Posted: Sat Jun 12, 2010 6:08 Post subject: Problem in WRT320N
Hello, I am currently using DD-WRT Firmware on Linksys 320N, I am facing some problems in this firmware.
first of all let me tell you the scenario. I usually have to deal with the multinatting i.e (Running private and public IP's at the same time in LAN). Also i am hosting the webserver in my LAN against the Public IP.
Problem is that i have defined the IP alias by the following command
now 1st problem is that i cannot see my Public IP's 115.186.xxx.xxx and 115.186.yyy.yyy on whatismyip.com whenever i am in the GATEWAY mode of the router. In this mode although my website is working fine and browsing is fine on the public as well as private IP's.
whenever i switch the Mode to ROUTER i can see my Public IP's and browse on them as well but cannot browse on the Private LAN IP's.
in the ROUTER mode i also tried this command in FIREWALL but it did not help me as well.
2nd problem is that if i disable SPI firewall everything works fine, but whenever i Enable SPI firewall, my webpage is inaccessible also i m not able to access the router via web gui remotely.
Please help me, i m novice and have a very little experience of linux based TS.
What you want really ought to be done with VLAN's. However getting the VLAN's to work will not be as easy as moving them in the UI. There's been lots of trouble with gigabit switches and VLAN's but a few people have gotten them working by setting the nvram variables for them.
If the WAN IP that you're using for the router is in the same subnet as the additional public IP's then you can just move LAN ports into the WAN VLAN and have them directly switched with the modem though I'm unsure how that would work with the PPPoE that you seem to be using...
If you can't get VLAN's to work or don't want to try then you may be able to just do this in your firewall script.
#disable NAT for public subnet
iptables -t nat -I POSTROUTING -s 115.186.x.x/30 -j ACCEPT
#disable firewall for public subnet
iptables -I FORWARD -d 115.186.x.x/30 -j ACCEPT _________________ Read the forum announcements thoroughly! Be cautious if you're inexperienced.
Available for paid consulting. (Don't PM about complicated setups otherwise)
Looking for bricks and spare routers to expand my collection. (not interested in G spec models)