WRT54GS Advanced Routing for Public Access

Hi,
I have searched everywhere for what should be a simple task. I have done this with many routers, but this linksys just doesnt want to play ball!
The senario;
I have a BT wireless router modem which has my private network (192.168.1.x). This is to act as my defaut web gateway (192.168.1.1)
I have this wireless linksys router which is configured with the IP address 192.168.0.1 and allows people to connect (192.168.0.x).  I have pluged the private router (bt router) into the WAN port of the linksys.
I basically want to let public users to connect to the linksys wireless router and get internet access.  I dont want them to see my private network- ie you should not be able to access (192.168.1.x).
I thought that normally it's not possible to see the 192.168.1.x network connected to the WAN port over the 192.168.0.x (public) network; however I can see everything on both the WAN network and linksys router network.
Do I need to use the advanced routing settings?  If so, should the device be configured as a router or gateway?  Should I use RIP and should I put a static route in for the router connected to the WAN port?
I don't expect a full answer, but any guidance would be wonderful!
I think I need to add a static route for the gateway and somehow make sure everything else is blocked? 
Regards,
Luke. 

Of course, everything connected to the Linksys router can see everything connected to the WAN port side or the internet. This is how every standard router works: you have a LAN side which is protected from the internet and you can access everything in the internet.
Due to that, the correct setup for two separated networks is to connect the public network first to the internet connection and then connect the private network with a router to the public network. Basically you would have to swap your two routers.
Unfortunately, the first router is your modem which means you cannot swap them.
There is nothing you can do on the WRT54GS to prevent access to your 192.168.1.* IP addresses. It's not possible.

Similar Messages

  • SAP systems for public access with OSS ID

    Hi, experts,
    I heard that there is a community in SDN which allow users to access SAP systems (such as CRM, XI/PI, etc.) to test and try things.
    (1) Is that true ? What is the URL ?
         If not, is there any site for public access to SAP systems with or w/o fees ?
    (2) Is there Test Drive for XI/PI ? Could not locate it under downloads.
    Thanks.
    Hans

    Hi Hans,
    As far as I know there is no such site with public OSS ID and free XI test drive.
    But you will get plenty of material from SDN.
    -Pinkle

  • Configure WRT54G Wireless Router with PUBLIC IP address and use DHCP for internal computers

    Hi,I have an Internet online service with 5 public IP addresses. The router and the AP are connected to a switch. I would like to configure a WRT54G wireless router with one of this IP public Address and use DHCP (with private ip address)  for the computers that will connect to the AP. As the AP is connected to the switch it is possible that other wired computers that are connected to the same switch can obtain an IP address from the DHCP ?
     Thansk in advance
     

    Thanks for your help. Please correct me if Im wrong. After connecte the equipments the way you suggestI setup a static IP address (The public IP)  in the WRT54GI enable DHCP in the WRT54G with a range from 10.10.0.100 to 10.10.0.200 (as an example) The gateway is the Public IP address right ? How do I route the 10.10.0.x addresses to the public IP address. Thansk again 

  • WRT54G Advanced Routing

    I currently have a WRT54G as a Gateway to my network.  The ISP connection plugs into the WAN port, and then the WRT54G plugs into a switch, and all other computers plug into the switch.  The router's internal address is 192.168.1.1 /24 and all computers get a DHCP address from the WRT54G from 192.168.1.50-150 /24.
    I am putting in a Sonicwall (I will give it address 192.168.1.2) and want the WRT54G to use the Sonicwall as the Gateway; that is, plug the ISP into the Sonicwall, and connect the Sonicwall to the WRT54G, and all other connections remain the same.  I know I have to use Advanced Routing to switch from Gateway to Router mode, but I am unsure what the other settings should be (RIP, Select Set Number, Destination LAN IP, etc.)  The WRT54G must remain in the network.  How can I make this work?

    Thanks for replying, but I'm hoping to get some help with this problem.  The device needs to be in the chain, and I have done it before, so I know it can work, but sadly, I did not document how I made it work =/
    "I currently have a WRT54G as a Gateway to my network.  The ISP connection plugs into the WAN port, and then the WRT54G plugs into a switch, and all other computers plug into the switch.  The router's internal address is 192.168.1.1 /24 and all computers get a DHCP address from the WRT54G from 192.168.1.50-150 /24.
    I am putting in a Sonicwall (I will give it address 192.168.1.2) and want the WRT54G to use the Sonicwall as the Gateway; that is, plug the ISP into the Sonicwall, and connect the Sonicwall to the WRT54G, and all other connections remain the same.  I know I have to use Advanced Routing to switch from Gateway to Router mode, but I am unsure what the other settings should be (RIP, Select Set Number, Destination LAN IP, etc.)  The WRT54G must remain in the network.  How can I make this work?"

  • Connecting Wireless N Router to Existing Fios Router for NAS Access

    What I'm Trying To Do:
        I have a 1TB Western Digital MyBook Live as my new NAS for accessing music, photos, video.  Accessing this data through the Actiontec MI424WR Wireless 802.11b/g is not the best performance.  I want to add in a wireless-N router to the mix but know I have to keep my existing Fios Router in the mix.
        Understanding that the Gigabit part of a wireless-N Gigabit router is for the wired speed increase, do I need to get a gigabit router for when I plug in my NAS, or does that not make a difference.
         Basically, I know that the wireless-N will get me better access wirelessly, but will connecting the NAS via Gigabit give me an extra boost as well?
    According to most posts, getting a wireless-N router directly from Fios is near impossible, so bridging a new router to the existing one seems like the best bet.
    Thanks for any help anyone has.

    I bridged an N router to my MI424WR,which is also an N router and really did not notice a big performance jump,i am satisfied with the MI424WR.even though my linskys N router is more expensive.

  • Setting up access points for public access

    Okay, here's the situation. I have a PowerMac G4/1.25GHz dual processor running Server X 10.3.9 with four Mac clients (a small law office). Up until recently, everyone had also been running (client) 10.3.9, but I started upgrading some of them to 10.4 (currently 10.4.5). When I did this, they started running into problems with Word sometimes giving a "network or file permission error" when attempting to save documents to the server. After weeks of posting questions to Word support and trying everything in the book that I could think of, I found Apple recently posted what appears to be the answer to this (article 302979, "Microsoft Office applications fail to save to a server volume." The problem? I have all four users logging into the same account on the server, and when one of them logs out, it zaps everything in a Microsoft-created temp folder on the server, including temp files created by open documents created by other clients. Sheesh.
    I had everyone set to use the same account because they have no need of document security -- everyone should be able to get into everyone else's files on the server, period. So, because of this snafu, I've created separate accounts for each of the users. My problem now is that, if user "X" creates a file or folder on the server, user "Y" cannot modify it because it is created as read-only. Strangely, if someone modifies an existing file, it doesn't change the user rights at all -- not sure why.
    I'll admit to being a bit of a novice with Server X but am familiar with parent/child folder permissions -- I think I've got everything set right, but I must obviously be missing something. Here's what I've got setup, and what I've tried. If anyone can point out how I've got this setup improperly, I really need to get this fixed... thanks.
    I have a single sharepoint ("workfiles"). I used the "public" folder as an example, and set the owner to "root" and the group to "staff". Further, I set the owner, group and everyone privileges to "read & write". I've also tried setting the group to "admin". All the individual user accounts I've set are also setup as admin users. I've tried setting each users's primary group as "staff (20)" or "admin (80)". I've copied all these privileges to all enclosed items, which does reset everything to public access, but as soon as someone creates a new folder or file, that folder/file becomes private to that user (it shows up with the creator's username as "owner" (r&w), group as "admin (read-only), and others as "read-only" as well.
    PS: If upgrading the server to Server X 10.4 would help, I'm sure I can arrange that.

    In our law firm, the server (10.4.4), we have set access to read/write access so staff can open client files/folders, edit then and close, etc. That seems to be working okay. Before the tech worked on permissions, if someone created a letter another staff member could open it, but it was read-only.
    The problem we are having is that if a file that is clicked on stationery pad and we want to edit it, it will not allow us to. For example, if we need to edit our letterhead that normally comes up as an untitled document, if I unclick the stationery pad box, it unclicks, but it still comes up as an untitled document. I even tried to unclick a stationery pad on a document that I created before the server upgrade and it wouldn't let me.
    If I create a brand new document and put it on stationery pad, it comes up untitled as it should. If another user on another desktop wants to make changes, they unclick the stationery pad box, but when they open it, it comes up untitled and in checking get info, the stationery pad is selected.
    The tech set it up as follows:
    Share Points and All tabs:
    General tab: box to share this item and its contents is clicked
    Access tab: owner, group and everyone have read/write privileges
    If select dial at bottom to propagate permissions, all boxes are checked, except for access control list, which is shaded.
    I cannot drag/add anything to the control list and the pencil and the minus sign is shaded
    Protocol tab: Both boxes, share item using AFP and Allow AFP guest users are clicked. But for better security in reading the article, this should be unchecked.
    Also under the protocol tab: the inherit permission from parent radio dial is clicked, not the use standard POSIX behavior.
    What are we missing?
    Thanks, Cheryl

  • Report for public access

    Hello there,
    I would like to create reports based on specific projects. But when I open the template within PWA, it doesn't show my lready published projects. Why not?
    Further I'd like to make the reports available for public, but it seems that I am restricted to the users that are registred in my o365 domain. Wouldn't it be easier to share reports for public? Or do my users even have to have an project account to view
    those files?
    Thank you for helping with my beginner-questions.
    Regards,
    Peter

    Peter,
    Yes, I agree that it is difficult to convince the organization on the licensing part, but i believe it is the same model for SAP or any other enterprise system.  My understanding is that, as long as the report is not "automatic", and is manually
    genarted and displayed, users will not need a license to view the data. As I mentioned, you might want to discuss the options with your local Microsoft Rep., as, I am not a MS Product Licensing Expert.
    As far as building the report, please take a look at Paul Mather's blog: https://pwmather.wordpress.com/. He has several nice posts about BI. Once the report is built, I would think it would be just a metter of displaying it on the BI Site and then
    sharing it with appropritely licensed part of the org,
    Cheers,
    Prasanna Adavi, Project MVP
    Blog:
      Podcast:
       Twitter:   
    LinkedIn:
      

  • Want to use Mac's for public access in public library -- NEED HELP please.

    We have a grant to replace all of the computers in our small town public library. I would like to be able to consider Macintosh computers (would Love to, actually) but have not been able to find any information about how to do that.
    Biggest issue is "access management". We have a system for PCs that logs on a patron by using their library card number and a PIN. That system then allots them an hour or two to use the computer, times them, warns them when time is running out and so on, and it also manages printer access and charges a few cents per page to print.
    We need that for Macs. The software maker gets all attitude about "we have 2000 libraries with PC's and Zero with Macs." ARGH!
    Help help help.
    Also... please point me to anyone at Apple that knows what a public library is and would like to help us overcome this attitude problem.
    We have a grant and can buy the computers. We just need some help to get it done.
    Thanks!

    This article:
    http://docs.info.apple.com/article.html?artnum=304035
    And the fact there is Smart Card access in:
    http://www.apple.com/macosx/features/300.html#security
    Suggest you may be able to do this with the operating system itself. Apple Support has specialists you can request to speak to about how to setup such systems when you call them:
    http://www.apple.com/contact/phone_contacts.html
    I've never setup such a system, but given that other features I've been able to ask about and get specialists to help me, suggest that's probably the most logical course to go.
    Message was edited by: a brody

  • Cannot configure wrt54gs v6 router for use with filezilla FTP client

    I am new to working with FTP and very rusty on networking in general.  I just downloaded filezilla to create a FTP client on my desktop.  When I run their wizard, it says the connection is tainted by my router.  All the forums for filezilla say I need to configure my router to allow traffic on either port 21 (ftp) or a range of ports ( they suggest 50000 to 50100).
    Please let me know what I need to do to make this work
    thanks in advance
    ldygunner

    To answer your other questions, the tutorials have it all wrong. What they really need to explain, but fail to do so, is that the only situation where a FTP client would need to use active mode (the PORT command) is where the FTP server can't accept inbound connections on arbitrary port numbers. But that's a pathological case anyway: the FTP server can always accept connections on some well defined set of port numbers, to keep its own local firewall or NAT router happy. Consequently, there is really no need at all for a FTP client system to open up any ports to support active mode, rather than always operate in passive mode (as browsers do.)
    The fact of the matter is that if passive mode works in a browser for you, it will work for Filezilla also.
    And the configuration tests it runs are brain damaged. Even though the wizard recommends passive mode, it never tests for it. And it doesn't really test active mode either. What it really tests is whether anything between the client and the server is "transparently" translating IP addresses and port numbers. Such a test is broken, because the mere fact of port numbers being rewritten in TCP packets is irrelevant to whether PORT (active mode) will succeed or fail.
    For completeness, in case someone decides to get pedantic, there is a case where a FTP client system would need the active mode PORT command to work, but that case is now of historical interest only. It's a scenario that FTP servers no longer support, for security reasons. (What is it? When the FTP client is operating as a controller to remotely transfer files between two servers: it tells one server to use passive mode, and sends the address/port it gets to the other server in active mode, which in theory would make the second server open a connection to the first. This, in fact, is why two modes, active and passive, were originally defined in the FTP standard!)  And it still wouldn't need open ports on the client system.
    Message Edited by arayq2 on 10-19-2008 09:12 PM

  • Expose Metadata Repository for Public Access

    All,
    Does anyone have experience exposing the active metadata repository for documentation purposes?  I am familiar with how the repository works within the BI workbench, searching, navigating, etc, but what I would like to do is to expose the repository structure to the user community so they can find more information about their objects. 
    An example would be to allow users to browse the metadata repository to discover what the definition of a certain key figure is, such as what is the definition of headcount, or purchase price variance?  Ideally they could find what other key figures are used in a calculation, or in a formula.
    The metadata repository appears to be a series of generated htm pages, but this information has to be stored somewhere in the database.  Does anyone know where? If we can access the tables, then we can build reporting objects off of them and thus expose in BEx.  Alternatively, if we can expose the metadata repository itself, could we then publish it in Enterprise Portal??
    Any suggestions, advice, or help would be appreciated.
    I will award points for useful suggestions.
    Thanks in advance
    Christopher

    Hi Michael,
    maybe you have to check if you are running IE 7.0. That can be the problem (it was with me).
    So try to uninstall IE 7.0 and try it again.
    Greetz

  • Just ordered new iMac do I still need a modem/router for Internet access

    Just  converted to apple,ordered a new IMAC but little confused on Internet access.
    does the extreme still need a modem/router,just a little confused after reading all the comments about poor connections etc.
    Old windows soldier sorry if a little vague .

    The AirPort Extreme is a router, but it is not a modem. You still need your existing cable or DSL modem. That device is usually supplied by your ISP and may or may not include the functions of a router.

  • How do you set up a wireless router for laptops only?

    Recently I purchased the Lynksys WRT54G2 router for my home.  My wife and I both have laptops and NO desktop computer.  How do I hook up the router to work on both our laptops since we dont have a desktop computer?  Thanks.

    Connect one of your Laptop's to the router and configure your router...Once your router is configured you can run both the computers wireless...To configure the router :
    If your ISP is Cable follow the link here...
    If your ISP is DSL follow the link here ,
    this will configure your router for Internet access, now change the wireless settings on your router...
    Click on the Wireless tab on the Setup page- Here Wireless Network mode
    should be mixed- Provide any non linksys network name ....
    Name (SSID) box- Set wireless channel to 11- And wireless SSID
    broadcast should be Enabled and then click on "Save Settings" >>Now
    Click on the Sub tab under wireless > "Wireless Security"
    Change the Wireless security mode to "WEP"...and put a 10 have a note of the key ...
    click save settings ...
    Click on Advanced Wireless settings>>
    Change the Beacon Interval to 75 >>Change the Fragmentation Threshold to 2304 Change the RTS Threshold to 2304 >>Click on "Save Settings" ...
    Try to look for the Wireless Network on both the laptops and connect...

  • NAT for remote access VPN clients

    Hello,
    I have a simple remote access VPN setup on a 2811 router. The remote subnet of the clients connecting have access to the local LAN subnet, but I am wondering if it is possible to somehow NAT those remote access users, so that they can go beyond the local LAN, and through the VPN routers outside connection, giving them access to other resources.
    The remote subnet would need to be added to the NAT overload pool that the local LAN is on somehow, but since no interface is created, I am unsure where I would need to put "ip nat inside" if it even needs to be done, or if I am just missing something.
    I guess really what I want to do is tunnel all traffic, and have that remote client IP translate to the NAT pool on the router for internet access.
    Thanks.

    Have a look here for solution
    http://www.cisco.com/en/US/products/sw/secursw/ps2308/products_configuration_example09186a008073b06b.shtml
    Regards

  • Looking for config example for qos marking on IOS edge router for UCCE

                       I was going through the UCCE SRND for QOS config, and found the following sample, wondering if someone can provide a tested config example to configur the QOS on edge router for UCCE.
    access-list 100 permit tcp host Public_High_IP any
    access-list 100 permit tcp any host Public_High_IP
    access-list 101 permit tcp host Public_NonHigh_IP any
    access-list 101 permit tcp any host Public_NonHigh_IPSecond, classify the traffic using a class map:class-map match-all ICM_Public_High
    match access-group 100
    class-map match-all ICM_Public_Low
    match access-group 101
    policy-map ICM_Public_Marking
    class ICM_Public_High
    set ip dscp af31
    class ICM_Public_Low
    set ip dscp af11Finally, apply the marking policy to the incoming interface:interface mod/port
    service-policy input ICM_Public_Marking

    Disclaimer
    The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
    Liability Disclaimer
    In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
    Posting
    If you're going to use only two queues, and if you want to guarantee the one queue 35% of your egress bandwidth, you need to assign your two queues the ratio of 65:35; you'll need to adjust the four queue percentages to provide those two queues the same ratio.  Ideally you'll want something like share 0 65 35 0, but if you cannot assign zero, something like 40 13 7 40, 20 39 21 20, 10 52 28 10 should do.

  • How do I use a Dlink WBR-1310 router as an access point w/WRT54GS Router?

    How can I set up my Dlink WBR-1310 router as an access point for the main router which is a Linksys WRT54GS?

    I don't mean to be stupid but perhaps I was vague. I want to be able to plug the xbox 360 into the wrtu54g-tm using it as only a way to communicate wirelessly to my wrtg54G which is plugged into my modem. Are you saying that this can't work unless I try to use DD-wrt or something like that?

Maybe you are looking for