[nos-bbs] Xrouter mystery

Brett Mueller wa7v at wa7v.com
Fri Nov 10 20:32:48 EST 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Jack!

On 11/10/2006 16:56, Jack Taylor wrote:
> The mystery here is why are users able to connect to AZGATE from an
> Xrouter and return to the Xrouter, but not be able to connect direct
> to the Xrouter when originating from AZGATE?

I believe I know who you are talking about, so let me offer the
following.  My guess is that he is running a firewall and/or NAT router
that doesn't have any provisions for creating protocol 93 (AXIP) rules.
 The firewall/router will permit and/or NAT incoming AXIP frames only
when it believes these are frames related to outgoing ones -- hence,
doing some primitive connection-tracking.

Is it possible to initiate a connection from AZGATE *concurrently* while
someone else is connected from the Xrouter to AZGATE?  This might
confirm the connection-tracking hypothesis.

If such is the case, the possible solutions that I can think of are:

1. Use AXUDP instead of AXIP, or
2. The Xrouter sysop would need to replace his firewall/router with
something that understands protocols beyond TCP, UDP, and ICMP, or
3. Set up a VPN tunnel.

Maybe others?

73 & good luck!

Brett, WA7V

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (MingW32)

iD8DBQFFVShA+/Ps1x4JxWYRAqWjAKCIvhSEinHVdiQEAnYT8RWcEwKaIwCfWT8K
YwN9mRYdya43YsirPzCD3VM=
=W5zJ
-----END PGP SIGNATURE-----




More information about the nos-bbs mailing list