?
Solved

timeout

Posted on 2001-06-07
4
Medium Priority
?
338 Views
Last Modified: 2010-04-20
i'm using redhat 7, and ipchains for the firewall,
i open all connection to outside
and allow all connection from other network(202.???.???.???) to inside (192.168.12.0/24)

INPUT         - ACCEPT
OUTPUT        - ACCEPT
FORWARD       - MASQ
From inside(192.168.12.0/24) to outside allow all
From other public 202.???.???.0/24 to inside allow all

all the connection is ok, but i always got problem with
mapping,
if i map a drive to other network (202.???.???.???) from the inside network (192.168.12.0/24) after sometime it will give a timeout, but then if you click again on the drive... it will be ok again...

i don't why this happen (the timeout)... can i set no timeout.. so the mapped drive will always connected?

thanks
0
Comment
Question by:ichen
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 12

Accepted Solution

by:
j2 earned 400 total points
ID: 6166869
Your default policy for forwarding is MASQ. You cannot masquerade SMB traffic without getting the error you mention. You must create rules which opens (atleast) port 135-139 between the two nets WITHOUT masquerading (which most likely will break something else) But that is the breaks :)
0
 
LVL 1

Author Comment

by:ichen
ID: 6167079
create rules which opens port 135-139 without masquerading??
what do you mean by that?
ipchains -A forward -s 192?????? -d 203?????? 135:139 (without -j MASQ? is it??)
0
 
LVL 12

Expert Comment

by:j2
ID: 6167240
-A forward -s 192.168??? -d 203??? -p TCP --destination-port 135:139 -j ACCEPT and that has to come before the masquerade for the same network. And since you are using "dark" IP's (the 192.168 net) this probably will not wor, but it is the only way to get a reliable SMB connection. You also of cource need bidirectional routing between the networks.
0
 
LVL 12

Expert Comment

by:j2
ID: 6167243
oh, you need to add -b (bidirectional) to that rule aswell.
0

Featured Post

Migrating Your Company's PCs

To keep pace with competitors, businesses must keep employees productive, and that means providing them with the latest technology. This document provides the tips and tricks you need to help you migrate an outdated PC fleet to new desktops, laptops, and tablets.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Network Interface Card (NIC) bonding, also known as link aggregation, NIC teaming and trunking, is an important concept to understand and implement in any environment where high availability is of concern. Using this feature, a server administrator …
Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
Suggested Courses
Course of the Month12 days, 15 hours left to enroll

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question