Ad Widget

Collapse

Proxy issue with NAT

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • bertterbeest
    Junior Member
    • Mar 2017
    • 10

    #1

    Proxy issue with NAT

    Hi all,

    I have a config with several proxies and one main server. Now for the first time I'd like to add a proxy that is not in the same LAN (S2S VPN) network. This works fine the proxy is reporting to the server. However a requirement was to run this server on a custom port. So I made a PAT rule in the firewall to make the server available on the internet side via this custom port but internally on 10050/10051 as per usual.

    So the setup is this:
    Zabbix server with standard ports
    Port translate from external 20050 to 10050
    Proxy, reporting to external internet IP of the server

    How can I get the agents to behave in this setup and report to the proxy normally? They do not seem to have a connection. Any help will be great on this.
  • bertterbeest
    Junior Member
    • Mar 2017
    • 10

    #2
    After some troubleshooting it seems that the encryption is the culprit here. The agent log shows:
    failed to accept an incoming connection: from [ip]: unencrypted connections are not allowed

    Even though the server has encryption enabled for the agent. The proxy also uses psk encryption which works fine. Just the Proxy-Agent connection that does not seem to pick that up well.

    If I disable encryption on the agent it works fine.

    Anyone any idea how to configure the agent to connect securely with the proxy?

    Comment

    • bertterbeest
      Junior Member
      • Mar 2017
      • 10

      #3
      Never mind, silly config error on my end. Debugging it finally pointed me to this error. Should keep my eyes open next time.

      Comment

      Working...