i continue to dig on that and then : firewall rule : add: ipv4 From Lan to Wan. proto : icmp. And hop i was able to ping. Half way to it. Now i try to get an xrdp server. I try from lan to wan and put wan to lan in/out port on both as 3389. proto udp/tcp. But don<t get anything.. i can ping the unit, but no rdp connection. over tcpdump i see packet, but well, not sure what it mean..
:~# tcpdump -i any -c34 -X -A -vv port 3389
tcpdump: listening on any, link-type LINUX_SLL (Linux cooked v1), capture size 262144 bytes
21:47:56.822732 IP (tos 0x0, ttl 128, id 44777, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aee9 4000 8006 707d c0a8 1406 E..4..@...p}....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:56.822732 IP (tos 0x0, ttl 128, id 44777, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aee9 4000 8006 707d c0a8 1406 E..4..@...p}....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:56.822787 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 939022263, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..
21:47:56.822790 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 1, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..
21:47:57.326688 IP (tos 0x0, ttl 128, id 44778, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aeea 4000 8006 707c c0a8 1406 E..4..@...p|....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:57.326688 IP (tos 0x0, ttl 128, id 44778, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aeea 4000 8006 707c c0a8 1406 E..4..@...p|....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:57.326741 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 1, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..
21:47:57.326745 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 1, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..
21:47:57.828312 IP (tos 0x0, ttl 128, id 44779, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aeeb 4000 8006 707b c0a8 1406 E..4..@...p{....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:57.828312 IP (tos 0x0, ttl 128, id 44779, offset 0, flags [DF], proto TCP (6), length 52)
w10Lt.lan.49862 > 192.168.70.6.3389: Flags [S], cksum 0x3910 (correct), seq 939022262, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
0x0000: 4500 0034 aeeb 4000 8006 707b c0a8 1406 E..4..@...p{....
0x0010: c0a8 4606 c2c6 0d3d 37f8 57b6 0000 0000 ..F....=7.W.....
0x0020: 8002 faf0 3910 0000 0204 05b4 0103 0308 ....9...........
0x0030: 0101 0402 ....
21:47:57.828354 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 1, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..
21:47:57.828357 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
192.168.70.6.3389 > w10Lt.lan.49862: Flags [R.], cksum 0xdb77 (incorrect -> 0x74c0), seq 0, ack 1, win 0, length 0
0x0000: 4500 0028 0000 4000 4006 5f73 c0a8 4606 E..(..@.@._s..F.
0x0010: c0a8 1406 0d3d c2c6 0000 0000 37f8 57b7 .....=......7.W.
0x0020: 5014 0000 db77 0000 P....w..