Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Web Interface Access on Remote Networks/Behind Firewall

Status
Not open for further replies.

socalmdb

IS-IT--Management
May 16, 2007
5
US
Greetings all!

I have a problem that isn't earth shattering, but it is annoying.

When trying to access the web admin for my 3300, I can get to it when I'm on one of my remote networks across my WAN, but when I try to access it from behind my firewall, I can get the login prompt, I can login, but as the java app loads I only get "Connection Disconnected. Refresh the page to reconnect". My firewall is NATted with a 1-1 mapping of the 3300 and I've tried opening all ports on my firewall, I've tried opening only the ports that the web admin requires with the same result each time. Does anyone know if there is any sort of MTU setting or anything else that needs to be set in order for this to work? Also, is there any limitation in the software that only allows it to work over a limited number of hops?

Frankly, I'm out of ideas because I've tried everything that I can think of and was wondering if anyone has had a similar problem or has heard of one.
 
I am sure its not the MTU ( Maximum Transmission Unit) as there is no need for the 3300 to add to the packet size beyond the norm. (1500 for ETH)
I would suspect the firewall.
Something is resetting the connection, or closing the connection in the Nat tables.
There may be a keep alive setting that is off, or similar.
If I may ask, due to firewalls acting differently, what brand do you use? is it the simple Microsoft ASA server?, is it a Hardware box? , is it software running on Windows?
If we can start with this then we can move towards a solution.
John

John - Up in Montreal

It's about who??????
Then make it about us....
 
John,

The firewall is a Cisco ASA 5510. I've played around with keep alives and everything else that I can think of, but I still don't get anywhere. I run a ton of other apps through it, some that are even java based, and the mitel is the only one giving me an issue.

If anyone has any thoughts or ideas, I am definitely open to them.
 
Try to do a reverse nat for your 3300.
On the out bound traffic, define all traffic from "Mitel-3300-unit" to show as a seperate IP, allow All outbound traffice, then see if this helps also try to logg all packets from the 3300 and watch the log file to see if the connection breaks or sends a close.
let me know and them we can try something else.
I am also assuming the default gateway on the 3300 has been defined and set to the internal interface on the firewall...


john

John - Up in Montreal

It's about who??????
Then make it about us....
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top