04-08-2009 01:06 AM
I have ns25 screenos 5.4.0r11.0. I can't do traceroute to interface from public address, i recieve time out message.
In self report: 2009-04-08 11:59:24 220.127.116.11:52682 xx.xx.xx.xx:33449 0 sec. UDP PORT 33449
How can i resolve this issue?
04-08-2009 07:24 AM
i think you should to enabel trace or ping on the Public interface, could you get config | inc interfce (public)
personal mail: email@example.com
04-08-2009 12:45 PM
hmm from the trace you are using UDP? (UDP PORT 33449) I dont think that will work unles you have something specific permitting this.
If you are using icmp then it should be fine.
04-09-2009 09:55 AM
thanks all !
i think that will not work never (only ping to interface):-(((((((((((
" On modern Unix and Linux-based operating systems, the traceroute utility by default uses UDP datagrams with destination ports number from 33434 to 33534. The traceroute utility usually has an option to specify use of ICMP echo request (type 8) instead, as used by the Windows tracert utility. If you have a firewall and if you want traceroute to work from both machines (Unix/Linux and Windows) you will need to allow both protocols inbound through your firewall (UDP with ports from 33434 to 33534 and ICMP type 8)."
i think that thread is closed and sorry for my bad english))))))))