Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - jgggr

Pages: [1]
1
Hello.

I had to temporarily realocate my server (we are moving from one building to another), after that i can't get the stations to connect to the internet.
I think i missing something basic here.

This is my setup:

At "core" > "network" > "interface" I have set:
eth0 - external. static ip 192.168.1.2
eth1 - external, static ip 192.168.2.2
eth2 - internal, static ip 10.0.1.1

At "infrastructure" > "dhcp" I have set:
eth2 dhcp enabled.
range - 10.1.100 to 10.0.1.200

>> I'm not sure what the problem is, but i have identified some weird behaviour at my setup:

At "dashboard", "network interfaces", Zentyal is showing:
eth0 ip: 192.168.1.112 AND 192.168.1.2
eth1 ip: 192.168.2.12 AND 192.168.2.2
eth2 ip: 10.0.1.198

At "dashboard", "dhcp leases", Zentyal is showing:
granserver ip 10.0.1.198

At the stations, i see:
- default gateway: 10.0.1.1
- dhcp server: 10.0.1.198

Images attached.

Can anyone bring some light to this? Thank you





2
Installation and Upgrades / Need Help! Error opening any google site
« on: November 28, 2013, 03:18:37 pm »
Hello there.

I've this f** problem that I trully don't know what to do.

Scneario:
Zentyal 2.2 with modules running:

Network   Running
Firewall   Running
Antivirus   Running
Apache   Running
Certification Authority   Not created
DHCP   Running
DNS   Running
Backup   Running
Events   Running
FTP   Running
IDS   Running
Logs   Running
Monitor   Running
NTP   Running
VPN   Running
Printer Sharing   Running
RADIUS   Running
File Sharing   Running
HTTP Proxy   Running
Traffic Shaping   Running
User Corner   Running
Users and Groups   Running
Web Server   Running

In this machine there is also redmine, and my ERP software running.
The machine is connected and set to DMZ into ISP modem.
The machine is also connected to aprox. 25 clients via cable and wifi (mostly phones).


Problem:
When I try to connect to **any** google site, all I have is blank page.
I am not able to connect to **any** google site in any machine of my network. Not even at my cellphone.

I thought that a virus could have spread all over my network, but, if I connect any machine directly to ISP modem (bypass zentyal) i can connect to these sites though with no problem.

I connect to the google services via https (search, gmail, youtube and other stuff that provides it). BUT if i try to access by regular http all i get is a bank page (including youtube, any blog at blogger, and all others)

This is tracert to blogspot.com connected directly to my modem (192.1681.1)
C:\Users\joaogabriel>tracert blogpsot.com

Rastreando a rota para blogpsot.com [108.175.169.242]
com no máximo 30 saltos:

  1    <1 ms    <1 ms    <1 ms  192.168.1.1
  2     4 ms     3 ms     3 ms  gvt-l0.b7.mga.gvt.net.br [177.16.96.1]
  3     4 ms     3 ms     4 ms  gvt-po-5-81.rd02.mga.gvt.net.br [200.175.16.101]

  4     5 ms     7 ms     7 ms  177.99.251.dynamic.adsl.gvt.net.br [177.99.251.1
69]
  5    20 ms    19 ms    19 ms  gvt-pos-0-0-1-2.rc02.cta.gvt.net.br [189.59.242.
61]
  6    13 ms    15 ms    15 ms  gvt-te-0-2-0-8.rc03.cta.gvt.net.br [189.59.247.4
1]
  7    32 ms    35 ms    35 ms  gvt-te-0-5-0-0.rc01.spo.gvt.net.br [187.115.213.
198]
  8    29 ms    23 ms    23 ms  gvt-te-0-3-0-6.rt01.spo.gvt.net.br [189.59.242.1
81]
  9    19 ms    22 ms    18 ms  TenGigabitEthernet8-2.ar5.GRU1.gblx.net [64.208.
26.5]
 10   138 ms   138 ms   138 ms  te0-7-0-16.ccr21.mia03.atlas.cogentco.com [154.5
4.13.61]
 11   145 ms   146 ms   146 ms  be2054.ccr21.mia01.atlas.cogentco.com [154.54.80
.41]
 12   145 ms   146 ms   146 ms  be2124.mpd21.atl01.atlas.cogentco.com [154.54.24
.245]
 13   151 ms   150 ms   151 ms  be2170.mpd21.dca01.atlas.cogentco.com [154.54.31
.106]
 14   145 ms   144 ms   144 ms  be2149.ccr22.jfk02.atlas.cogentco.com [154.54.31
.126]
 15   144 ms   160 ms   144 ms  te0-1-1-1.ccr21.jfk01.atlas.cogentco.com [154.54
.7.70]
 16   160 ms   154 ms   160 ms  te3-1.ccr01.ewr02.atlas.cogentco.com [154.54.6.2
25]
 17   153 ms   152 ms   153 ms  te4-2.ccr01.ewr06.atlas.cogentco.com [154.54.84.
66]
 18   145 ms   145 ms   145 ms  te0-0-1-1.nr21.b033057-0.ewr06.atlas.cogentco.co
m [154.24.0.114]
 19   145 ms   148 ms   149 ms  38.122.244.34
 20   145 ms   145 ms   148 ms  108.175.169.194
 21   145 ms   145 ms   145 ms  108.175.169.242

Rastreamento concluído.

This is tracert connected to zentyal

C:\Users\joaogabriel>tracert blogpsot.com

Rastreando a rota para blogpsot.com [108.175.169.242]
com no máximo 30 saltos:

  1    <1 ms    <1 ms    <1 ms  joaogranado.com [10.0.1.1]
  2     1 ms    <1 ms     1 ms  192.168.1.1
  3     4 ms     4 ms     4 ms  gvt-l0.b7.mga.gvt.net.br [177.16.96.1]
  4     5 ms     5 ms     4 ms  gvt-po-5-81.rd02.mga.gvt.net.br [200.175.16.101]

  5     7 ms     7 ms     8 ms  177.99.251.dynamic.adsl.gvt.net.br [177.99.251.1
69]
  6    23 ms    19 ms    23 ms  gvt-pos-0-0-1-2.rc02.cta.gvt.net.br [189.59.242.
61]
  7    15 ms    15 ms    15 ms  gvt-te-0-2-0-8.rc03.cta.gvt.net.br [189.59.247.4
1]
  8    33 ms    35 ms    35 ms  gvt-te-0-5-0-0.rc01.spo.gvt.net.br [187.115.213.
198]
  9    21 ms    23 ms    23 ms  gvt-te-0-3-0-6.rt01.spo.gvt.net.br [189.59.242.1
81]
 10    19 ms    19 ms    18 ms  TenGigabitEthernet8-2.ar5.GRU1.gblx.net [64.208.
26.5]
 11   139 ms   138 ms   138 ms  te0-7-0-16.ccr21.mia03.atlas.cogentco.com [154.5
4.13.61]
 12   146 ms   146 ms   146 ms  be2055.ccr22.mia01.atlas.cogentco.com [154.54.24
.233]
 13   146 ms   146 ms   145 ms  be2123.ccr22.atl01.atlas.cogentco.com [154.54.24
.197]
 14   151 ms   144 ms   143 ms  be2169.ccr22.dca01.atlas.cogentco.com [154.54.31
.98]
 15   145 ms   145 ms   145 ms  be2148.ccr21.jfk02.atlas.cogentco.com [154.54.31
.118]
 16   161 ms   160 ms   145 ms  te0-2-0-1.ccr21.jfk01.atlas.cogentco.com [154.54
.1.173]
 17   162 ms   160 ms   160 ms  te3-1.ccr01.ewr02.atlas.cogentco.com [154.54.6.2
25]
 18   153 ms   153 ms   153 ms  te4-2.ccr01.ewr06.atlas.cogentco.com [154.54.84.
66]
 19   146 ms   146 ms   145 ms  te0-0-1-1.nr21.b033057-0.ewr06.atlas.cogentco.co
m [154.24.0.114]
 20   146 ms   145 ms   145 ms  38.122.244.34
 21   148 ms   146 ms   146 ms  108.175.169.194
 22   145 ms   145 ms   146 ms  108.175.169.242

Rastreamento concluído.


This is DNS configured at Zentyal :

Domain Name Server   
127.0.1.1   
8.8.8.8   
8.8.4.4   
208.67.222.222   
208.67.220.220

This my firewall "from external to zentyal" settings (other setting are untouched):
Decision    Source    Service    Description    Action
ACCEPT   Any   http 8080   sienge   Del  Edit  Down
ACCEPT   177.43.37.125/32   Voip   --   Del  Edit  Up  Down
ACCEPT   Any   http   --   Del  Edit  Up  Down
ACCEPT   Any   dns   --   Del  Edit  Up  Down
ACCEPT   Any   ssh   --   Del  Edit  Up  Down
DENY   Any   RADIUS   --   Del  Edit  Up


**** Now the most bizarre (expect to give some clues about the problem)

Yesterday I turned ON (had always been off) http transparent proxy at Zentyal with "Allow All" police
And it solved the problem! I could reach all google pages again.
BUUUUT, today the problem is back. I tried stop, clean an restart squid but still no result, all blank pages.

No I'm stuck! Help please!


3
Hi there.

I want to share information in my company using Zentyal server. We run a "per project" business. The setup I have been thinking of is:
- Create a single share for the whole company (say "acme_projects")
- By default everybody has reading permissions on all files and folders (so everyone can know what the company is working on)
- Some people would have full permisions on some folders (the project manager, for example)
- Exceptions to the first rule could be made by hand by the admins (to hide some financial or critical information for example)
- Some people would have right permissions on some folders (the people working on the project)

In a Windows Server I would just go to the folder I want and check the permissions applied for each user I want.

In Zentyal, I am kind of lost. This seems like a very basic need when talking about file sharing in an enterprise (even small business). What am I missing?

4
Installation and Upgrades / DNS lookup for subdomain
« on: January 21, 2011, 08:09:21 pm »
Hello there.

This is what i want:
I want to be able to access redmine.mydomain.com from my lan AND from outside network.

This is how I'm trying to do:
I've registered mydomain.com at joker.com
I've create a DYNA record for mydomain.com

utm > firewall > allow http
core > network > dynDNS > enable dynDNS for mydomain.com (with the login information for joker.com)
dynDns is working fine. I can access mydomain.com webpage from anywhere

infra > webserver > add virtual host: mydomain.com
(this is ok. The mydomain.com shows the files in /srv/www/mydomain.com)

* When I do that, Zentyal created a mydomain.com DNS entry on its DNS server with local IP address (10.0.2.1, one if own IPs)

infra > webserver > add virtual host: redmine.mydomain.com
* Zentyal no longer creates a DNS entry

infra > DNS > mydomain.com > add host
host: redmine
IP: 10.0.1.1

Pointed redmine stuff for the virtualhost path
* Inside my LAN, when i connect to redmine.mydomain.com it works!

The problem is outside the network it doesn't work! When i tried to connect it would give host unkown error.
So I kept trying

on joker.com I've created a NS record for redmine.mydomain.com to mydomain.com
(I think this means that when someone looks up for redmine.mydomain.com joker will them to search at mydomain.com)

I opened my firewall for DNS connections.

Now, when I try to connect to redmine.mydomain.com from outside my network I get timed out.
I went to http://www.dnswatch.info and looked up for redmine.mydomain.com

Code: [Select]
Searching for redmine.mydomain.com. A record at F.ROOT-SERVERS.NET. [192.5.5.241] ...took 18 ms
Searching for redmine.mydomain.com. A record at d.gtld-servers.net. [192.31.80.30] ...took 115 ms
Searching for redmine.mydomain.com. A record at c.ns.joker.com. [207.44.185.10] ...took 119 ms
Searching for mydomain.com. A record at F.ROOT-SERVERS.NET. [192.5.5.241] ...took 17 ms
Searching for mydomain.com. A record at j.gtld-servers.net. [192.48.79.30] ...took 271 ms
Searching for mydomain.com. A record at a.ns.joker.com. [207.44.185.100] ...took 118 ms
Searching for redmine.mydomain.com. A record at mydomain.com. [1XX.1XX.2XX.1XX] ...took 250 ms

A record found: 10.0.1.1

So I think that I'm getting close, but the problem might be that I'm doing something wrong in my DNS configuration at Zentyal, hence I'm asking here at this forum.

Or am I just crazy and I'm doing this completely wrong? I mean, is there conceptual errors in my work? I'm asking because this pure trial-and-error effort.

P.S. (I've masked my ip address and changed my actual domain for 'mydomain' :))

5
Installation and Upgrades / [SOLVED] Good setup for Zentyal + Redmine
« on: January 04, 2011, 03:28:39 pm »
Hi there.

I'm using Zentyal fresh installed from the iso on my server. I currrently use almost all of its features ( (PDC, file sharing, network infrastructure (gateway, firewall, dns, dhcp for lan), webserver, ftp access and planning to use vpn). I don't use webmail and zarafa.

I intend to install Redmine on the same server. I've tested Redmine on a virutal machine using bitnami stack (http://bitnami.org/stack/redmine). I've read on this forum that installing redmine directly with Zentyal might not be a very simple task.
I think using the virtual machine is a very straightforward and simple implementation for a newbie like me.


My question is: what would be the better setup?
1 - Would it be possible to install redmine on a virtual machine over Zentyal?
2 - Should I start all over again and do a fresh ubuntu server install than install 2 virtual machines: zentyal + redmine?
3 - Should I give up of virtual machines and just install redmine over zentyal?

P.S.: I'm changing the topic to [SOLVED] because I've installed redmine (option 3 above: redmine and zentyal peacefully - so far - living together). I made a kind of a HOW-TO and posted below.

6
Hello!

I've recently installed a software (redmine) in a virtual machine in my LAN for testing purposes. I can access it by typing: http://10.0.1.187

Since this application must be visible in the internet, I'm trying to associate it with redmine.mydomain.com

I've created a virtual host  for the webserver using ebox gui and manually changed the apache config file so this virtual host get proxied to http://10.0.1.187. This worked fine from my LAN (I can access redmine.mydomain.com)

BUT when I'm outside, I can't connect! Actually, I get redirected to http://mydomain.com
Is this some kind of DNS issue?

I use Joker Dynamic DNS service. I've tried A LOT of different configurations for it with no success! The "correct" solution, I GUESS, would be to create a new DYNA record for the subdomain (and so I did), but no luck. I've also created URL redirects and some aliases but no good.

I've also tried to modify ebox dns config, but I have no idea what should be the right config (by default ebox created an alias "redmine" for the host "www" of "mydomain.com" dns entry. This doesn't feel right...

Can anyone please give some light here!? I'm really in the dark!

Pages: [1]