Routing Setup

Synthetic

Member
Jan 8, 2003
44
0
0
First off, the current setup is:

Full T1
Netopia R5300-T T1 Router
D-Link DI-713+ WAP & Router

Currently most of the clients are plugged into the 8 port hub on the Netopia, and there is another client who is hooked up on the uplinked D-Link router.

As of now all clients are using a static IP.

What I want to setup:

DHCP & NAT on the D-Link so that non-servers can be behind the router for security, and servers can continue to use their public static IPs.

The problem is, when I set it up, it just plain doesn't work. Configuration I setup on the D-Link:

LAN IP: 192.168.0.1
WAN Type: Static
WAN IP Address: (Available Static IP in our block)
WAN Subnet Mask: 255.255.255.224
WAN Gateway: (IP of our Netopia Router)
Primary DNS: (Speakeasy Primary DNS)
Secondary DNS: (Speakeasy Secondary DNS)
DHCP is enabled.

Ok, when I have a client (In this case the client is plugged physically into the Netopia router) renew an IP address that works fine, however, the only IPs they can ping are:

Their local IP
Both the WAN and LAN Ip of the D-Link router
And the 192.168.0.255 broadcast IP

So they can't ping other users on the network or internet. I know it is uplinked fine because the single user plugged into one of the ports on the D-Link has internet access through a static IP.

Any ideas why this doesn't work?
 

skyking

Lifer
Nov 21, 2001
22,365
5,329
146
If you have a block of wide area network static IPs, then the gateway is not the netopia router. It is xxx.xxx.xxx.1, with the x's replaced with the first sets of your public IP range.
The netopia is routing out those packets true enough, but if you currently use public IP's on your machines, the netopia is really not the gateway.
try using that method in your DLink router, and see what happens.
Edit: Your router is acting as a bridge, if you do not currently have a set of private IPs. That was the term I was looking for!
 

Synthetic

Member
Jan 8, 2003
44
0
0
Originally posted by: skyking
If you have a block of wide area network static IPs, then the gateway is not the netopia router. It is xxx.xxx.xxx.1, with the x's replaced with the first sets of your public IP range.
The netopia is routing out those packets true enough, but if you currently use public IP's on your machines, the netopia is really not the gateway.
try using that method in your DLink router, and see what happens.

Yes, I have a 32 block of WAN static IPs.

And no... that is not my gateway.

The gateway my Netopia router uses, the router at speakeasy, is of a completely different IP block.

I tried what you said, but understandbly it doesn't work. That would be bypassing the whole point of having the T1 router.

The way I am configuring the D-Link is settings as if it was just another server, the gateway has to be our T1 router as that's our gateway to the router at speakeasy, which then goes to the internet. You can't bypass the Netopia router.
 

mboy

Diamond Member
Jul 29, 2001
3,309
0
0
Is their a specific reason why you would need/pay for a block of 32 IP's and be using them for your LAN pc's?
If you do not have at the very least, the basic firewall built into the 5300 ( I have a 5300 t1 router also), then your PC's are MIGHTY insecure.
In the Dlink settings, the WAN IP of the DLink should be the actual IP of the Netopia router (same as the Dlink's gateway setting), your other settings should be correct (for LAN subnet etc).-Note only the pc's plugged into the dlink, or a switch behind the dlink will ( or should) receive a DHCP addy.
That is a peculiar setup you have, are you hosting 25+ public servers?

I have about 60+ Lan Pc's 10 servers (only run puiblic services on a couple)-have a block of 6 public IP's and my WAN Ip for the netopia itself.

I run my Netopia in Nat/PAT mode, set up the port forwardings via PAT in the easy servers, then have the netopia into a hub--into a bridged SonicWall pro 200 FW--into 8port hub--split to LAN switches(then to LAN pc's, servers,etc), a snort box and an inernet monitoring box.-Upcoming exchange server going into the DMZ on the sonicwall.

If you aren't hosting 32 public servers, then their is NO way you should be wanting a setup like that, especially if you are paying a fee for each public IP addy.

Let me know how it goes when u change the Dlink's wan ip to the IP of the netopia. That should clear it up for u!
 

Synthetic

Member
Jan 8, 2003
44
0
0
Originally posted by: mboy
Is their a specific reason why you would need/pay for a block of 32 IP's and be using them for your LAN pc's?
If you do not have at the very least, the basic firewall built into the 5300 ( I have a 5300 t1 router also), then your PC's are MIGHTY insecure.
In the Dlink settings, the WAN IP of the DLink should be the actual IP of the Netopia router (same as the Dlink's gateway setting), your other settings should be correct (for LAN subnet etc).-Note only the pc's plugged into the dlink, or a switch behind the dlink will ( or should) receive a DHCP addy.
That is a peculiar setup you have, are you hosting 25+ public servers?

I have about 60+ Lan Pc's 10 servers (only run puiblic services on a couple)-have a block of 6 public IP's and my WAN Ip for the netopia itself.

I run my Netopia in Nat/PAT mode, set up the port forwardings via PAT in the easy servers, then have the netopia into a hub--into a bridged SonicWall pro 200 FW--into 8port hub--split to LAN switches(then to LAN pc's, servers,etc), a snort box and an inernet monitoring box.-Upcoming exchange server going into the DMZ on the sonicwall.

If you aren't hosting 32 public servers, then their is NO way you should be wanting a setup like that, especially if you are paying a fee for each public IP addy.

Let me know how it goes when u change the Dlink's wan ip to the IP of the netopia. That should clear it up for u!

The 32 IP block is at no cost to us, only cost like a $15-30 one time fee. And yes we do have about 10 public servers.

No, setting the D-Link's WAN IP to the WAN IP of the netopia didn't work.
 

jonmullen

Platinum Member
Jun 17, 2002
2,517
0
0
Just set one computer up outside of the dlink router like you normally would, when it gets online take alook at its working ip configuration. Start->Run (winipcfg for 9x or cmd->ipconfig /all for NT/2k/XP) or ifconfig in linux. Then copy down the working info ipaddress subnet default gateway and every thing then shut that computer down and plug those settings into your dlink router. You should then be good to go.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |