Hi Guys,
My IPFire is configured like:
Since the .194 upgrade it is behaving very strangely!
For many months, I have simply upgraded IPfire from the gui,
all has been ok , there have been no changes to the rulesets.
since .194:
North to South Port forwards work 100%
East to South pinholes do not work at all
East to West pinholes do not work at all
Open vpn to green works, as does openvpn to orange.
But unfortunately services running in orange rely on a NAS
located south (in green) and dedicated CIFS rules are simply being ignored
.
I took a backup before the 193-194 upgrade and have reloaded it to rule out a potential config corruption - no change.
I have rebooted several times in my testing…no change
I have disabled the rules, applied the changes, re-applied the rules , applied the changes. STILL not fixed
So I have taken a further backup and will swap out the disks, reburn a fresh iso to CD, and reload the config file.
However, i would prefer not to if anyone has any suggestions? but for me, I am out of ideas!
Additionally (and I suspect its not related but in the name of completeness) I have a P2P openVPN connection with a client that has 2 subnets at the far end (Subnet 2 is an unused fixed WAN that I recycled as a hardwired Client side DMZ)
I couldn’t route from anywhere inside to the client DMZ until I added a static route into the GUI. (perfectly reasonable!) and now I can manage the client side DMZ from green or blue with no issues.
However, why, when I access the shell as root and perform netstat -rn, is there no sign of that static route in the routing table ? nor is there anything that points the client DMZ subnet as reachable via TUN1?
Grateful for any help as I have reached the “stuff it! rebuild this pig from scratch!” point
regards
BB