Solved

Network fundamentals

Posted on 2014-01-16
4
395 Views
Last Modified: 2014-01-31
I have inherited a network that has a proxy appliance. One side of the proxy appliance is plugged into the LAN and the other into the Firewall. Some of the client machines on the network are configured with proxy details in their browser and everything works as normal.

Some of the users do not have proxy details but they can still get out on the web. They are using a default gateway of the router that is attached to the proxy appliance. Regardless of what way the proxy appliance is setup I am confused as to how the users can even find the firewall!  even if the proxy appliance is incorrectly configured and wide open I would have thought no one should be able to contact the firewall as it is not directly plugged into the LAN.

Any ideas how I can see how this is occuring. I have checked arp tables wireshark etc.
0
Comment
Question by:Sid_F
4 Comments
 
LVL 26

Assisted Solution

by:pony10us
pony10us earned 150 total points
Comment Utility
If the firewall is physically isolated (only connection is to the proxy appliance) then it is not possible to bypass the proxy.  Even though the information is not supplied in the browser settings.

If you have the proxy blocking/filtering a specific website then try to get to that site both with the proxy settings in place and not. You should be blocked both ways.
0
 
LVL 8

Accepted Solution

by:
Surrano earned 200 total points
Comment Utility
sounds like the proxy acts as an ordinary gateway between LAN and the firewall. Try to traceroute (*nix) or tracert (windows) the firewall's IP and check the routing tables as well on a machine that "bypasses" the proxy and see how it is routed.
If it is routed through the proxy then the proxy acts as a gateway (it shouldn't).
If it is routed through different nodes then you'll see where to look for the gateway.
If the gateway is accessed directly (i.e. listed as first and only hop in traceroute) then it is on the same LAN as the clients and whatever switches/routers are in place should segregate them.
0
 
LVL 8

Assisted Solution

by:amatson78
amatson78 earned 150 total points
Comment Utility
I would recommend running Packet Captures on the firewall and proxy appliance to see if and how traffic is flowing through the proxy. What type of proxy appliance is this? Are there any other cable terminations from the firewall to the LAN? The proxy may just be routing traffic, what is the route table of the proxy?

Cheers,
Alan
0
 
LVL 5

Author Closing Comment

by:Sid_F
Comment Utility
Thanks
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Suggested Solutions

This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now