| 111123274696_590760007486 | Jay Levitt |
|
On Sunday 11 April 2004 4:56 pm, __ Radien__ wrote:
No. TCPwrappers is a response mechanism to see where a connection came
from, not a gateway in the middle of a connection between two mach |
|
|   |
| 183729304285_599060007546 | Alistair Tonner |
|
On Sun, 2004-04-11 at 01:38, Jay Levitt wrote:
Im occasionally seeing lines like the following, always to the same
machine which is on my internal network:
Apr 11 01:11:52 linux kernel: Rej |
|
|   |
| 194421044348_531660007296 | Alistair Tonner |
|
On Sun, 2004-04-11 at 01:38, Jay Levitt wrote:
Im occasionally seeing lines like the following, always to the same
machine which is on my internal network:
Apr 11 01:11:52 linux kernel: Rej |
|
|   |
| 182321654258_517960007803 | Antony Stone |
|
hi
im not sure if this is the right list to ask this, dont be too harsh one me :~
this is my ipv6 routing table
# route -A inet6 -n
Kernel IPv6 routing table
Destination |
|
|   |
| 124120534585_554960007432 | Antony Stone |
|
hi
im not sure if this is the right list to ask this, dont be too harsh one me :~
this is my ipv6 routing table
# route -A inet6 -n
Kernel IPv6 routing table
Destination |
|
|   |
| 104524324759_574160007114 | Antony Stone |
|
On Sun, 2004-04-11 at 02:54, Antony Stone wrote:
Can anyone think how I can see the content of packets from a browser running
on my machine, which is posting a form back to a remote server some |
|
|   |
| 122721744043_551360007462 | Antony Stone |
|
On Sun, 2004-04-11 at 02:54, Antony Stone wrote:
Can anyone think how I can see the content of packets from a browser running
on my machine, which is posting a form back to a remote server some |
|
|   |
| 105821074566_540760007942 | Antony Stone |
|
On Sun, Apr 11, 2004 at 01:54:39AM +0100, Antony Stone wrote:
I want to pick up a packet stream, but for an HTTPS connection, and using a
standard packet sniffer like ethereal just gives me t |
|
|   |
| 170422464107_596360007432 | Antony Stone |
|
On Sun, Apr 11, 2004 at 01:54:39AM +0100, Antony Stone wrote:
I want to pick up a packet stream, but for an HTTPS connection, and using a
standard packet sniffer like ethereal just gives me t |
|
|   |
| 176526674485_534960007806 | Anupam |
|
On Sat, 2004-04-10 at 20:54, Antony Stone wrote:
Hi people.
This is not strictly a netfilter question, but Im wondering if maybe someone
can help or make a suggestion?
I want to pick u |
|
|   |
| 178122614237_553960007575 | Anupam |
|
On Sat, 2004-04-10 at 20:54, Antony Stone wrote:
Hi people.
This is not strictly a netfilter question, but Im wondering if maybe someone
can help or make a suggestion?
I want to pick u |
|
|   |
| 165422304750_569860007913 | Philipp Stader |
|
|
|
|   |
| 115928024020_572560007444 | Syed Faisal Gillani |
|
Philipp Stader wrote:
|
|
|   |
| 166629134690_577460007115 | Nick Pasich |
|
On Sun, 11 Apr 2004, Syed Faisal Gillani wrote:
i am a newbie learning iptables ...
can u tell me the rule of blocking only ping on my nic ?
Hi,
try this:
iptables -A INPUT -p icmp --icmp-typ |
|
|   |
| 120626404783_569160007999 | Frederic de Villamil |
|
is it possible in iptables to FW a port traffic (eg 80) to an internal =
ipaddress of a webserver ?
Syed Faisal Gillani
ClickOnline Networks
clickonlinenetworks.com clickonlinenetworks.com
E |
|
|   |
| 149727704260_573460007263 | Jee JZ |
|
is it possible in iptables to FW a port traffic (eg 80) to an internal =
ipaddress of a webserver ?
Syed Faisal Gillani
ClickOnline Networks
clickonlinenetworks.com clickonlinenetworks.com
|
|
|   |
| 130929644493_505860007236 | Jee JZ |
|
On Saturday 10 April 2004 7:54 pm, Jee J.Z. wrote:
Dear all,
I am trying to setup three PCs and do some simple filter+nat jobs. The
situation is specified below:
1.PC1 has one NIC with a |
|
|   |
| 197228204037_599260007246 | Jee JZ |
|
On Sunday 11 April 2004 12:33 am, Jee J.Z. wrote:
Hi Antony,
Thanks for getting the spelling right - lots of people round here dont :)
Look at the routing table of each machine the packets a |
|
|   |
| 143522104159_512560007034 | Jee JZ |
|
On Sunday 11 April 2004 3:00 am, Jee J.Z. wrote:
Heres what I think is going on:
PC1 has a simple routing table saying "network 144.32.xxx.0/23 is on
eth0, and the deafult gatew |
|
|   |
| 124121894675_502360007664 | Antony Stone |
|
|
|
|   |
| 102223774434_528360007743 | Chris Brenton |
|
It happens on many servers, not just sourceforge - in fact, I get it on the
netfilter server as well. And its only sometimes for any given server, not
all the time...
Ill try turning on sendmail lo |
|
|   |
| 154624214706_503860007367 | Ranjeet Shetye |
|
Chris Brenton wrote:
On Sat, 2004-04-10 at 14:33, Jay Levitt wrote:
sourceforge: [SYN]
me: [SYN, ACK]
sourceforge: [ACK]
[SMTP conversation ensues, switches to TLS, sends me an |
|
|   |
| 127424514186_531260007730 | Antony Stone |
|
Hi all,
some of you can give me some input about the best way to set up a vpn
under two Linux RH9 systems?
I heared there are different solution (PPP and SSH, PPTP...) and Id
like to know your opin |
|
|   |
| 155928784940_571860007924 | Antony Stone |
|
Antony Stone wrote:
|
|
|   |
| 175322444112_542760007994 | Antony Stone |
|
Hi,
I forget one things, waht about the CIPE solution. I read that in the
rh9 sec guide about VPN.
And then, I see this news: the FreeS/WAN project is no longer in
active development, it could b |
|
|   |
| 109022904371_552460007483 | Alexander Samad |
|
Ok, I see.
Well, thank you very much for giving me such information and for being
so exhaustive.
regards
Gianni
Antony Stone wrote:
|
|
|   |
| 126721194904_597460007382 | Scott MacKay |
|
---snip----
Development has moved to openswan
I believe openvpm is another good choice for ipsec vpn solution
Regards,
Antony.
--
The difference between theo |
|
|   |
| 134024324833_552660007275 | Dick StPeters |
|
Im afraid I dont have time to answer in depth today but here are a few
quick answers regarding *swan:
On Mon, 2004-04-12 at 08:25, Scott MacKay wrote:
I had a couple questions about the different |
|
|   |
| 125623034153_519560007156 | John A Sullivan III |
|
On Saturday 10 April 2004 11:18, Antony Stone wrote:
PPP is Point-to-Point Protocol, and has almost nothing to do with VPNs :)
SSH is Secure Shell, and at least it contains some encryption, but |
|
|   |
| 111927744401_523260007669 | Dimitris Kounalakis |
|
lør, 10.04.2004 kl. 14.30 skrev John A. Sullivan III:
[...]
The closest solution we could find to rival the commercial offerings on
such a large scale is netfilter + freeS/WAN + iproute2 + |
|
|   |
| 122522904960_559760007532 | azeem ahmad |
|
On Friday 09 April 2004 12:56 pm, Dimitris Kounalakis wrote:
Hello,
I need a special case and I am not sure it can exist with NAT (SNAT or
DNAT)
I have two lan networks with IP range : 1 |
|
|   |
| 107920824651_598360007809 | Jeffrey Laramie |
|
On Friday 09 April 2004 11:07 pm, azeem ahmad wrote:
hi alll
i want to check the logs of iptables to check who is passing throught my
machine. so plz tell me where r its logs and how can i che |
|
|   |
| 136523964241_519860007987 | Antony Stone |
|
Dear friends,
As I am getting more confused about VPN masq., request your help on
this.
My local LAN is 10.35.0.0/24
My Linux box running red hat linux 9.0 with kernel 2.4.20-8. acting as the
gat |
|
|   |
| 147321774289_562760007310 | Luke Deryckx |
|
yes, you need the pptp patch
ive been in the same situation, and applying the patch made it work just
fine.-
see
www.netfilter.org/documentation/HOWTO//netfilter-extensions-HOWTO-5.html#ss5.6 |
|
|   |
| 178424924083_518460007283 | Manikandan |
|
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
Testing patch submitted/03_2.4.21.patch...
Failed to patch copy |
|
|   |
| 185429504574_581360007389 | azeem ahmad |
|
On Friday 09 April 2004 12:56 pm, Dimitris Kounalakis wrote:
Hello,
I need a special case and I am not sure it can exist with NAT (SNAT or
DNAT)
I have two lan networks with IP range : 1 |
|
|   |
| 134526254471_599760007527 | Dave Barnum |
|
On Sunday 25 April 2004 2:11 pm, Manikandan wrote:
Somehow I managed to patch my kernel with pptp patch. But everytime when I
load modules like ip_conntrack_pptp, ip_nat_pptp, I am getting an er |
|
|   |
| 180529734923_504660007845 | Jeffrey Laramie |
|
On Friday 09 April 2004 11:07 pm, azeem ahmad wrote:
hi alll
i want to check the logs of iptables to check who is passing throught my
machine. so plz tell me where r its logs and how can i che |
|
|   |
| 103226444022_532260007395 | Manikandan |
|
Hi,
Is there a patch for the IPSec masquerading for kernel 2.4.x. Basically,
I need to allow multiple clients in a private lan access the (IPSec) VPN
server through the internet.
I hit upon this link |
|
|   |
| 163220544888_571660007612 | Antony Stone |
|
Dear friends,
As I am getting more confused about VPN masq., request your help on
this.
My local LAN is 10.35.0.0/24
My Linux box running red hat linux 9.0 with kernel 2.4.20-8. acting as the
gat |
|
|   |
| 200020924562_557360007107 | Luke Deryckx |
|
On Saturday 10 April 2004 6:18 am, Manikandan wrote:
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
T |
|
|   |
| 196322504733_543460007340 | Luke Deryckx |
|
yes, you need the pptp patch
ive been in the same situation, and applying the patch made it work just
fine.-
see
www.netfilter.org/documentation/HOWTO//netfilter-extensions-HOWTO-5.html#ss5.6 |
|
|   |
| 196120514312_588460007483 | Antony Stone |
|
|
|
|   |
| 172821304126_575060007397 | Manikandan |
|
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
Testing patch submitted/03_2.4.21.patch...
Failed to patch copy |
|
|   |
| 114520844451_503360007690 | Antony Stone |
|
No, not using netfilter (unless you wanted to create a rule for each
possible
destination, just in case some packets got sent there (but then youd want
to
know what protocol was used, too, so |
|
|   |
| 164527994783_520760007688 | Dave Barnum |
|
On Sunday 25 April 2004 2:11 pm, Manikandan wrote:
Somehow I managed to patch my kernel with pptp patch. But everytime when I
load modules like ip_conntrack_pptp, ip_nat_pptp, I am getting an er |
|
|   |
| 131423354938_504760007184 | Donovan J Edye |
|
okay ... i decided to try them both ( the rule you posted and snort) to see
... ( one at a time :-) )
i just installed snort but i am stuck in the manual right now ... if it
happens to have a snort c |
|
|   |
| 138827294235_570160007333 | Manikandan |
|
Hi,
Is there a patch for the IPSec masquerading for kernel 2.4.x. Basically,
I need to allow multiple clients in a private lan access the (IPSec) VPN
server through the internet.
I hit upon this link |
|
|   |
| 118323404464_530960007916 | Roeland Moors |
|
I have the following setup: CAPS = Device / Machine
- ROUTER: WAN Address: xxxxxxxxx LAN Address: 192.168.40.1
- IPTABLES: 1 LAN Interface 192.168.40.5 (Gateway: 192.168.40.1)
- PROXY: 1 LA |
|
|   |
| 170622354000_515660007801 | Luke Deryckx |
|
On Saturday 10 April 2004 6:18 am, Manikandan wrote:
When I try to apply the patch, using netfilter CVS I am getting an error
like
Do you want to apply this patch [N/y/t/f/a/r/b/w/q/?] y
T |
|
|   |