INTELLIGENT WORK FORUMS
FOR COMPUTER PROFESSIONALS

Log In

Come Join Us!

Are you a
Computer / IT professional?
Join Tek-Tips Forums!
  • Talk With Other Members
  • Be Notified Of Responses
    To Your Posts
  • Keyword Search
  • One-Click Access To Your
    Favorite Forums
  • Automated Signatures
    On Your Posts
  • Best Of All, It's Free!

*Tek-Tips's functionality depends on members receiving e-mail. By joining you are opting in to receive e-mail.

Posting Guidelines

Promoting, selling, recruiting, coursework and thesis posting is forbidden.

Jobs

Netvanta 3430 config question

Netvanta 3430 config question

(OP)
I have not worked with adtran in a long time.

After I enabled the fire wall I can not access the unit with the public IP,  I have tried changing the port number fro 80, but it still does not work.  I do have ports mapped for a remote desktop and then I access the router with the private address from the remote machine.

Also I can not get any machine to get online when it used dhcp,  it gets the proper IP address and the private gateway address, and the DNS shows as the private gateway of the router.  when I put a static IP on a machine with the proper dns number the machine will go online. SO how do I get the DHCP to use the actual dns numbers.

here is the config . (I have changed the public IP just for this posting)


!
!
! ADTRAN, Inc. OS version 18.02.04.00
! Boot ROM version 17.06.01.00
! Platform: NetVanta 3430, part number 1202820G1
! Serial number
!
!
hostname ""
enable password
!
clock timezone -5-Eastern-Time
!
ip subnet-zero
ip classless
ip default-gateway 83.33.36.231
ip routing
ipv6 unicast-routing
!
!
no ip domain-lookup
ip name-server 198.200.128.11 117.212.101.139
!
!
no auto-config
!
event-history on
no logging forwarding
logging forwarding priority-level info
no logging email
!
no service password-encryption
!
username "admin" password
!
banner motd #

                ****** Important Banner Message ******

Enable and Telnet passwords are configured to "password".
HTTP and HTTPS default username is "admin" and password is "password".
Please change them immediately.
The ethernet 0/1 interface is enabled with an address of 10.10.10.1
Telnet, HTTP, and HTTPS access are also enabled.
To remove this message, while in configuration mode type "no banner motd".

                ****** Important Banner Message ******

#
!
!
ip firewall
no ip firewall alg msn
no ip firewall alg mszone
no ip firewall alg h323
!
!
!
!
!
!
!
!
!
!
no dot11ap access-point-control
!
!
!
!
ip dhcp-server excluded-address 10.10.20.0 10.10.20.99
ip dhcp-server excluded-address 10.10.20.111 10.10.20.255
!
ip dhcp-server pool "Private"
  network 10.10.20.0 255.255.255.0
  dns-server 10.10.20.1
  default-router 10.10.20.1
!
!
!
!
!
!
!
no ethernet cfm
!
interface eth 0/1
  description
  speed 100
  ip address  83.33.36.233  255.255.255.248
  ip access-policy Public
  no awcp
  no shutdown
!
!
interface eth 0/2
  description
  ip address  10.10.20.1  255.255.255.0
  ip mtu 1500
  ip access-policy Private
  no awcp
  no shutdown
!
!
!
!
!
!
!
!
!
!
ip access-list standard wizard-ics
  remark Internet Connection Sharing
  permit any
!
!
ip access-list extended self
  remark Traffic to NetVanta
  permit ip any  any     log
!
ip access-list extended wizard-pfwd-1
  remark Port Forward 1
  permit tcp any  host 83.33.36.233 eq 3389   log
!
ip access-list extended wizard-pfwd-2
  remark Port Forward 2
  permit tcp any  host 83.33.36.233 eq 3389   log
!
ip access-list extended wizard-pfwd-3
  remark Port Forward 3
  permit tcp any  host 83.33.36.233 eq 85   log
!
ip access-list extended wizard-pfwd-4
  remark Port Forward 4
  permit udp any  host 83.33.36.233 eq 85    log
!
ip access-list extended wizard-pfwd-5
  remark Port Forward 5
  permit tcp any  host 83.33.36.233 eq 448   log
!
ip access-list extended wizard-pfwd-6
  remark Port Forward 6
  permit udp any  host 83.33.36.233 eq 448    log
!
ip access-list extended wizard-remote-access
  remark do not hand edit this ACL
  permit tcp any  any eq www   log
  permit tcp any  any eq ssh   log
  permit tcp any  any eq ftp   log
  permit tcp any  any eq https   log
  permit icmp any  any  echo   log
!
!
!
!
ip policy-class Private
  allow list self self
  nat source list wizard-ics interface eth 0/1 overload
!
ip policy-class Public
  nat destination list wizard-pfwd-1 address 10.10.20.3
  nat destination list wizard-pfwd-2 address 10.10.20.3
  nat destination list wizard-pfwd-3 address 10.10.20.3
  nat destination list wizard-pfwd-4 address 10.10.20.3
  nat destination list wizard-pfwd-5 address 10.10.20.3
  nat destination list wizard-pfwd-6 address 10.10.20.3
!
!
!
ip route 0.0.0.0 0.0.0.0 83.33.36.232
!
no tftp server
no tftp server overwrite
ip http server
ip http secure-server
no snmp agent
no ip ftp server
ip ftp server default-filesystem flash
no ip scp server
no ip sntp server
!
!
!
!
!
!
!
!
ip sip udp 5060
ip sip tcp 5060
!
!
!
!
!
!
!
!
!
ip sip proxy grammar contact outbound-server-reference host domain
!
!
!
!
!
!
!
!
!
line con 0
  login
  password
!
line telnet 0 4
  login
  password
  no shutdown
line ssh 0 4
  login local-userlist
  no shutdown
!
!
!
!
!
end

 

RE: Netvanta 3430 config question

(OP)
got the outside access fixed.

 

Red Flag This Post

Please let us know here why this post is inappropriate. Reasons such as off-topic, duplicates, flames, illegal, vulgar, or students posting their homework.

Red Flag Submitted

Thank you for helping keep Tek-Tips Forums free from inappropriate posts.
The Tek-Tips staff will check this out and take appropriate action.

Reply To This Thread

Posting in the Tek-Tips forums is a member-only feature.

Click Here to join Tek-Tips and talk with other members!

Resources

Close Box

Join Tek-Tips® Today!

Join your peers on the Internet's largest technical computer professional community.
It's easy to join and it's free.

Here's Why Members Love Tek-Tips Forums:

Register now while it's still free!

Already a member? Close this window and log in.

Join Us             Close