want to forward. Thus 192.168.2.100 is exactly the IP address you have to set up. Does this work or not?
    Also remember: with double NAT you must set up two forwardings: first on the ADSL router then on the WRT. Port forwarding is necessary to allow incoming traffic through NAT. All incoming traffic arrives on the ADSL router. Thus setting up port forwarding on the WRT only won't do a thing.
    It's also not recommend to use dynamic IPs for forwarding destinations. Dynamic IP addresses may change over time and that requires you to adjust forwardings accordingly. It's better to reserve fixed IP addresses (if your WRT supports this) or set a static IP address on the computer outside the DHCP address pool.

  • Linksys E1200 Router not saving Port Forwarding changes

    Hi!
    I am currently attempting to port forward on my Linksys E1200 Router and am not succeeding in saving my settings. I am attempting to open port 25565 though both Single Port Forwarding and Port Range Forwarding, and whenever I click the "save settings" button, I receive a full window message stating that my changes have been saved. Upon clicking this, I return to the previous screen whereupon my changes have been erased and my port has not been forwarded. Can anyone assist me with this? I've searched for hours through forums and tech help websites, but I can't find anyone else with this issue.
    Issue:
    Linksys E1200 Router not saving Port Forwarding changes.
    I have tried:
    -Restarting the Modem
    -Restarting the browser
    -Restarting the computer
    -Tried to Port Forward through both the Single and Ranged Port Forwarding

    Hi there. You can try another browser or a different computer. If it is the same thing, upgrade the firmware of the router. You can refer to this link on how to http://www6.nohold.net/Cisco2/ukp.aspx?vw=1&docid=0a6881b90224439b92c8d8f19ca42e5d_21511.xml&pid=80&...

  • Please Help, Setting up router and AirPort with port forwarding

    If anyone can help me it would be greatly appreciated.
    I have a DSL Router supplying my internet connection, this is then connected to my AirPort Base station and distributes my internet connection to my two Macs and my two iPhones. Everything is working fine, however I want to forward some of the ports and I cannot do this since the base station is in bridge mode. If I take the AirPort base station out of bridge mode it gives me an error that say's Double NAT.
    Thanks in advance for any help.

    "When the AirPort Extreme base station (AEBS) is in bridge mode every port is already forwarded directly through the AEBS. ... Therefore the option to forward ports is unneeded and not available."
    I don't believe this to be true. Isn't port forwarding done on the router and not the AEBS, as it is not a router?
    Go into your DSL router by typing the routers address (found in the network pane in system preferences) into your browser's window. This should take you to your log-on page on your router.

Maybe you are looking for

  • Error in format

    In resin this program work just fine, one exception. In dos it prints out, "Error in format". I then tried to run it in tomcat, tomcat then printed out a error. "java.lang.IllegalStateException: getWriter() has already been called for this response"

  • Comparing values in a vector!!

    I solved my previous problem, but now i've come across another, it seems my unfamiliarity with vectors aint helping, oh well practice makes perfect. Anyway I've written a method which will iterate through a list of numbers using a vector and delete a

  • R12 Translation process (vs. 11.5)

    Currently, in our 11.5 instance, we run translation within each non-USD set of books at month-end, prior to transfer into our consolidation set of books. The rates used seem "normal" to me: - P&L activity at month-end average rate - Assets/Liaibiliti

  • Multiple business roles and org data determination

    Hello together, we are having an issue with the organizational data determination. Some users have multiple business roles in different sales organizsations. This means, they are assigned to several units in our org modell. This users can select the

  • Scripting in FrameMaker

    This question was posted in response to the following article: http://help.adobe.com/en_US/framemaker/using/WSd5e89bb44d752f2f4e0f6b6612c81bacb1a-8000.ht ml