network connectivity abnormal

danielng

New Member
hi,

we have a 2012 server's nic showing connected to internet but cant ping 8.8.8.8
firewall returns Destination host unreachable though firewall can reach internet.

it can ping firewall. all other devices can reach internet.

i checked in the firewall and saw ping was allowed and packet was delivered.
safe mode is the same result

restarting the server and using another nic doesnt help.
this server is for exchange and although it cant send mail, it can receive.

anyone know how to fix it?

regards
 
Have you tried another Machine? Maybe its the router/network switch(whatever you are using if its a server) not allowing the outbound connection.
 
Start Time: 24/05/2019 週五 - 12:13:49.24
===========================================
=============== IP CONFIG ===============
===========================================

Windows IP Configuration

Host Name . . . . . . . . . . . . : COAMAIL1
Primary Dns Suffix . . . . . . . : cyberonair.local
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : cyberonair.local

Ethernet adapter Ethernet:

Connection-specific DNS Suffix . : cyberonair.local
Description . . . . . . . . . . . : Intel(R) I350 Gigabit Network Connection
Physical Address. . . . . . . . . : 6C-0B-84-EF-23-F2
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::a15e:1643:f6:3eff%12(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.227(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.254
DHCPv6 IAID . . . . . . . . . . . : 208407428
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-DF-40-20-6C-0B-84-EF-23-F2
DNS Servers . . . . . . . . . . . : ::1
192.168.1.228
8.8.8.8
NetBIOS over Tcpip. . . . . . . . : Disabled

Ethernet adapter VirtualBox Host-Only Network:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : VirtualBox Host-Only Ethernet Adapter
Physical Address. . . . . . . . . : 0A-00-27-00-00-11
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::253b:4f5b:852:8900%17(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.56.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . :
DHCPv6 IAID . . . . . . . . . . . : 336199719
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-DF-40-20-6C-0B-84-EF-23-F2
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter VMware Network Adapter VMnet1:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : VMware Virtual Ethernet Adapter for VMnet1
Physical Address. . . . . . . . . : 00-50-56-C0-00-01
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::ad05:543a:3a33:388e%18(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.92.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : 2019年5月23日 15:48:54
Lease Expires . . . . . . . . . . : 2019年5月24日 12:33:56
Default Gateway . . . . . . . . . :
DHCP Server . . . . . . . . . . . : 192.168.92.254
DHCPv6 IAID . . . . . . . . . . . : 520114262
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-DF-40-20-6C-0B-84-EF-23-F2
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter VMware Network Adapter VMnet8:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : VMware Virtual Ethernet Adapter for VMnet8
Physical Address. . . . . . . . . : 00-50-56-C0-00-08
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::955f:3a7:d1bc:fc5f%20(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.175.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : 2019年5月23日 15:48:57
Lease Expires . . . . . . . . . . : 2019年5月24日 12:33:56
Default Gateway . . . . . . . . . :
DHCP Server . . . . . . . . . . . : 192.168.175.254
DHCPv6 IAID . . . . . . . . . . . : 553668694
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-DF-40-20-6C-0B-84-EF-23-F2
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
Primary WINS Server . . . . . . . : 192.168.175.2
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{379AE40D-13BB-4DF6-998A-E26655E1512B}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.cyberonair.local:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : cyberonair.local
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{03F77258-12BC-4685-A1A7-70A1BD5200E0}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{61AF5086-233E-4D5B-B52B-49AE88C2F589}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
===========================================
===========================================
===========================================


===========================================
=============== ARP CACHE ===============
===========================================

Interface: 127.0.0.1 --- 0x1
Internet Address Physical Address Type
224.0.0.22 static
224.0.0.252 static

Interface: 192.168.1.227 --- 0xc
Internet Address Physical Address Type
192.168.1.10 00-1e-0b-0b-0c-ed dynamic
192.168.1.12 a4-4e-31-63-06-d4 dynamic
192.168.1.13 f8-94-c2-15-45-69 dynamic
192.168.1.20 f0-de-f1-a4-a2-c9 dynamic
192.168.1.32 6c-4b-90-46-54-8c dynamic
192.168.1.33 34-02-86-e3-77-72 dynamic
192.168.1.35 3c-97-0e-c5-b5-04 invalid
192.168.1.37 50-7b-9d-84-39-10 dynamic
192.168.1.78 d4-be-d9-ea-f0-d6 dynamic
192.168.1.83 00-11-25-f9-e3-8d dynamic
192.168.1.88 00-1e-90-ac-4e-3c dynamic
192.168.1.89 4c-cc-6a-5e-54-e2 dynamic
192.168.1.94 68-f7-28-d6-98-90 dynamic
192.168.1.111 30-9c-23-f2-14-46 dynamic
192.168.1.220 f4-81-39-b3-0a-cc dynamic
192.168.1.221 a0-b3-cc-9f-c1-37 dynamic
192.168.1.222 98-e7-f4-06-dd-60 dynamic
192.168.1.228 d0-94-66-2c-e2-b2 dynamic
192.168.1.233 00-1e-90-ac-5a-b4 dynamic
192.168.1.235 00-0c-29-b4-89-57 dynamic
192.168.1.242 00-1e-4f-2e-19-d9 dynamic
192.168.1.247 00-11-32-81-5f-9a dynamic
192.168.1.248 00-11-32-1f-04-99 dynamic
192.168.1.252 00-0c-29-49-e3-30 dynamic
192.168.1.254 08-5b-0e-29-22-fe dynamic
224.0.0.22 01-00-5e-00-00-16 static
224.0.0.252 01-00-5e-00-00-fc static

Interface: 192.168.56.1 --- 0x11
Internet Address Physical Address Type
192.168.56.1 00-00-00-00-00-00 invalid
192.168.56.255 ff-ff-ff-ff-ff-ff static
224.0.0.22 01-00-5e-00-00-16 static
224.0.0.252 01-00-5e-00-00-fc static

Interface: 192.168.92.1 --- 0x12
Internet Address Physical Address Type
169.254.252.95 00-00-00-00-00-00 invalid
192.168.92.254 00-50-56-f4-3f-50 dynamic
192.168.92.255 ff-ff-ff-ff-ff-ff static
224.0.0.22 01-00-5e-00-00-16 static
224.0.0.252 01-00-5e-00-00-fc static
255.255.255.255 ff-ff-ff-ff-ff-ff static

Interface: 192.168.175.1 --- 0x14
Internet Address Physical Address Type
169.254.252.95 00-00-00-00-00-00 invalid
192.168.175.2 00-00-00-00-00-00 invalid
192.168.175.254 00-50-56-f2-6b-ae dynamic
192.168.175.255 ff-ff-ff-ff-ff-ff static
224.0.0.22 01-00-5e-00-00-16 static
224.0.0.252 01-00-5e-00-00-fc static
255.255.255.255 ff-ff-ff-ff-ff-ff static
===========================================
===========================================
===========================================


===========================================
=============== WINS CACHE ==============
===========================================

NetBIOS Names Resolution and Registration Statistics
----------------------------------------------------

Resolved By Broadcast = 6
Resolved By Name Server = 0

Registered By Broadcast = 34
Registered By Name Server = 0

NetBIOS Names Resolved By Broadcast
---------------------------------------------
CINDY <00>
COAP20 <00>
COAP20 <00>
COAP20 <00>
CINDY <00>
COASSVR <00>


VirtualBox Host-Only Network:
Node IpAddress: [192.168.56.1] Scope Id: []

No Connections

VMware Network Adapter VMnet1:
Node IpAddress: [192.168.92.1] Scope Id: []

No Connections

VMware Network Adapter VMnet8:
Node IpAddress: [192.168.175.1] Scope Id: []

No Connections

Ethernet 2:
Node IpAddress: [0.0.0.0] Scope Id: []

No Connections

Ethernet:
Node IpAddress: [0.0.0.0] Scope Id: []

No Connections
===========================================
===========================================
===========================================


===========================================
============= PROXY SETTINGS =============
===========================================

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
User Agent REG_SZ Mozilla/4.0 (compatible; MSIE 8.0; Win32)
IE5_UA_Backup_Flag REG_SZ 5.0
ZonesSecurityUpgrade REG_BINARY 2CB8D7C71BF9D201
EmailName REG_SZ User@
AutoConfigProxy REG_SZ wininet.dll
MimeExclusionListForCache REG_SZ multipart/mixed multipart/x-mixed-replace multipart/x-byteranges
WarnOnPost REG_BINARY 01000000
UseSchannelDirectly REG_BINARY 01000000
EnableHttp1_1 REG_DWORD 0x1
UrlEncoding REG_DWORD 0x0
SecureProtocols REG_DWORD 0xa80
PrivacyAdvanced REG_DWORD 0x0
DisableCachingOfSSLPages REG_DWORD 0x0
WarnonZoneCrossing REG_DWORD 0x0
CertificateRevocation REG_DWORD 0x1
EnableNegotiate REG_DWORD 0x1
MigrateProxy REG_DWORD 0x1
ProxyEnable REG_DWORD 0x0

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CACHE
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Http Filters
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Lockdown_Zones
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones
===========================================
===========================================
===========================================


===========================================
=============== HOSTS FILE ===============
===========================================
# Copyright (c) 1993-2009 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
# 127.0.0.1 localhost
# ::1 localhost
===========================================
===========================================
===========================================


===========================================
=============== PING TESTs ===============
===========================================

Pinging google.com [172.217.161.174] with 32 bytes of data:
Reply from 192.168.1.254: Destination host unreachable.
Request timed out.
Request timed out.
Reply from 192.168.1.254: Destination host unreachable.

Ping statistics for 172.217.161.174:
Packets: Sent = 4, Received = 2, Lost = 2 (50% loss),


Pinging 8.8.8.8 with 32 bytes of data:
Request timed out.
Request timed out.
Request timed out.
Reply from 192.168.1.254: Destination host unreachable.

Ping statistics for 8.8.8.8:
Packets: Sent = 4, Received = 1, Lost = 3 (75% loss),


Tracing route to google-public-dns-a.google.com [8.8.8.8]
over a maximum of 2 hops:

1 <1 ms <1 ms <1 ms 192.168.1.254
2 192.168.1.254 reports: Destination host unreachable.

Trace complete.
===========================================
===========================================
===========================================


===========================================
=============== DNS TESTs ===============
===========================================
 
Do the working devices go though the firewall as well? Are there any server specific rules? If you bypass the firewall or create a temp rule allow any any from the server ip does it work?
 
all devices go through firewall. no server specific rule. the exisiting rule allows any from lan to all destination. i created a new rule just for this server to allow any but still the same.
 
Please open a Command Prompt and run the following commands:
Code:
tracert 8.8.8.8
Code:
tracert 8.8.4.4
Code:
tracert google.com

These will show where the packets stop, the last node on the network that the packets reach.
At least it will help us know if the packets go past the Gateway or never leave the LAN
 
just by passed the firewall and it can go out to internet using public ip. how can i identify what blocked the traffic?
 
You may have a cable that is failing (such as a pin is coming loose or damage inside the outer sheathe) or a damage pin or the connection wasn't good on the pin contacts. Which is why I was going to suggest swapping cables and potentially even the nic. This was apparent in the script dump since you were getting more than one error response from the pings

Pinging google.com [172.217.161.174] with 32 bytes of data:
Reply from 192.168.1.254: Destination host unreachable.
Request timed out.
Request timed out.
Reply from 192.168.1.254: Destination host unreachable.
 
Back
Top