Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations sizbut on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

webblocker server

Status
Not open for further replies.

mquinn0908

Technical User
Jul 3, 2002
335
US
Is there anyway to change the ip address of the webblocker server for the firebox 700? When the firebox was orginally set up one computer was used (that we don't use any more) and I want to change the webblocker server to another computer.
 
This is the message I am getting:

03/28/03 15:27 webblocker[555]: can't send request to WebBlocker server 100.100.69.165 (Broken pipe)
 
You go in to the HTTP proxy service and under web blocker, put in the IP address of the new web blocker computer. Make sure you get logging working on that new machine, or web blocker won't talk to that server.
 
I have put in the ip address of the new web blocker computer and turned on logging. Now I have gone on the client machine and put in the trusted ip address of the firewall as the gateway and turned on proxy server on in the internet options and i set the ip address of the firewall as the proxy server. Now when I try to access the internet it just sits there and then times out and I get an DNS server could not be found.

Also, when I look at the firewall log I see the following two entries.

04/01/03 08:23 firewalld[96]: allow out eth1 48 tcp 20 128 10.10.10.229 64.236.24.12 3678 80 syn (HTTP)

and

04/01/03 08:24 http-proxy[133]: [10.10.10.229:3678 64.236.24.12:80/] Error while sending/receiving: Server not responding

10.10.10.229 is the ip address of the client machine.
 
What version of WSS are you using? Under V.6 you specify the Web Blocker machine under setup, logging. You specify an IP address and log encryption key.

This WSEP host will be contacted by the Firebox for the web blocker database.

The machine you use needs

1) a fixed IP address
2) the Watchguard Security Suite installed (including WSEP logging)
3) Access to the Internet to fetch the database (give it full access and check the Watchguard site for exact port numbers later).
 
I am using verson 6.2 and I have specified the webblocker machine under setup. Also, the machine I am using does have a fixed ip address, the watchguard security suite installed with logging enabled and it has access to the internet as well.

One thing I have noticed is that I can't ping the external interface of the firebox. I have a cross over cable running from the external interface of my firebox to a port on my router. I have set up the interface address under the network menu and the gateway is set to the external ip address of my router. Since my firewall is on the inside of the router do I need the external interface?
 
try putting the name of the pc instead of the IP for logging, should resolve your webblocker error....
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top