(E-Mail Removed) wrote:
> On Jan 6, 1:55*am, tinn...@isbd.co.uk wrote:
[snip]
> >
> > Typical - almost immediately after posting this message I realised
> > what the problem was.
> >
> > Setting up a Firewall Rule allows the connection through but it
> > *doesn't* specify the NAT mapping. *When you use "Game & Application
> > Sharing" it sets up a firewall rule *and* a NAT mapping (but sadly
> > doesn't allow you to tune the firewall rule).
> >
> > The Firewall Rules setup doesn't set up a port/IP mapping, you have to
> > use the CLI to do that and then it works. *It means the web interface
> > to the firewall set up is essentially useless as far as I can see.
> >
> > Anyway I have it working now, all I have to do is write down all the
> > necessary stages so if/when I reset the router I can set it up again.
> >
>
> having problems of a similar nature. could you copy the CLI commands
> to me?
> not sure if you tried, but you can actually save/restore configuration
> for the SpeedTouch modem.
> you need to access the GUI, click on "SpeedTouch" then 'Configuration"
> and under "Pick a Task" section, select 'Backup or restore
> configuration".
>
A fellow sufferer! :-)
I have my Speedtouch set up to allow ssh connections from just a
couple of trusted IP addresses. The Firewall is set up from the Web
interface (after adding a custom firewall Level of course).
Then you need to do something like the following from the CLI:-
mapadd intf=Internet outside_addr=84.45.228.40 inside_addr=192.168.1.1 outside_port=22-22 inside_port=22-22 weight =10
The "outside_addr" is my static IP address at my ISP, i.e. it is the
IP address of the WAN side of the router. I don't know what you do if
you have a dynamic IP though I'm sure there must be a way to do it. I
didn't actually explicitly set the 'weight', that must be a default
value.
I realised you can save and restore the configuration, in fact it's partly
how I found out what I have found out. I compared configurations with and
without a "Game and Application Sharing" entry added, that showed me the
'nat mapadd' entry as well as the Firewall one.
There are some useful notes etc. in a Wiki at:-
http://network.wiki.xs4all.nl/index....tle=SpeedTouch
which I was pointed to by the forums at:-
http://www.speedtouch.net.nz/forum
I hope this all helps, can continue by E-Mail if you want, my address
here will work.
--
Chris Green