| Hmmmm. That picture does say it all. Somewhere on the internal network,
probably on the immediate "blue LAN" there is a router with address
203.2.170.251. The firewall will only process RIP messages - I seem to remember
that this is how gated as a whole works - from things that are one hop away.
That implies that the machine sending the RIP must be in the same subnet as the
internal interface, and this machine clearly isn't.
So, the next step is to find "the rest of the network". It may be that they are
putting multiple subnets on the same Ethernet, and this might be the problem.
It may be that they are using IP aliasing somewhere - on the Brouter, perhaps -
and so the RIP messages appear to be coming from the wrong address.
Please tell us the final answer when you find it - I'm intrigued!
T
|