- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Issue trying to set up remote access to Pen Test device
Hi all,
I have a Raspberry Pi connected to a MS switch in its own Vlan and for the some reason I cannot connect or even ping the device remotely. I have set up 1to 1 Nat from my Public IP but still no joy. Any help much appreciated
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Do you have any firewall rules configured that could be blocking access?
Is the MX's public IP configured directly on the MX's WAN? Is this IP behind a CGNAT?
Please, if this post was useful, leave your kudos and mark it as solved.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi no I dont see any rules blocking, very simple set up;
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If the device is open using port forwarding be aware this isn't secure, using a VPN would be a better approach.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Are you trying to ping your device from inside or outside of your network?
Does the Raspberry Pi have a firewall on it, and if so, is ping allowed?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I am trying to ping from outside my network. Ping is allowed and there i no FW on the Pi
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Ping will not work in 1:1 NAT, only access to the specific port that you have allowed will work.
My advice is not to open this communication to the internet but to set up a Site to Site VPN which is more secure.
Please, if this post was useful, leave your kudos and mark it as solved.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Ok many thanks. Setting up Site to Site VPN is easy enough to a non Meraki Device?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes,
https://documentation.meraki.com/MX/Site-to-site_VPN/Site-to-Site_VPN_Settings#Non-Meraki_VPN_Peers
Please, if this post was useful, leave your kudos and mark it as solved.
