ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Is Anyone Able to Post from Behind Untangle?

    IT Discussion
    untangle
    6
    29
    8.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • scottalanmillerS
      scottalanmiller
      last edited by

      Specifically here in MangoLassi. We've had so many reports that posting from behind an Untangle device just does not work. Is there anyone with an example of it actually working? I am unaware of anyone having gotten this to work.

      Untangle is suspected of mangling the ioSocket traffic causing the problem.

      thanksajdotcomT 1 Reply Last reply Reply Quote 0
      • thanksajdotcomT
        thanksajdotcom @scottalanmiller
        last edited by

        @scottalanmiller said:

        Specifically here in MangoLassi. We've had so many reports that posting from behind an Untangle device just does not work. Is there anyone with an example of it actually working? I am unaware of anyone having gotten this to work.

        Untangle is suspected of mangling the ioSocket traffic causing the problem.

        No idea here.

        1 Reply Last reply Reply Quote 0
        • JaredBuschJ
          JaredBusch
          last edited by

          I can view but not post from behind a watchguard at one client. I do not manage it though so cannot test.

          scottalanmillerS 1 Reply Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller @JaredBusch
            last edited by

            @JaredBusch said:

            I can view but not post from behind a watchguard at one client. I do not manage it though so cannot test.

            That's what I've heard about both Watchguard and Untangle. My guess is that both are mangling Socket.io calls in the same way.

            1 Reply Last reply Reply Quote 0
            • scottalanmillerS
              scottalanmiller
              last edited by

              https://community.nodebb.org/topic/3344/issues-with-posting-from-behind-untangle-or-watchguard

              1 Reply Last reply Reply Quote 0
              • scottalanmillerS
                scottalanmiller
                last edited by

                Just found another Watchguard user that can't access the site. That reinforces that quite a bit.

                1 Reply Last reply Reply Quote 0
                • bbiAngieB
                  bbiAngie
                  last edited by

                  Testing!

                  scottalanmillerS 1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller @bbiAngie
                    last edited by

                    @bbiAngie said:

                    Testing!

                    Whoo hoo! It worked.

                    1 Reply Last reply Reply Quote 0
                    • bbiAngieB
                      bbiAngie
                      last edited by

                      Testing a second time.

                      1 Reply Last reply Reply Quote 0
                      • bbiAngieB
                        bbiAngie
                        last edited by bbiAngie

                        Seems the proxy on the Watchguard makes things a bit wonky. I just created a simple packet filter to pass traffic from my ip to the mangolassi ip and BAM. Now things work.

                        Just to clarify, we pass http/https traffic though a proxy. I am not sure if its the ripping apart/reassembly or the application control or something else that is causing the problem. I figure it was just as easy to not let that crap touch the traffic and let it pass though. My assumption ended up being correct.

                        1 Reply Last reply Reply Quote 1
                        • scottalanmillerS
                          scottalanmiller
                          last edited by

                          Thanks for testing and great to finally have you able to join us!

                          1 Reply Last reply Reply Quote 0
                          • bbiAngieB
                            bbiAngie
                            last edited by

                            Just what I need, another "tool" to distract, me!

                            1 Reply Last reply Reply Quote 1
                            • scottalanmillerS
                              scottalanmiller
                              last edited by

                              @g.jacobse installed Untangle yesterday and was instantly cut off from ML.

                              1 Reply Last reply Reply Quote 0
                              • gjacobseG
                                gjacobse
                                last edited by

                                I can at least read ML - I'm determined to find an answer,..

                                1 Reply Last reply Reply Quote 0
                                • JaredBuschJ
                                  JaredBusch
                                  last edited by

                                  It is definitely something with the web sockets stuff on the Watchguard series firewalls. I can read and even sign in (most of the time). But the notifications and unread counters never update right. As well as being unable to post.

                                  1 Reply Last reply Reply Quote 0
                                  • gjacobseG
                                    gjacobse
                                    last edited by

                                    On suggestion - Turned off all the UT Rack items other than Firewall...

                                    Able to read, and post to ML. Chat and notifications work. Now to go back and find out WHY -

                                    1 Reply Last reply Reply Quote 1
                                    • scottalanmillerS
                                      scottalanmiller
                                      last edited by

                                      Turn them back on one by one to identify which one it is. Chances are it is a proxy.

                                      gjacobseG 1 Reply Last reply Reply Quote 0
                                      • gjacobseG
                                        gjacobse @scottalanmiller
                                        last edited by

                                        I have, I've cycled through all the modules -

                                        • Web Filter Lite
                                          *Added site to pass list - did not allow.

                                        • Virus Blocker Lite
                                          *Added site to pass list - did not allow.

                                        • Intrusion Prevention

                                        • Ad Blocker

                                        • Not currently used or active:
                                          Application Control
                                          Captive Portal

                                        Variations of the the above doesn't seem to matter - they all block that level of access to ML. The only modules running right now are:

                                        • Spam Blocker
                                        • Phish Blocker
                                        • Firewall
                                        • Reports

                                        Still researching.

                                        1 Reply Last reply Reply Quote 0
                                        • gjacobseG
                                          gjacobse
                                          last edited by

                                          Created two ByPass rules

                                          Source with 162.242.243.171
                                          Destination with 162.242.243.171

                                          Able to access / post / etc.

                                          Of course - all that does is bypass it.. Pretty sure I'm looking another option..

                                          1 Reply Last reply Reply Quote 0
                                          • scottalanmillerS
                                            scottalanmiller
                                            last edited by

                                            Everyone seems to have to bypass the proxy stage to get it to work.

                                            DanpD 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 1 / 2
                                            • First post
                                              Last post