RE:RESOLVED [leaf-user] Shorewall policies symmetric, but web page results are not.

2005-04-13 Thread Tibbs, Richard
Sorry list,
It turned out to be a bind configuration error.
Rick.

-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Tibbs,
Richard
Sent: Monday, April 11, 2005 2:16 PM
To: leaf-user
Subject: [leaf-user] Shorewall policies symmetric, but web page results
are not.


Dear List:
I have the following configuration
SLAX internal -- Bering 1.2 --- SLAX external   
192.168.10.1192.168.10.254  192.168.1.254 192.168.1.1  dns 
192.168.10.2
192.168.1.2 www

each SLAX machine is configured to bring up bind for dns at IP addresses

192.168.10.1 (internal) and 192.168.1.1 (external) resp.
In addition there is a web server running on 192.168.10.2 (internal) and
192.168.1.2 (external).

The symptom is that external can only load it's own web page
(extexample.com) whereas internal can load both intexample.com and
extexample.com.
Until I add a default route on eth0 (external interface) 
gateway 192.168.1.1
external cannot load internal's web page.
Why would this be necessary?

Each SLAX machine is given a default route to the Bering IP on the
respective side of the fw.
Shorewall log shows no drops, but
Shorewall policy is
loc net ACCEPT
net loc ACCEPT
fw  net ACCEPT
fw  loc ACCPT
net all DROP ULOG
all all REJECT ULOG.




---
SF email is sponsored by - The IT Product Guide
Read honest  candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_ide95alloc_id396op=ick

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


---
SF email is sponsored by - The IT Product Guide
Read honest  candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_ide95alloc_id396op=click

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] hda: write_intr error1:

2005-04-13 Thread Javi
Hi,

  my question ist can I disable this message?

if you want to disable messages in the console you maybe want to
change /proc/sys/kernel/printk, it controls the debug level of the
kernel


---
SF email is sponsored by - The IT Product Guide
Read honest  candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_ide95alloc_id396op=click

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: RESOLVED [leaf-user] Shorewall policies symmetric, but web page results are not.

2005-04-13 Thread Sean Covel
Rick,

Do tell.  Documentation might keep some other guy from pulling all his
hair out.

Tibbs, Richard wrote:
 Sorry list,
 It turned out to be a bind configuration error.
 Rick.
 
 -Original Message-
 From: [EMAIL PROTECTED]
 [mailto:[EMAIL PROTECTED] On Behalf Of Tibbs,
 Richard
 Sent: Monday, April 11, 2005 2:16 PM
 To: leaf-user
 Subject: [leaf-user] Shorewall policies symmetric, but web page results
 are not.
 
 
 Dear List:
 I have the following configuration
 SLAX internal -- Bering 1.2 --- SLAX external   
 192.168.10.1192.168.10.254  192.168.1.254 192.168.1.1  dns 
 192.168.10.2
 192.168.1.2 www
 
 each SLAX machine is configured to bring up bind for dns at IP addresses
 
 192.168.10.1 (internal) and 192.168.1.1 (external) resp.
 In addition there is a web server running on 192.168.10.2 (internal) and
 192.168.1.2 (external).
 
 The symptom is that external can only load it's own web page
 (extexample.com) whereas internal can load both intexample.com and
 extexample.com.
 Until I add a default route on eth0 (external interface) 
 gateway 192.168.1.1
 external cannot load internal's web page.
 Why would this be necessary?
 
 Each SLAX machine is given a default route to the Bering IP on the
 respective side of the fw.
 Shorewall log shows no drops, but
 Shorewall policy is
 loc net ACCEPT
 net loc ACCEPT
 fw  net ACCEPT
 fw  loc ACCPT
 net all DROP ULOG
 all all REJECT ULOG.
 
 
 
 
 ---
 SF email is sponsored by - The IT Product Guide
 Read honest  candid reviews on hundreds of IT Products from real users.
 Discover which products truly live up to the hype. Start reading now.
 http://ads.osdn.com/?ad_ide95alloc_id396op=ick
 
 leaf-user mailing list: leaf-user@lists.sourceforge.net
 https://lists.sourceforge.net/lists/listinfo/leaf-user
 SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
 
 
 ---
 SF email is sponsored by - The IT Product Guide
 Read honest  candid reviews on hundreds of IT Products from real users.
 Discover which products truly live up to the hype. Start reading now.
 http://ads.osdn.com/?ad_ide95alloc_id396op=click
 
 leaf-user mailing list: leaf-user@lists.sourceforge.net
 https://lists.sourceforge.net/lists/listinfo/leaf-user
 SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
 


---
SF email is sponsored by - The IT Product Guide
Read honest  candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595alloc_id=14396op=click

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] RE: hda: write_intr error1

2005-04-13 Thread Vic Berdin
Hi,

 Message: 1
 Date: Tue, 12 Apr 2005 10:18:15 +0200
 To: leaf-user leaf-user@lists.sourceforge.net
 From: [EMAIL PROTECTED] [EMAIL PROTECTED]
 Subject: [leaf-user] hda: write_intr error1:
 
 hello!
 
 I'm running Bering 1.2 on a CF
 nowdays I have a Problem with my CF
 if I write some things to my CF it come alot of messages hda:
 write_intr error1:. 
 on my console so that I can't do anything. (cause bad sector)
 
 my question ist can I disable this message?
 
 Regard
 Phuoc

Try using hdparm (http://www.die.net/doc/linux/man/man8/hdparm.8.html)
during bootup.
On my case, I do an `hdparm -m1 /dev/name` on my CF during bootup to fix
those NO DRQ... messages.
Busybox has an hdparm applet.

HTH - Vic

-- 
No virus found in this outgoing message.
Checked by AVG Anti-Virus.
Version: 7.0.308 / Virus Database: 266.9.5 - Release Date: 4/7/2005
 



---
SF email is sponsored by - The IT Product Guide
Read honest  candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595alloc_id=14396op=click

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html