Koozali.org: home of the SME Server

SME7b2 behind a firewall

flaviove

SME7b2 behind a firewall
« on: October 04, 2005, 12:37:51 PM »
Hi All,

I install a SME7b2 behind a IpCop firewall. I can ping uotside (Internet) but I´m not be able to get DNS resolution. My SME7b2 has statics IPs (internal and external networks).
What should I do in order to get DNS resolution up and running?
Any help will be welcome.

Cheers
Flavio

Offline arne

  • *****
  • 1,116
  • +0/-4
SME7b2 behind a firewall
« Reply #1 on: October 04, 2005, 02:14:29 PM »
The sme server contains its own local dns server. It is automatically updated from the dns root servers. .com, .net, .org.

You can configure your workstation to use the sme server as a local dns server. Sometimes you will obtain a small increase in speed doing it this way.

If a sme server is lacated on the lan there will be one certain "speciality". It will resolve its own local domains to its local adresses (example: 10.0.0.4) While all other domains will be resolved to their ordinary external ip adresses.

If you want to do "exeptions" I think you can do it in the /etc/hosts file.
......

Offline arne

  • *****
  • 1,116
  • +0/-4
SME7b2 behind a firewall
« Reply #2 on: October 04, 2005, 02:20:53 PM »
By the way .. I think if the Sme server is not able to get updated its dns server fron external sources, this will normally mean that the firewall blocks outbound reqests via UDB port 53. This will norally not be the case as a blocked UDP port 53 among other will make all internetsurfing impossible. (Unless that the firewall gateway contains a web proxy that is in use. Than it is possible to block outbound UDP 53 from the lan, and still make the surfing at the lan.)
......

Offline CharlieBrady

  • *
  • 6,918
  • +3/-0
Re: SME7b2 behind a firewall
« Reply #3 on: October 04, 2005, 04:26:54 PM »
Quote from: "flaviove"

I install a SME7b2 behind a IpCop firewall. I can ping uotside (Internet) but I´m not be able to get DNS resolution.
...
What should I do in order to get DNS resolution up and running?


Please see the first sticky post in this forum about 7.0beta.

Step 1: - upgrade to the latest beta version
Step 2: - anything which doesn't work perfectly, check the bug tracker for reported bugs
Step 3: - report anything which doesn't work perfectly in the bug tracker

flaviove

Re: SME7b2 behind a firewall
« Reply #4 on: October 04, 2005, 08:30:57 PM »
Quote from: "CharlieBrady"
Quote from: "flaviove"

I install a SME7b2 behind a IpCop firewall. I can ping uotside (Internet) but I´m not be able to get DNS resolution.
...
What should I do in order to get DNS resolution up and running?


Please see the first sticky post in this forum about 7.0beta.

Step 1: - upgrade to the latest beta version
Step 2: - anything which doesn't work perfectly, check the bug tracker for reported bugs
Step 3: - report anything which doesn't work perfectly in the bug tracker


Hi CharlieBrady

Thanks for your advice. But I wasn't sure if I got a bug or a missed configuration with my weak knowledge about the subject. I still think that it was a wrong configuration. I am going to do some test myself using the Arne´s advice to see if it was a bug or not.
Sorry if I post at the wrong spot. ;-) It wasn's my intention.

Cheers
Flavio

flaviove

SME7b2 behind a firewall
« Reply #5 on: October 04, 2005, 08:36:36 PM »
Thanx  Arne, I am going to follow your steps and see what can i get.

Cheers
Flavio

flaviove

SME7b2 behind a firewall
« Reply #6 on: October 09, 2005, 07:47:13 PM »
Ok Guys. After install the "7b4+master dns server address" and setup on the client side "IpCop proxy" everything is up and running.

Cheers and thanx.
Flavio