Ask Experts Questions for FREE Help!
  Advanced
Register  |  Log in  
   Ask    
 Answer  
  Help  

Ask QuestionsprogressAnswer QuestionsprogressBuild ReputationprogressBecome an Expert
 
Free Answers in 3 Easy Steps

Register Now
3 Steps

At Ask Me Help Desk you can ask questions in any topic and have them answered for free by our experts. To ask questions or participate in answering them you must register for a free account. By registering you will be able to:
  • Get free answers from experts in any of our 300+ topics.
  • Accept money for answers that you provide.
  • Communicate privately with other members (PM).
  • See fewer ads.

Home > Computers & Technology > Networking   »   Two Differnet Networks in One System

 
Question Tools Search this Question Display Modes
Question
 
 
#1  
Old May 11, 2008, 11:49 PM
cnivas
New Member
cnivas is offline
 
Join Date: May 2008
Posts: 2
cnivas See this member's comment history on his/her Profile page.
Two Differnet Networks in One System

Hi Friends.....

I am facing a trouble in my Network.
I have one web server it has two Ip address on two different NICs.Both are in two different networks.One n/w is for LAN purpose and another is for External Connection.I give details below.

Local Area Connection
Ip Address 192.168.1.4
SNM 255.255.255.0
D.G.Way 192.168.1.1 (Router Address which has the public Ip address is 203.163.252.226)
P.D.N.S 202.88.174.6
A.D.N.S 202.88.174.8


External Network
Ip Address 203.163.252.43 (Public Address)
SNM 255.255.255.248
203.163.252.225
P.D.N.S 202.88.174.6
A.D.N.S 202.88.174.8

Problem is The External IP working for some time.That is about 8 hours or 12 hours.
After the that it can't work but when i repair the LAN connection it works normally about some more 8 hours.
I set the Scheduled Task for the repair External Lan but it didn't work.


Pleas Give any suggetions.


Thanks and Regards
Srinivas

Reply With Quote
 
     

Answers
 
 
Old May 12, 2008, 04:13 AM   #2  
Scleros
Hardware Expert
Scleros is offline
 
Join Date: Feb 2007
Location: Virginia USA
Posts: 744
Scleros See this member's comment history on his/her Profile page.
Problem #1:
The default gateway for the external adapter is not within the configured subnet of 203.163.252.40/29.

What is the physical arrangement of nics, switches, and routers?
When it stops working what does "ipconfig /all" (Windows?) show?

Problem #2:
In this configuration, if the web server ever gets compromised, so does your LAN. What are your reasons for not placing web server in a DMZ subnet?
  Reply With Quote
 
     
 
 
Old May 12, 2008, 05:04 AM   #3  
cnivas
New Member
cnivas is offline
 
Join Date: May 2008
Posts: 2
cnivas See this member's comment history on his/her Profile page.
Thanks Scleros....

I am using two NIC's One is OnBoard and another is Off-Board NIC.
On On-Board NIC i have configured Internal IP (i.e. 192.168.1.4 it is static IP ) which is connect to My Router.
The connection Details are as below.

I have Three switches (S1 {8-port Link Sys.}, S2 {24-port Link Sys} and S3 {24-port Net gear}).
I have one Net gear Wireless Router (WGR614v5).

I take cable from Media connector and put into Switch S1. From This S1 one cable to My Router and Another to My Web server’s Off-Board NIC which has External IP address. (i.e. Two Cables taken from S1 one for Router Having IP 203.163.252.226 and second one for WebServer having IP 203.163.252.43)

Now from Router two cables are taken and connect to S2& S3. From these two switches I have connected my local systems. (Including Web Server’s Local Ip {192.168.1.4}).


C:\Documents and Settings\administrator.PRODIGYSS>ipconfig /all

Windows IP Configuration

Host Name . . . . . . . . . . . . : prodigyss-ws
Primary Dns Suffix . . . . . . . : prodigyss.local
Node Type . . . . . . . . . . . . : Unknown
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : prodigyss.local

Ethernet adapter Local Area Connection 6:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Intel(R) PRO/100 VE Network Connection
Physical Address. . . . . . . . . : 00-19-D1-ED-DA-16
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 192.168.1.4
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.1
DNS Servers . . . . . . . . . . . : 202.88.174.6
202.88.174.8

Ethernet adapter Local Area Connection 10:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek RTL8139 Family PCI Fast Ethernet
NIC
Physical Address. . . . . . . . . : 00-08-A1-68-E6-CD
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 203.163.252.43
Subnet Mask . . . . . . . . . . . : 255.255.255.248
Default Gateway . . . . . . . . . : 203.163.252.225
DNS Servers . . . . . . . . . . . : 202.88.174.6
202.88.130.67


Problem#
The two Ip address working fine for some time.
But After Sometime The External IP (203.163.252.43) not working until i repair the connection.

Thanks & Regards
Srinivas
  Reply With Quote
 
     
 
 
Old May 12, 2008, 05:06 AM   #4  
ScottGem
Computer Expert
ScottGem is offline
 
ScottGem's Avatar
 
Join Date: Jan 2003
Location: LI, NY - USA
Posts: 22,612
ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.ScottGem See this member's comment history on his/her Profile page.
Pay to call ScottGem for advice ($.75/min)
Call ScottGem via Skype™
Just as an aside here, I do NOT recommend running a WEB server on your own. WEB hosting is so inexpensive and presents a much better value. Its unlikley a small shop can match the bandwidth, security and maintenance provided by a WEB host for the cost.
  Reply With Quote
 
     
 
 
Old May 12, 2008, 06:08 AM   #5  
Scleros
Hardware Expert
Scleros is offline
 
Join Date: Feb 2007
Location: Virginia USA
Posts: 744
Scleros See this member's comment history on his/her Profile page.
Quote:
Originally Posted by cnivas
Thanks Scleros....

Unless S1 is connected to a DMZ port on the router, you're attempting to run two networks on the same physical media - it's all one network.

Your public "external" network needs it's own switching fabric and to do so you need a three interface router. Typically the way this is done is:
Interface 1 = External WAN Port
Interface 2 = Public LAN (DMZ) < Web server connects here
Interface 3 = Private LAN

You connect a switch1 to interface2. You connect a switch2 to interface 3 and then connect a switch3 to switch2. Your web server's external nic connects to switch1 and the internal nic connects to switch2or3.

But, this setup is still a major security risk for your LAN if the web server gets compromised. I'm not trying to be mean, but if your server hardening skills are commensurate with your networking skills, your server is likely to get compromised fairly quickly. This is basic stuff.

Quote:
Originally Posted by ScottGem
Its unlikely a small shop can match the bandwidth, security and maintenance provided by a WEB host for the cost

I wholeheartedly agree with Scott - have your web site hosted.
  Reply With Quote
 
     
 
 
Old May 12, 2008, 09:35 AM   #6  
chuckhole
Network Expert
chuckhole is offline
 
Join Date: Jan 2008
Location: Houston, TX
Posts: 397
chuckhole See this member's comment history on his/her Profile page.
Call chuckhole via Skype™
You must have ONLY ONE gateway address configured. Based on your configuration, I would remove the GW from the LAN NIC and leave it on the WAN NIC. If the computer already has access to the Internet with a direct connection, then why are you trying to perform a circular route with a second gateway?

Second, for security sake (at least minimal), you need to disable File and Print Sharing and Windows Logon on the WAN NIC. Make sure that ONLY TCP/IP is enabled and that Dynamic DNS registrations are DISABLED.

If the LAN NIC had a GW address to route within your corporate WAN then you will need to add a static route for those network ID's only.
  Reply With Quote
 
     


Question Tools Search this Question
Search this Question:

Advanced Search
Display Modes

 
Similar Sponsors

Similar Questions
Question Asker Topic Answers Last Post
can i connect two networks in one system ethakotans Networking 2 Feb 1, 2008 09:17 AM
One PC different Networks Katyan Networking 2 Sep 14, 2007 07:33 AM
2 Networks 1 PC danski Networking 13 Aug 8, 2006 05:05 AM
clicking differnet cells and it selecting all cells mlister Spreadsheets 2 Aug 4, 2006 09:23 PM
Networks Khalvynnov Networking 1 Apr 29, 2006 12:32 PM




Copyright ©2003 - 2007, Ask Me Help Desk.
All times are GMT -8. The time now is 06:42 PM.

Content Relevant URLs by vBSEO 3.0.0 RC6 © 2006, Crawlability, Inc.