FOR TIPS, gUIDES & TUTORIALS

subscribe to our Youtube

GO TO YOUTUBE

14455 questions

17168 answers

28195 comments

0 members

We are migrating to our new platform at https://community.teltonika.lt. Moving forward, you can continue discussions on this new platform. This current platform will be temporarily maintained for reference purposes.
0 votes
550 views 3 comments
by anonymous

Hello,

I am trying to solve an issue, but no luck so far. I hope you can help me.

I have a RUTX11 device (RUTX_R_00.02.04.3 firmware) where I created different networks for LAN1 (192.168.24.0/24), LAN3 (192.168.25.0/24) port and for a separate one for Wireless (192.168.26.0/24) as well. I reach the internet via mobile. Everything works fine, I can reach the internet from every network (LAN1, LAN3, WIFI). I can also reach computers from one network to others in a different network, all good.

I need to integrate the above to an old network (192.168.22.0/24) using RUTX11 LAN2. The old network has separate DHCP and internet and can't use RUTX11 for internet, but still need to reach the computers connected to RUTX11.

I have these settings for LAN2 (IP 192.168.22.22)

VLAN

LAN2 - Page1

LAN2 - Page2

I can ping any device from a computer in the old network (192.168.22.0/24) through RUTX11 LAN2 to LAN1, LAN3 or WIFI. Of course, I had to add routes in the gateway of 192.168.22.0/24 where set the next hop to the LAN2 IP (192.168.22.22) if the destination is 192.168.24.0/24 or 192.168.25.0/24 or 192.168.26.0/24).

The issue is that I can't ping any computer in the old network (192.168.22.0/24) from a computer connected either LAN1, LAN3 or WIFI in RUTX11. Interestingly, if I SSH to the RUTX11, I can ping any computer from there in the old network (192.168.22.0/24). So, from the RUTX11 itself it's ok, but not from any computer connected to RUTX11.

In short

  • Traffic works from old network (192.168.22.0/24) -> RUTX11 LAN1, LAN3, WIFI
  • Traffic doesn't work RUTX11 LAN1, LAN3, WIFI -> old network (192.168.22.0/24), only from the RUTX11 itself if I SSH to it.

In desperation I created the following firewall zones as well. Still no luck.

After that I added the below traffic rules. Still no luck.

Output of "route -n" after SSH into RUTX11

Why can I ping everything in the old network if is SSH to RUTX11, but not from a computer connected to LAN1, LAN3 or WIFI port of the  RUTX11?

How can I fix this?

Thank you.

1 Answer

0 votes
by anonymous
Hi,

By default, ping is forbidden in Windows firewall settings. Could you please fully disable the firewall of your Windows and then trying to ping into something?

EB.
by anonymous
Hi,

I am trying to ping linux computers and as I mentioned it's working if I SSH to the RUTX11, but not from computers attached to the RUTX11. It's not just ping, I have a web server in the old network which I can't reach from computers attached to the RUTX11.

Any idea?
by anonymous
Still, you will have to try to disable the firewall of your computers as it might block any outcoming and incoming connections.

Also, please enable masquerading and mss-clamping from the zone you're on to the zone you're trying to reach.

EB.
by anonymous

The masquerading did the trick, thank you