Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

D-Link 604 router, access on 1 subnet, ICMP Drop from subnets

Status
Not open for further replies.

jstubb

IS-IT--Management
Nov 10, 2003
7
US
I replaced a Linksys BEFSR41 v2 and v3 with a D-Link 604. The Linksys models successfully allowed internet acces from all subnets. I have four subnets connected with a Windows 2000 Server router (4 nics).



Subnet 1 (192.168.123.0)(255.255.255.192)

D-link router (192.168.123.1) (255.255.255.192)
Web server (192.168.123.3) (255.255.255.192)
Mail Server (192.168.123.4) (255.255.255.192)

NIC on internal router Windows 2000 Server (192.168.123.2)(255.255.255.192)



Subnet 2 (192.168.123.64)(255.255.255.192)

Windows 2000 Domain Controller 1 (192.168.123.66)
Windows 2000 Domain Controller 2 (192.168.123.67)

NIC on internal router Windows 2000 Server (192.168.123.65)
(255.255.255.192)



Subnet 3 (192.168.123.128)(255.255.255.192)

Windows 2003 Domain Controller (192.168.123.130)(255.255.255.192)
XP Pro (192.168.123.33)(255.255.255.192)
XP Pro (192.168.123.34)(255.255.255.192)

NIC on internal router Windows 2000 Server (192.168.123.129)(255.255.255.192)



Subnet 4 (192.168.123.192)(255.255.255.192)

G3 PowerMac OS 9.2

NIC on internal router Windows 2000 Server (192.168.123.193)(255.255.255.192)



The problem is I can access the internet from all machines on subnet 1 and on the Windows 2000 internal router but the other subnets fail to access the internet. I can ping any of the machines on subnet 1 from other subnets but I cannot ping the D-Link router. When the Block WAN request is enabled on the Dlink router I get log entries when I try to ping the Dlink router (192.168.123.1)

Here is a sample:

Drop ICMP packet from WAN 66.75.223.130(Source) - 66.77.170.92:0(destination) Rule: Default deny

When I turn the Block WAN request off in the router configuration I get no log entries for Drop ICMP packet from WAN.

There is a default rule in the firewall settings that cannot be changed>>>>>>>>>

Deny Default *,* (source) LAN,* (Destination) IP(0),* (protocol)




Once again I can ping all machines excluding the dlink router on subnet 1 from any of the other subnets. This setup worked fine with Linksys routers but due to connectivity drops on the v3 I had to replace it with the Dlink.

What is preventing my machines on subnet 2,3, and 4 from accessing the internet?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top