Management
Showing results for 
Search instead for 
Do you mean 
Reply
Visitor
Posts: 3
Registered: ‎11-02-2011
0 Kudos

M120 Nat implementation. TCP connections drop



So i`ve made a config in attach

 


So all this conf was made to allow internet acces from 10.x network with 10.0.1.1 dns servers.

It works great only with ping or dns requests. But all TCP connetcions drops and I can`t figure out why. Test PC can`not acces internet from 10.x network (

 

What is wrong???

Highlighted
Visitor
Posts: 3
Registered: ‎11-02-2011
0 Kudos

Re: M120 Nat implementation. TCP connections drop

so i`ve added another part of conf and it worked. but i can`t anderstand why. 

stateful-firewall {
rule allow_tcp {
match-direction input-output;
term 1 {
from {
applications [ junos-http junos-dns-udp junos-telnet junos-dns-tcp junos-ip junos-smtp junos-traceroute junos-pptp junos-ntalk junos-pop3 ICQ ];
}
then {
accept;
}
 }
}

 

why should i add such a rule& why can`t i just add a rule such as: from destination-address Any unicast?

 

anyone can help me out???