| 119426074014_545560007283 | Jay Levitt |
|
On Sunday 11 April 2004 4:56 pm, __ Radien__ wrote:
No. TCPwrappers is a response mechanism to see where a connection came
from, not a gateway in the middle of a connection between two mach |
|
|   |
| 159825144468_547660007658 | Alistair Tonner |
|
On Sun, 2004-04-11 at 01:38, Jay Levitt wrote:
Im occasionally seeing lines like the following, always to the same
machine which is on my internal network:
Apr 11 01:11:52 linux kernel: Rej |
|
|   |
| 180420494827_503860007245 | Alistair Tonner |
|
On Sun, 2004-04-11 at 01:38, Jay Levitt wrote:
Im occasionally seeing lines like the following, always to the same
machine which is on my internal network:
Apr 11 01:11:52 linux kernel: Rej |
|
|   |
| 198520694763_595460007252 | Antony Stone |
|
hi
im not sure if this is the right list to ask this, dont be too harsh one me :~
this is my ipv6 routing table
# route -A inet6 -n
Kernel IPv6 routing table
Destination |
|
|   |
| 137229974130_528060007725 | Antony Stone |
|
hi
im not sure if this is the right list to ask this, dont be too harsh one me :~
this is my ipv6 routing table
# route -A inet6 -n
Kernel IPv6 routing table
Destination |
|
|   |
| 177028544331_578560007440 | Antony Stone |
|
On Sun, 2004-04-11 at 02:54, Antony Stone wrote:
Can anyone think how I can see the content of packets from a browser running
on my machine, which is posting a form back to a remote server some |
|
|   |
| 106729074954_553660007688 | Antony Stone |
|
On Sun, 2004-04-11 at 02:54, Antony Stone wrote:
Can anyone think how I can see the content of packets from a browser running
on my machine, which is posting a form back to a remote server some |
|
|   |
| 119421864738_502060007530 | Antony Stone |
|
On Sun, Apr 11, 2004 at 01:54:39AM +0100, Antony Stone wrote:
I want to pick up a packet stream, but for an HTTPS connection, and using a
standard packet sniffer like ethereal just gives me t |
|
|   |
| 126622084599_502860007292 | Antony Stone |
|
On Sun, Apr 11, 2004 at 01:54:39AM +0100, Antony Stone wrote:
I want to pick up a packet stream, but for an HTTPS connection, and using a
standard packet sniffer like ethereal just gives me t |
|
|   |
| 128025354288_541160007949 | Anupam |
|
On Sat, 2004-04-10 at 20:54, Antony Stone wrote:
Hi people.
This is not strictly a netfilter question, but Im wondering if maybe someone
can help or make a suggestion?
I want to pick u |
|
|   |
| 113525864803_546760007111 | Anupam |
|
On Sat, 2004-04-10 at 20:54, Antony Stone wrote:
Hi people.
This is not strictly a netfilter question, but Im wondering if maybe someone
can help or make a suggestion?
I want to pick u |
|
|   |
| 190824384018_586160007401 | Philipp Stader |
|
|
|
|   |
| 154921684587_528660007812 | Syed Faisal Gillani |
|
Philipp Stader wrote:
|
|
|   |
| 181724554019_541560007182 | Nick Pasich |
|
On Sun, 11 Apr 2004, Syed Faisal Gillani wrote:
i am a newbie learning iptables ...
can u tell me the rule of blocking only ping on my nic ?
Hi,
try this:
iptables -A INPUT -p icmp --icmp-typ |
|
|   |
| 170727634718_599660007533 | Frederic de Villamil |
|
is it possible in iptables to FW a port traffic (eg 80) to an internal =
ipaddress of a webserver ?
Syed Faisal Gillani
ClickOnline Networks
clickonlinenetworks.com clickonlinenetworks.com
E |
|
|   |
| 194423094118_574660007489 | Jee JZ |
|
is it possible in iptables to FW a port traffic (eg 80) to an internal =
ipaddress of a webserver ?
Syed Faisal Gillani
ClickOnline Networks
clickonlinenetworks.com clickonlinenetworks.com
|
|
|   |
| 185726844927_587560007901 | Jee JZ |
|
On Saturday 10 April 2004 7:54 pm, Jee J.Z. wrote:
Dear all,
I am trying to setup three PCs and do some simple filter+nat jobs. The
situation is specified below:
1.PC1 has one NIC with a |
|
|   |
| 127620934069_586360007258 | Jee JZ |
|
On Sunday 11 April 2004 12:33 am, Jee J.Z. wrote:
Hi Antony,
Thanks for getting the spelling right - lots of people round here dont :)
Look at the routing table of each machine the packets a |
|
|   |
| 167421964713_569460007195 | Jee JZ |
|
On Sunday 11 April 2004 3:00 am, Jee J.Z. wrote:
Heres what I think is going on:
PC1 has a simple routing table saying "network 144.32.xxx.0/23 is on
eth0, and the deafult gatew |
|
|   |
| 187723194959_559460007132 | Antony Stone |
|
|
|
|   |
| 112722584441_524560007218 | Chris Brenton |
|
It happens on many servers, not just sourceforge - in fact, I get it on the
netfilter server as well. And its only sometimes for any given server, not
all the time...
Ill try turning on sendmail lo |
|
|   |
| 173528624902_566160007447 | Ranjeet Shetye |
|
Chris Brenton wrote:
On Sat, 2004-04-10 at 14:33, Jay Levitt wrote:
sourceforge: [SYN]
me: [SYN, ACK]
sourceforge: [ACK]
[SMTP conversation ensues, switches to TLS, sends me an |
|
|   |
| 156220124541_563260007921 | Antony Stone |
|
Hi all,
some of you can give me some input about the best way to set up a vpn
under two Linux RH9 systems?
I heared there are different solution (PPP and SSH, PPTP...) and Id
like to know your opin |
|
|   |
| 189025494117_560360007729 | Antony Stone |
|
Antony Stone wrote:
|
|
|   |
| 179921194047_575760007362 | Antony Stone |
|
Hi,
I forget one things, waht about the CIPE solution. I read that in the
rh9 sec guide about VPN.
And then, I see this news: the FreeS/WAN project is no longer in
active development, it could b |
|
|   |
| 188928414621_533060007625 | Alexander Samad |
|
Ok, I see.
Well, thank you very much for giving me such information and for being
so exhaustive.
regards
Gianni
Antony Stone wrote:
|
|
|   |
| 154828214486_545060007222 | Scott MacKay |
|
---snip----
Development has moved to openswan
I believe openvpm is another good choice for ipsec vpn solution
Regards,
Antony.
--
The difference between theo |
|
|   |
| 189820444234_543860007109 | Dick StPeters |
|
Im afraid I dont have time to answer in depth today but here are a few
quick answers regarding *swan:
On Mon, 2004-04-12 at 08:25, Scott MacKay wrote:
I had a couple questions about the different |
|
|   |
| 135925664658_547660007902 | John A Sullivan III |
|
On Saturday 10 April 2004 11:18, Antony Stone wrote:
PPP is Point-to-Point Protocol, and has almost nothing to do with VPNs :)
SSH is Secure Shell, and at least it contains some encryption, but |
|
|   |
| 120529674020_525360007735 | Dimitris Kounalakis |
|
lør, 10.04.2004 kl. 14.30 skrev John A. Sullivan III:
[...]
The closest solution we could find to rival the commercial offerings on
such a large scale is netfilter + freeS/WAN + iproute2 + |
|
|   |
| 161526124575_523660007661 | azeem ahmad |
|
On Friday 09 April 2004 12:56 pm, Dimitris Kounalakis wrote:
Hello,
I need a special case and I am not sure it can exist with NAT (SNAT or
DNAT)
I have two lan networks with IP range : 1 |
|
|   |
| 186124914482_534760007964 | Jeffrey Laramie |
|
On Friday 09 April 2004 11:07 pm, azeem ahmad wrote:
hi alll
i want to check the logs of iptables to check who is passing throught my
machine. so plz tell me where r its logs and how can i che |
|
|   |
| 156928384007_580460007684 | Antony Stone |
|
Dear friends,
As I am getting more confused about VPN masq., request your help on
this.
My local LAN is 10.35.0.0/24
My Linux box running red hat linux 9.0 with kernel 2.4.20-8. acting as the
gat |
|
|   |
| 191326354249_557160007418 | Luke Deryckx |
|
yes, you need the pptp patch
ive been in the same situation, and applying the patch made it work just
fine.-
see
www.netfilter.org/documentation/HOWTO//netfilter-extensions-HOWTO-5.html#ss5.6 |
|
|   |
| 147223164385_549360007108 | Manikandan |
|
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
Testing patch submitted/03_2.4.21.patch...
Failed to patch copy |
|
|   |
| 122721844721_580360007663 | azeem ahmad |
|
On Friday 09 April 2004 12:56 pm, Dimitris Kounalakis wrote:
Hello,
I need a special case and I am not sure it can exist with NAT (SNAT or
DNAT)
I have two lan networks with IP range : 1 |
|
|   |
| 146422814154_594660007094 | Dave Barnum |
|
On Sunday 25 April 2004 2:11 pm, Manikandan wrote:
Somehow I managed to patch my kernel with pptp patch. But everytime when I
load modules like ip_conntrack_pptp, ip_nat_pptp, I am getting an er |
|
|   |
| 191021974933_591860007209 | Jeffrey Laramie |
|
On Friday 09 April 2004 11:07 pm, azeem ahmad wrote:
hi alll
i want to check the logs of iptables to check who is passing throught my
machine. so plz tell me where r its logs and how can i che |
|
|   |
| 160129144844_585160007955 | Manikandan |
|
Hi,
Is there a patch for the IPSec masquerading for kernel 2.4.x. Basically,
I need to allow multiple clients in a private lan access the (IPSec) VPN
server through the internet.
I hit upon this link |
|
|   |
| 126929564271_565460007840 | Antony Stone |
|
Dear friends,
As I am getting more confused about VPN masq., request your help on
this.
My local LAN is 10.35.0.0/24
My Linux box running red hat linux 9.0 with kernel 2.4.20-8. acting as the
gat |
|
|   |
| 176226764024_548360007444 | Luke Deryckx |
|
On Saturday 10 April 2004 6:18 am, Manikandan wrote:
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
T |
|
|   |
| 114629434726_530060007353 | Luke Deryckx |
|
yes, you need the pptp patch
ive been in the same situation, and applying the patch made it work just
fine.-
see
www.netfilter.org/documentation/HOWTO//netfilter-extensions-HOWTO-5.html#ss5.6 |
|
|   |
| 139527984550_532860007551 | Antony Stone |
|
|
|
|   |
| 153723164464_538160007949 | Manikandan |
|
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
Testing patch submitted/03_2.4.21.patch...
Failed to patch copy |
|
|   |
| 133524354905_560760007353 | Antony Stone |
|
No, not using netfilter (unless you wanted to create a rule for each
possible
destination, just in case some packets got sent there (but then youd want
to
know what protocol was used, too, so |
|
|   |
| 144628514029_547060007508 | Dave Barnum |
|
On Sunday 25 April 2004 2:11 pm, Manikandan wrote:
Somehow I managed to patch my kernel with pptp patch. But everytime when I
load modules like ip_conntrack_pptp, ip_nat_pptp, I am getting an er |
|
|   |
| 191524804450_564060007338 | Donovan J Edye |
|
okay ... i decided to try them both ( the rule you posted and snort) to see
... ( one at a time :-) )
i just installed snort but i am stuck in the manual right now ... if it
happens to have a snort c |
|
|   |
| 199421744135_554460007851 | Manikandan |
|
Hi,
Is there a patch for the IPSec masquerading for kernel 2.4.x. Basically,
I need to allow multiple clients in a private lan access the (IPSec) VPN
server through the internet.
I hit upon this link |
|
|   |
| 109520384166_555960007333 | Roeland Moors |
|
I have the following setup: CAPS = Device / Machine
- ROUTER: WAN Address: xxxxxxxxx LAN Address: 192.168.40.1
- IPTABLES: 1 LAN Interface 192.168.40.5 (Gateway: 192.168.40.1)
- PROXY: 1 LA |
|
|   |
| 150827554768_541260007857 | Luke Deryckx |
|
On Saturday 10 April 2004 6:18 am, Manikandan wrote:
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
T |
|
|   |