problem with router---NAT and caching?

From: Phillip Helbig---remove CLOTHES to reply (helbig_at_astro.multiCLOTHESvax.de)
Date: 04/02/05

  • Next message: Larry Kilgallen: "Re: Finding The Right Path For Your VMS Applications"
    Date: Fri, 1 Apr 2005 23:33:14 +0000 (UTC)
    
    

    For a long time, I've had a DSL router forward incoming requests to a
    particular internal address (the cluster alias if it is a cluster, the
    address of a particular machine if that is what is behind the router).
    This works OK. I'm testing out some hardware, so I set up another
    machine with another IP address and told the router to forward incoming
    connections to that. Works OK.

    I then go back to the original setup. EVERYTHING works OK, as it did
    before, EXCEPT incoming stuff over port 6000 (remote application
    displaying locally). It's not a security problem; the only thing I
    changed---and changed back---was the address which the router forwards
    stuff to.

    I've tried everything I can think of---changing the address on the
    original machine to that of the new machine (where the displaying
    worked), tried remote applications at a variety of remote nodes. In all
    cases, EVERYTHING works fine---incoming and outgoing connections over
    any port---EXCEPT that remote applications can't display locally.

    I then went back to the new machine. Everything works fine, including
    remote applications which display locally.

    I'm thinking that the router doesn't really forward incoming connections
    to an internal IP address, but rather to a certain MAC address. Thus, I
    could give it a new MAC address with a new IP address and that would
    work, but it got confused when I tried to go back. OK, so I turned off
    the router for half an hour and then tried again, hoping that any such
    cached information (this is speculation) would disappear. The problem
    remains.

    The error message I get at the remote node is the standard

       X Toolkit Error: Can't Open display
       %DWT-F-NOMSG, Message number 03AB8204

    Years ago, I had a similar problem---everything except port 6000 worked
    OK---with another router. After a while it went away, but I never
    understood why. Since then, I haven't noticed the problem again.

    Is there something special about port 6000 with respect to NAT which I
    am not taking into account? If I forward all incoming stuff to a
    particular internal address, and incoming and outgoing connections over
    other ports work, it is a bit strange that only port 6000 doesn't work.


  • Next message: Larry Kilgallen: "Re: Finding The Right Path For Your VMS Applications"

    Relevant Pages

    • Re: firewall config
      ... can't seem to figure out the incoming connections for rdp and http. ... business iis 7.0) and port 3389. ... several days trying different router rules, ... Tech Support (I have FiOS, and they supplied the router, though they ...
      (comp.security.firewalls)
    • Lost incoming mail
      ... I cannot receive incoming mail. ... I added a 2nd NIC (still behind the router) and used CEICW to set ip ... I discovered I was not receiving any incoming email (probably ... I tied to telnet into port 25 with no success. ...
      (microsoft.public.windows.server.sbs)
    • Weird Incoming IPs and port numbers.
      ... Weird Incoming IP's and port numbers. ... This splits the connection to 3 computers in the house. ... I received a couple of weird INCOMING entries in the log. ... How is it possible that these are coming into the router from the outside? ...
      (Incidents)
    • Re: Netopia R910 and servers
      ... I replaced my Linksys with the Netopia R910. ... port 8081 to be forwarded. ... Incoming packets will be targeted towards the external IP of your ... Allow 8081 for external IP of the router and then ...
      (comp.security.firewalls)
    • Re: how tell a hacking attempt?
      ... Unfortunately you can't always tell whether the incoming traffic was allowed ... Most unwanted incoming is blocked if your ... router is set up to do so. ... There is also a flaw in Wallwatcher so be sure ...
      (comp.security.firewalls)