Re: Norton AntiVirus detected a virus in a message you sent. The inf ected attachment was deleted.

2002-01-28 Thread Tzafrir Cohen
recipients. -- Tzafrir Cohen/\ mailto:[EMAIL PROTECTED]\ / ASCII Ribbon Campaign Taub 229, 972-4-829-3942, X Against HTML Mail http://www.technion.ac.il/~tzafrir / \

Re: kernel with ip_nat_h323

2002-01-18 Thread Tzafrir Cohen
On Fri, 18 Jan 2002, Alexander Clouter wrote: On Jan 17, Tzafrir Cohen wrote: This all spells too much bleeding edge to me. I also had problems applying those patches on kernel 2.4.17. Has anybody got this configuration built and working for some time (with a resonably recent 2.4

Re: kernel with ip_nat_h323

2002-01-18 Thread Tzafrir Cohen
On Fri, 18 Jan 2002, Tzafrir Cohen wrote: On Fri, 18 Jan 2002, Alexander Clouter wrote: like the one I have done? :)My patch applies to a vanilla 2.4.17 and is: linux-2.4.17-newnat-crypto-qos-xfs.patch.bz2 where various useful bits (except for BoFH features ;) ) from the newnat

Re: Strange traffic from ISP dns server

2002-01-14 Thread Tzafrir Cohen
as originating from 10.x.x.x in the entrance from the internet. -- Tzafrir Cohen/\ mailto:[EMAIL PROTECTED]\ / ASCII Ribbon Campaign Taub 229, 972-4-829-3942, X Against HTML Mail http://www.technion.ac.il/~tzafrir / \

Re: [ISO-8859-2] Wiadomo

2002-01-14 Thread Tzafrir Cohen
-200112/msg00054.html I would never consider taking such actions had the list master bothered doing anything about this. On Mon, Jan 14, 2002 at 01:43:57PM +0200, Tzafrir Cohen wrote: :0 * ^Subject: =?ISO-8859-2?Q?Wiadomo * ^From: Tomek Zubilew [EMAIL PROTECTED] [EMAIL PROTECTED

Re: Strange traffic from ISP dns server

2002-01-13 Thread Tzafrir Cohen
such packet. Note that if your local network actually contains such addresses (e.g.: your home network is a masqueraded one, and uses the range 192.168.0.x) then you should allow packets of that range from the internal interface. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il

Re: Ipmasq problems

2002-01-11 Thread Tzafrir Cohen
? -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: Is ipmasq worth it?

2002-01-08 Thread Tzafrir Cohen
a language of its own, relatively powerful, which translates either to iptables, ipchains or ipfwadm (not fully supported iirc) commands which are executed. Does it produce a good iptables ruleset? For instance: does it use basic iptables-only features such as stateful filtering? -- Tzafrir

Re: Is ipmasq worth it?

2002-01-08 Thread Tzafrir Cohen
unexpectedly) Having configuration from script (in a good way) can make the script more robust to syntax errors and such (they can be detected at the beginning, and not half-way through execution). Displacer: I haven't worked with ipmasq . If you like perl, you may consider using fwctl. -- Tzafrir

Re: How-to modify /etc/init.d/networking for stopping IPTables?

2002-01-07 Thread Tzafrir Cohen
first. But in what way does it releive your system? The memory overhead is negligable, and I believe that the prforance overhead is negligable with all the rules flushed (you're welcome to test this, of course). Will your system be running much of the time with iptables disabled? -- Tzafrir

Re: Ip_forward trouble

2002-01-07 Thread Tzafrir Cohen
set them up with the subnet you suggest. (though the term easily may not apply as I have yet to get this working). -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

/etc/ini.d/ipfm stop takes down the interface

2002-01-01 Thread Tzafrir Cohen
? -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: ip_masq_ftp

2001-11-24 Thread Tzafrir Cohen
FAQ). -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: Weird SMTP problem?

2001-11-14 Thread Tzafrir Cohen
server was sending to was no longer there but you had cached the address?Just guessing. Is there any way for me to clear this cache without taking the interface down? w2k has 'ipconfig /flushdns' (which is supposed to do that, but doesn't seem to work) -- Tzafrir Cohen

Re: mailserver problem.

2001-11-05 Thread Tzafrir Cohen
How about other types of connections? FTP? HTTP? Where is the problem: a delay when establishing a connection or simply a slow connection? -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: ONLY 1 NIC RESPONDING ON 3 INSTALLED NICS

2001-11-05 Thread Tzafrir Cohen
' there then you should either set up /etc/modules (a list of mudules which are loaded automatically) or load the modules manually with 'modprobe' BTW: In the future, please avoid an ALL CAPS subject, unless you really think that it is worth SHOUTING. -- Tzafrir Cohen/\ mailto

iproute tc with ingres qdisc

2001-11-02 Thread Tzafrir Cohen
or pointers to useful resources would be appreciated. The system is kernel 2.2/woody -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: good dau firwall (;

2001-10-23 Thread Tzafrir Cohen
of TCP/IP just to be able to set-up some basic firewalling rules. Furthermore, those basic rules better be setup before the user first connects to the internet, if possible. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: question about ipchains on dual interface machine

2001-10-11 Thread Tzafrir Cohen
configuration you make sure that (almost) no matter how badly those daemons are configured, they still can't be accessed from the internet. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: Help I am getting frustrated

2001-09-30 Thread Tzafrir Cohen
On Tue, 25 Sep 2001, Robert Schweikert wrote: Tzafrir Cohen wrote: On Sat, 22 Sep 2001, Robert Schweikert wrote: I would like to switch to Debian, and once this is accomplished I'd like to helpwith the project. However, switching has been much more difficult than I anticipated

Re: Help I am getting frustrated

2001-09-23 Thread Tzafrir Cohen
-get update' ? what is your /etc/apt/sources.list ? Yo get a list of local ipchains ruls run 'ipchains -L -n' ('-n' is so you won't waste a couple of minutes resolving names of IPs). -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: firewall scripts

2001-09-16 Thread Tzafrir Cohen
. But apart from that it is a rather convinient program. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: port 80 filtered

2001-09-15 Thread Tzafrir Cohen
-- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: port 80 filtered

2001-09-13 Thread Tzafrir Cohen
of the URL http://your_machine/ ? BTW: I would use port 81 or some other free port below 1024 , to make sure that simple user processes won't cause any problems. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: Imap server questions

2001-09-11 Thread Tzafrir Cohen
for some uses is to give web interface to the imap server, and expose only that. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: pptpd problems

2001-08-31 Thread Tzafrir Cohen
properly... On Thu, 30 Aug 2001, Tzafrir Cohen wrote: Hi A third post, but I still can't make things work properly: On Wed, 29 Aug 2001, Tzafrir Cohen wrote: On Wed, 29 Aug 2001, Tzafrir Cohen wrote: Hi I'm trying to set up pptpd on a woody system to enable MS clients to connect

Re: pptpd problems

2001-08-30 Thread Tzafrir Cohen
Hi A third post, but I still can't make things work properly: On Wed, 29 Aug 2001, Tzafrir Cohen wrote: On Wed, 29 Aug 2001, Tzafrir Cohen wrote: Hi I'm trying to set up pptpd on a woody system to enable MS clients to connect. I wanted to enable the ssl-mppe patch. Generally I needed

pptpd problems

2001-08-29 Thread Tzafrir Cohen
pppd in the logs. I have 'debug' set in pptpd-options . Even if I run 'pppd debug' (as root') I get a couple of lines of garbage, but I see nothing in this log. Yet the man page claims that pppd debugging goes to syslog as deamon.debug . What am I doing wrong here? -- Tzafrir Cohen mailto:[EMAIL

connections through NAT are disconnected

2001-08-20 Thread Tzafrir Cohen
('Client') to a computer just outside the NAT network ('Server'). in Client the settings of KeepAlive are the default (that is on , right?) Are those disconnections a feature of the linux NAT or is there anything I can do about this? -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http

Re: iptables igmp evil protocol!

2001-08-20 Thread Tzafrir Cohen
to resolve protocol number 2 to 'igmp' and vice-versa. It won't make the packets go away. How do I make the annoying broadcast message go to /dev/null so I won't have to see it everytime I am connected to the internet via dial-up if I cannot delete igmp protocol? (Not 'delete', 'ignore') -- Tzafrir

Re: iptables + icq

2001-08-17 Thread Tzafrir Cohen
the mirabilis ones, don't have some exploitable/exploited buffer overflows) -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: FTP proxy support

2001-08-17 Thread Tzafrir Cohen
if they only need to get spesific files), but this is not always a replacement for an FTP proxy, if you want to deny direct connection. -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir

Re: Passive FTP on linux

2001-07-31 Thread Tzafrir Cohen
write ;-) -- Tzafrir Cohen mailto:[EMAIL PROTECTED] http://www.technion.ac.il/~tzafrir