• DDNS not working correctly

    From charlie@VERT to alt.bbs.synchronet on Friday, March 02, 2018 23:28:45
    From Newsgroup: alt.bbs.synchronet

    I'm puzzled. I joined DOVE-Net yesterday, successfully - I'm getting QWK packets of messages. Then I followed the instructions at http://wiki.synchro.net/module:dyndns
    but I'm not able to connect to my BBS either by web or telnet. I can ping
    the DDNS hostname though (coffee.synchro.net) and it comes back with my
    WAN (Internet) IP4 address, so it looks like DDNS is actually working.

    I've forwarded TCP ports 21,22,23,80 and 513 in my router, which is a
    Linksys E-1200 v.2 running DD-WRT v.3.0-r31924 mega. I even tried putting
    my PC in the DMZ. I've also disabled the firewall in PCLinuxOS, so I
    should be wide open to the Internet at the moment (I'm not going to leave
    it that way!) It's as though my services aren't binding to my external IP.
    (I can connect to my BBS via web by entering my internal LAN IP as the
    URL.)

    Any ideas?

    --
    /home/poets/sig
    --- Synchronet 3.17a-Win32 NewsLink 1.108
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net
  • From Digital Man@VERT to charlie on Friday, March 02, 2018 18:00:28
    Re: DDNS not working correctly
    By: charlie to alt.bbs.synchronet on Fri Mar 02 2018 11:28 pm

    From Newsgroup: alt.bbs.synchronet

    I'm puzzled. I joined DOVE-Net yesterday, successfully - I'm getting QWK packets of messages. Then I followed the instructions at http://wiki.synchro.net/module:dyndns
    but I'm not able to connect to my BBS either by web or telnet. I can ping the DDNS hostname though (coffee.synchro.net) and it comes back with my
    WAN (Internet) IP4 address, so it looks like DDNS is actually working.

    I've forwarded TCP ports 21,22,23,80 and 513 in my router, which is a Linksys E-1200 v.2 running DD-WRT v.3.0-r31924 mega. I even tried putting
    my PC in the DMZ. I've also disabled the firewall in PCLinuxOS, so I
    should be wide open to the Internet at the moment (I'm not going to leave
    it that way!) It's as though my services aren't binding to my external IP. (I can connect to my BBS via web by entering my internal LAN IP as the
    URL.)

    Any ideas?

    It could be that your router doesn't support hair-pinning, so you'd have to use your local/private IP address to connect to your own servers in that case.

    Also see:
    http://wiki.synchro.net/faq:tcpip#ports

    There's a link there to a web page you can use to see what servers/services you have open to the public Internet.

    digital man

    This Is Spinal Tap quote #13:
    Nigel Tufnel: You can't really dust for vomit.
    Norco, CA WX: 53.9øF, 86.0% humidity, 0 mph WSW wind, 0.00 inches rain/24hrs

    ---
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net
  • From mark lewis@VERT to charlie on Friday, March 02, 2018 22:01:10
    On 2018 Mar 02 23:28:44, you wrote to alt.bbs.synchronet:

    I've forwarded TCP ports 21,22,23,80 and 513 in my router, which is a

    FTP uses at least two ports... 20 and 21... others may be used if PASV (passive) mode is needed...

    the only other thing i can think of is if your router does not do hairpinning... that's where your internal devices can use your external WAN address and get to your internal server...

    )\/(ark

    Always Mount a Scratch Monkey
    Do you manage your own servers? If you are not running an IDS/IPS yer doin' it wrong...
    ... Any beer is better than no beer. Olympia is no beer.
    ---
    * Origin: (1:3634/12.73)
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net
  • From charlie@VERT to alt.bbs.synchronet on Saturday, March 03, 2018 03:31:29
    From Newsgroup: alt.bbs.synchronet

    On Fri, 02 Mar 2018 18:00:28 -0800, Digital Man wrote:

    To: charlie
    Re: DDNS not working correctly By: charlie to alt.bbs.synchronet on
    Fri Mar 02 2018 11:28 pm

    From Newsgroup: alt.bbs.synchronet

    I'm puzzled. I joined DOVE-Net yesterday, successfully - I'm getting
    QWK packets of messages. Then I followed the instructions at http://wiki.synchro.net/module:dyndns but I'm not able to connect to
    my BBS either by web or telnet. I can ping the DDNS hostname though (coffee.synchro.net) and it comes back with my WAN (Internet) IP4
    address, so it looks like DDNS is actually working.

    I've forwarded TCP ports 21,22,23,80 and 513 in my router, which is a Linksys E-1200 v.2 running DD-WRT v.3.0-r31924 mega. I even tried
    putting my PC in the DMZ. I've also disabled the firewall in
    PCLinuxOS, so I should be wide open to the Internet at the moment
    (I'm not going to leave it that way!) It's as though my services
    aren't binding to my external IP.
    (I can connect to my BBS via web by entering my internal LAN IP as
    the URL.)

    Any ideas?

    It could be that your router doesn't support hair-pinning, so you'd have
    to use your local/private IP address to connect to your own servers in
    that case.

    Also see:
    http://wiki.synchro.net/faq:tcpip#ports

    There's a link there to a web page you can use to see what
    servers/services you have open to the public Internet.

    digital man

    This Is Spinal Tap quote #13:
    Nigel Tufnel: You can't really dust for vomit.
    Norco, CA WX: 53.9°F, 86.0% humidity, 0 mph WSW wind, 0.00 inches
    rain/24hrs --- Synchronet 3.17a-Win32 NewsLink 1.108
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    Thank you very much. That's indeed what's happening. I'd never heard of "hairpinning" but apparently my router doesn't support it as I am able to
    log onto my board's web interface from another IP using Tor browser.

    Thanks for the port scan utility. It's very helpful. I wonder why it
    shows that telnet on port 23 fails even though I have that port
    forwarded? The telnet service must be running as I can telnet into my
    board locally (using my local internal LAN IP.)





    --
    /home/poets/sig
    --- Synchronet 3.17a-Win32 NewsLink 1.108
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net
  • From Digital Man@VERT to charlie on Friday, March 02, 2018 22:28:56
    Re: Re: DDNS not working correctly
    By: charlie to alt.bbs.synchronet on Sat Mar 03 2018 03:31 am

    Thank you very much. That's indeed what's happening. I'd never heard of "hairpinning" but apparently my router doesn't support it as I am able to log onto my board's web interface from another IP using Tor browser.

    Okay, cool. It doesn't hurt to just use your local/private IP address (or localhost) when logging on locally, though it can be pain sometimes for web testing where URLs might use hostnames.

    Thanks for the port scan utility. It's very helpful. I wonder why it
    shows that telnet on port 23 fails even though I have that port
    forwarded?

    It's possible, though unlikely, that your ISP is blocking TCP port 23.

    The telnet service must be running as I can telnet into my
    board locally (using my local internal LAN IP.)

    Cool. You could also have a friend or stranger help test it for you from their system(s) somewhere else on the Internet.


    digital man

    Synchronet "Real Fact" #67:
    SEXYZ is as a 32-bit replacement for [F]DSZ, CE-XYZ and other protocol drivers. Norco, CA WX: 50.1øF, 96.0% humidity, 0 mph WSW wind, 0.03 inches rain/24hrs

    ---
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net
  • From mark lewis@VERT to Digital Man on Saturday, March 03, 2018 10:48:04
    On 2018 Mar 02 22:28:56, you wrote to charlie:

    Thank you very much. That's indeed what's happening. I'd never heard of
    "hairpinning" but apparently my router doesn't support it as I am able
    to log onto my board's web interface from another IP using Tor browser.

    Okay, cool. It doesn't hurt to just use your local/private IP address
    (or localhost) when logging on locally, though it can be pain
    sometimes for web testing where URLs might use hostnames.

    yep, that's part of the pain that max has been dealing with since her SBBS has to be reverse proxied behind apache on the main system... that so that default port 80 can be used... with http 1.1, one can easily redirect the request to the actual desired host and feed the response back out as if it came from the main apache server... SBBS makes it a little tough to do this... FTP is really harsh when you have other FTP servers needing access, too... we have to do something special on our NAT firewall to tell ip_nat_ftp about the other base FTP ports so it will properly associate incoming connections with existing ones... it can be a deep hole to work in when hosting multiple servers with multiple protocols behind a NAT setup -=B-)

    )\/(ark

    Always Mount a Scratch Monkey
    Do you manage your own servers? If you are not running an IDS/IPS yer doin' it wrong...
    ... A bad day: "Transfer completed (5720468 bytes, 1 CPS)"
    ---
    * Origin: (1:3634/12.73)
    þ Synchronet þ Vertrauen þ Home of Synchronet þ [vert/cvs/bbs].synchro.net