• Recent
    • Unsolved
    • Tags
    • Popular
    • Users
    • Groups
    • Search
    • Register
    • Login
    1. Home
    2. songnar
    S
    • Profile
    • Following 0
    • Followers 0
    • Topics 1
    • Posts 11
    • Best 0
    • Controversial 0
    • Groups 0

    songnar

    @songnar

    0
    Reputation
    200
    Profile views
    11
    Posts
    0
    Followers
    0
    Following
    Joined Last Online
    Age 36

    songnar Unfollow Follow

    Latest posts made by songnar

    • RE: The dreaded PXE-E32

      PROBLEM FOUND!

      The ultimate issue in my system has been located.
      Shame it’s not a cake in the manifold.

      I popped in gPXE into a machine and got some useful output… The bloody Fortigate isn’t passing option 66! It’s trying to use 0.254 (the gateway) as the TFTP server even though I have calm explained to it that the TFTP server is at 0.90!

      What is a guy to do?

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      Okay, I’m going to try something stupid, maybe I’ll get lucky.

      I am going to set up FOG to provide DHCP but it will have an IP range of 0.151 to 0.181, the fortigate is providing addresses from 0.1 to 0.150.

      I will disable option 67 but leave option 66 on and pointing to the FOG server which will have an address within the 1-150 range.

      Bets, anyone?

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      Problem found!

      We have a multi-system VoIP configuration on our network. It is using port 69.

      Now…what’s plan B?

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      G
      [quote=“songnar, post: 1322, member: 480”]I’m going to have a go at setting it up with an “unmodifiable DHCP server” a’la FOG setup guide.[/quote]
      Good news!
      No, wait, bad news! That didn’t work out either. Nuts.

      I’ve gone back to my original plan, set up FOG to forward DHCP to the DHCP server which tells PXE booting clients where to find the pxelinux.0 file…

      I still have not been able to get windows to successfully TFTP 192.168.X.X get pxelinux.0 to work either.
      I’m fairly certain that the TFTP server is running as I can do TFTP get from-to the server in terminal.
      I have blasted open ALL internal-to-internal ports. Still PXE-E32.

      Baffling.

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      I’m going to have a go at setting it up with an “unmodifiable DHCP server” a’la FOG setup guide.

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      Okay, so after double checking my work on the security protocol, I’m certain I’ve got that much right… I’m also halfway certain that 66 & 67 are set proper but I’m trying to find a code index to check that. At this point, no technical progress has been made, sadly. Back to the drawing board!

      EDIT: That shouldn’t be effecting the ability of Windows to perform a tftp get command, though. If the port is open, what am I missing here?

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      Alrighty! I’ll have another crack at her on Monday - that’ll be the first thing I do.
      Thank you very, very much!

      [quote=“Kevin, post: 1268, member: 3”]So, I may be wrong, but if you aren’t using a Windows server, it might not actually be ports 66 and 67 that you need to configure. Try to configure port 69 UDP on your FortiGate as this is that devices TFTP port.

      Page 260 of this document:

      [URL=‘https://encrypted.google.com/url?sa=t&rct=j&q=allow tftp traffic fortigate&source=web&cd=1&ved=0CCYQFjAA&url=http%3A%2F%2Fdocs.fortinet.com%2Ffgt%2Fhandbook%2F40mr3%2Ffortigate-system-admin-40-mr3.pdf&ei=Y-I1T7mfD8angwfZu-znBQ&usg=AFQjCNEcUiMM5JstGxmRc9AAzBTvVXsmCw&sig2=28Eu3vcZ9-Gea-hmSQw0rA&cad=rja’]https://encrypted.google.com/url?sa=t&rct=j&q=allow tftp traffic fortigate&source=web&cd=1&ved=0CCYQFjAA&url=http://docs.fortinet.com/fgt/handbook/40mr3/fortigate-system-admin-40-mr3.pdf&ei=Y-I1T7mfD8angwfZu-znBQ&usg=AFQjCNEcUiMM5JstGxmRc9AAzBTvVXsmCw&sig2=28Eu3vcZ9-Gea-hmSQw0rA&cad=rja[/URL][/quote]

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      [quote=“Kevin, post: 1266, member: 3”]Ok, one last question before this really gets chipped away at. When you setup the FOG server, did you set it up to act as a DHCP server to assign IP’s to the PXE clients? Or did you setup FOG to point to your DHCP server to have your actual DHCP server assign IP’s to your PXE clients?[/quote]

      Option number two, Mr.Kevin, FOG points to the already-in-place DHCP server to assign them IP addresses.

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      [quote=“Kevin, post: 1264, member: 3”]Is your FOG server isolated on its own network, or is it on a live network environment?[/quote]

      She is on a live network right now. I have a FortiGate 80c set up as a firewall and DHCP server, it was a pain but options 66 and 67 are set there already, as well as a hold on 0.90 (The FOG server’s IP address) so that only the FOG server may have it. I do not have any other cloning servers here, though I do have one server set up for outside access - I can’t imagine it would be causing any trouble as it’s only laying claim to port 80. Note - the firewall has been set to allow all internal-to-internal traffic without interruption, regardless of port or IP address.

      posted in FOG Problems
      S
      songnar
    • RE: The dreaded PXE-E32

      [quote=“Kevin, post: 1262, member: 3”]When you say that you’ve tested TFTP. Do you mean through the OS, or you actually PXE booted the PC’s and the linux box could boot to the FOG menu and the Windows box couldn’t?[/quote]

      I tested TFTP through the OS.
      Nothing is able to boot to the FOG menu at this moment.

      posted in FOG Problems
      S
      songnar