[leaf-user] Fw: host.allow questions

2003-10-16 Thread ALParada
Hello,

I am having a problem connecting to weblet. If I leave the hosts.allow
file at ALL: 192.168.63.0/255.255.255.0 it will work. If I change it to
just a host and not a subnet it fails. The smallest subnet I have been
able to use successfully is a /28. Everything smaller fails. I have
changed the weblet config file with the right IP address, I have added
the rules for shorewall to allow port 80 from loc, and inetd is
uncommented for www. Like I said with a /24 subnet it works. SSH is
working correctly from a single host and the config for www is the same.
Telnet is also not working, period. Again the config is the same for
SSH. Is there something I'm missing?

I also read something about bandwidth meter of sorts but can't find it.
Is this something that is not included in the default package?

I am using Bering v 1.2
eth1 is loc 192.168.63.1
loc host is 192.168.63.11

TIA,

Armando



---
This SF.net email is sponsored by: SF.net Giveback Program.
SourceForge.net hosts over 70,000 Open Source Projects.
See the people who have HELPED US provide better services:
Click here: http://sourceforge.net/supporters.php

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Fw: host.allow questions

2003-10-16 Thread ALParada
See below. I have made some corections to my earlier post. I guess the
game took most of my attention last night.

Thanks,

Armando

- Original Message - 
From: "Ray Olszewski" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Thursday, October 16, 2003 3:50 PM
Subject: Re: [leaf-user] Fw: host.allow questions


> At 02:21 PM 10/16/2003 -0400, ALParada wrote:
> >Hello,
> >
> >I am having a problem connecting to weblet. If I leave the
hosts.allow
> >file at ALL: 192.168.63.0/255.255.255.0 it will work. If I change it
to
> >just a host and not a subnet it fails.
>
> How do you make this change? As I recall, the only form that
hosts.allow
> and hosts.deny will work with reliably is (for example)
>
>  ALL:192.168.63.11/255.255.255.255
>
> (not either 192.168.63.11 by itself or 192.168.63.11/32).

Per the Bering installation guide for the host.allow::

If you want that only 192.168.1.1 from your internal network can access
to the firewall through ssh and weblet, you will have:
ssh: 192.168.1.1/255.255.255.255
www: 192.168.1.1/255.255.255.255
stat: 192.168.1.1/255.255.255.255



of course my IP address is 192.168.63.11/255.255.255.255 which will not
work for weblet but will work for ssh, or at least I think it works for
ssh. I get a connecting to host and then starting session. It fails
after that though. Next thread I'll tackle that one.

>
> >The smallest subnet I have been
> >able to use successfully is a /28. Everything smaller fails.
>
> Once again, how are you trying to do this? A /29 netmask is only 8 IP
> addresses, so .1 and .11 (the addresses you are using for router and
> client) can't be on the same 29 network. So
>
>  ALL:192.168.63.11/255.255.255.248
>
> should NOT work.

You are only limiting the host that can connect, not routing. I don't
think it should make a difference.

>
> They can be on the same /28 (or smaller netmask value) network, and
they
> are both on 192.168.63.0/28 (which may explain why /28 and smaller
values
> work). But have you tried (with or without success)
>
>  ALL:192.168.63.8/255.255.255.248

What I meant to say was that it works with anything larger that a /28.
That would obviously give me 14 useable host but I was hoping to limit
it to a /32. I also found out that  it works as long as I enter the
network address but will not work with a host address. In other words:

ALL: 192.168.63.8/255.255.255.248 will work for weblet and ssh
ALL: 192.168.63.11/255.255.255.255 will not work for weblet but will
work for ssh

ssh:   192.168.63.11/255.255.255.255 will work
www: 192.168.63.0/255.255.255.0 will not work

>
> >I have
> >changed the weblet config file with the right IP address, I have
added
> >the rules for shorewall to allow port 80 from loc, and inetd is
> >uncommented for www. Like I said with a /24 subnet it works. SSH is
> >working correctly from a single host and the config for www is the
same.
>
> Someone else should comment on this one. It is *possible* that sshd on
> Bering does not use hosts.allow or hosts.deny for access control ... I
> don't actually recall. (BTW, when you say the config is "the same", do
you
> mean that you are running sshd through inetd, not standalone? If not,
in
> what sense are the it and www ... and telnet ... "the same"?)

I meant the syntax is the same for both and I have added them all to the
files host.allow and the shorewall rules ...etc. I did notice that the
shorewall rules don't influence the connection. I deleted both entries
for port 80 and 22 and I still connected.
>
> >Telnet is also not working, period. Again the config is the same for
> >SSH. Is there something I'm missing?
>
> The telnetd daemon, perhaps? I'd be surprised if stock Bering shipped
with
> it, and I don't see a telnet.lrp or telnetd.lrp package anywhere in
> Jacques' archives.

Not really important I was just wanted to test something else.
>
> >I also read something about bandwidth meter of sorts but can't find
it.
> >Is this something that is not included in the default package?
> >
> >I am using Bering v 1.2
> >eth1 is loc 192.168.63.1
> >loc host is 192.168.63.11
>
>
>
>
>
> ---
> This SF.net email is sponsored by: SF.net Giveback Program.
> SourceForge.net hosts over 70,000 Open Source Projects.
> See the people who have HELPED US provide better services:
> Click here: http://sourceforge.net/supporters.php
> --
--
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-

[leaf-user] Full Duplex

2003-10-29 Thread ALParada
Hello,

Does anyone know how to hard-code full duplex on Bering? The NIC's are
the netgear FA312 and they are using the natsemi.o

TIA



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?   SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] dnscache

2003-11-06 Thread ALParada
Hello,

I am running Bering with dnscache. Either I don't understand how a
caching server works, or I missed something in the configuration.
Dnscache is running because I verified it with "ps aux". I however can't
resolve any names. I changed the internal ip address under option1. Set
option 4 to yes and option 5 with my isp DNS servers. I added an "accept
loc fw udp 53" under shorewall rules. I also allowed access to the net
from the fw. What am I forgetting? Does dnscache need something like
tinydns to work?  There is also no /var/log/dnscache which I keep seeing
references to. Any help would be appreciated.

TIA



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?   SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] dnscache

2003-11-07 Thread ALParada
When I run nslookup I get :

*** Can't find server name for address 192.168.63.1: No response from
server

Where 192.168.63.1 is the loc ip address of LRP. I got it to work using
with my ISP DNS servers as forwarders but not with my internal servers.
When I use the ISP servers I get a name like
null-host.null.bellsouth.net, but if I use my servers I get the above
error. I created a policy to allow the fw into the local network, but
still no success. Do the internal servers need any kind of special
config to allow the caching server to work?

TIA

- Original Message - 
From: "Robert K Coffman Jr - Info From Data Corporation"
<[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>;
<[EMAIL PROTECTED]>
Sent: Friday, November 07, 2003 8:28 AM
Subject: RE: [leaf-user] dnscache


> Nothing in your config sounds incorrect, but here is what I did:
>
> 1. change LRP box internal IP
> 2. Changed querying hosts IP (actually this may be the default, but
I'm
> using a 192.168 address) to 192.168
> 3. I have logging disabled (its working so I don't need it.)
> 4. I have forwardonly enabled
> 5. Set my ISPs DNS servers (definitely double check this)
> 6. I added the following to shorewall rules:
>
>
> ACCEPT  fw  net tcp 53
> ACCEPT  fw  net udp 53
>
> ACCEPT  loc fw  udp 53
>
> Try running NSLOOKUP to see if your machine is answering:
>
> NSLOOKUP
> > server yourserversIP
> > www.amazon.com
> > Server:  myreallyrockinrouter.mydomain.com
> > Address:  192.168.2.1
>
> > Non-authoritative answer:
> > Name:www.amazon.com
> > Address:  207.171.181.16
>
> Hope this helps.
>
> - Bob Coffman
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] Behalf Of ALParada
> Sent: Thursday, November 06, 2003 8:36 PM
> To: [EMAIL PROTECTED]
> Subject: [leaf-user] dnscache
>
>
> Hello,
>
> I am running Bering with dnscache. Either I don't understand how a
> caching server works, or I missed something in the configuration.
> Dnscache is running because I verified it with "ps aux". I however
can't
> resolve any names. I changed the internal ip address under option1.
Set
> option 4 to yes and option 5 with my isp DNS servers. I added an
"accept
> loc fw udp 53" under shorewall rules. I also allowed access to the net
> from the fw. What am I forgetting? Does dnscache need something like
> tinydns to work?  There is also no /var/log/dnscache which I keep
seeing
> references to. Any help would be appreciated.
>
> TIA
>
>
>
> ---
> This SF.net email is sponsored by: SF.net Giveback Program.
> Does SourceForge.net help you be more productive?  Does it
> help you create better code?   SHARE THE LOVE, and help us help
> YOU!  Click Here: http://sourceforge.net/donate/
> --
--
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
>
>
>



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?   SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] dnscache

2003-11-07 Thread ALParada
See below.

- Original Message - 
From: "Ray Olszewski" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>; "ALParada"
<[EMAIL PROTECTED]>
Sent: Friday, November 07, 2003 1:38 PM
Subject: Re: [leaf-user] dnscache


> Sorry to be coming into this one late.
>
> At 12:19 PM 11/7/2003 -0500, ALParada wrote:
> >When I run nslookup I get :
> >
> >*** Can't find server name for address 192.168.63.1: No response from
> >server
> >
> >Where 192.168.63.1 is the loc ip address of LRP. I got it to work
using
> >with my ISP DNS servers as forwarders but not with my internal
servers.
> >When I use the ISP servers I get a name like
> >null-host.null.bellsouth.net, but if I use my servers I get the above
> >error.
>
> What response *should* these internal DNS servers be giving? That is,
if
> you set the host you are testing from to use them directly (not
through
> dnscache), what answer does nslookup return? (I ask this because I've
found
> that a lot of LAN-authoritative nameservers are not configured
correctly to
> respond to reverse-lookup-requests.)


If I do an nslookup with 192.168.63.11 configured as primary I get:

C:\Documents and Settings\aparada>nslookup
Default Server:  mlsad2.mydomain.com
Address:  192.168.63.11

192.168.63.11 is my primary dns server. Yes it's a W2K Server, sorry.

If I change my primary dns to 192.168.63.1 which is the loc of LRP I
get:

C:\Documents and Settings\aparada>nslookup
*** Can't find server name for address 192.168.63.1: Non-existent domain
Default Server:  mlsad3.med-lab.com
Address:  192.168.63.13

It obviously goes to the secondary 192.168.63.13


>
> And are you really saying that your ISP's nameservers resolve
> "192.168.63.1" to "a name like null-host.null.bellsouth.net"? How odd.
> Could you post an actual example?

What I am saying is that this is what nsloookup shows with LRP as the
primary and my isp as forwarders on the LRP:

C:\Documents and Settings\aparada>nslookup
Default Server:  host1-null.null.bellsouth.net
Address:  192.168.63.1

>
> >I created a policy to allow the fw into the local network, but
> >still no success.
>
> I assume you mean a rule, not a policy. You might describe what you
did.
> This is too vague to troubleshoot.

No I meant a policy allowing:

loc   fw   ACCEPT
fwloc   ACCEPT

I wanted it simple for this test.

>
> >Do the internal servers need any kind of special
> >config to allow the caching server to work?
>
> Probably not. Certainly not if they are reasonably standard Linux
servers
> running a recent BIND. But since you tell us absolutely nothing about
these
> internal servers, it is hard to be certain.

Answered above.

>
> Your original report (below) says you "can't resolve any names". But
the
> example you chose for your test is unusual in two ways -- it is a
reverse
> lookup (resolving an address to an FQN), not a name lookup; and it
involves
> a LAN-side (private) address.

I never got that far because the server never responded. I couldn't
resolve any names, because my server didn't respond. I should have been
more clear with the problem. The example you are refering to is not a
reverse lookup but rather the response from  nslookup. Inicially I think
there may have been a permission issue since it couldn't find the lrp
box. Now it says non-existent domain.

>
> What happens if you use nslookup or host to try to resolve some
well-known
> FQN, say yahoo.com or google.com (the test Robert actually suggested
in his
> reply, below)? Is the result when you point dnscache to your ISP's
> nameservers different from when you point it to your internal
nameservers?

Yes when pointing to the ISP it can resolve google and yahoo and so on.
When pointing to my servers I get:

C:\Documents and Settings\aparada>nslookup
*** Can't find server name for address 192.168.63.1: Non-existent domain
Default Server:  mlsad3.med-lab.com
Address:  192.168.63.13

> Can the internal DNS servers resolve these outside names if you point
to
> them directly, not through dnscache?

Yes they can. They also have forwarders.
>
> Finally ... if you have full-strength LAN-side DNS servers, why are
you
> using dnscache at all? Its main purpose is to reduce the frequency of
> queries to offsite nameservers. You don't gain much, if anything, by
> caching replies from LANside nameservers (they will themselves cache
> offsite replies appropriately, if they follow the standards for DNS
servers).

I have a router leading to the other side of the world. I was planning
on using dnscache to help resolve "those" names. There are several DNS
servers there and that is the info I would like to cache. They are also
the for

Re: [leaf-user] dnscache

2003-11-07 Thread ALParada
There is no record for the LRP in the primary DNS. Now that I added one
and the associated PTR it works. However, why did it work with the ISP
DNS servers? Why would it need a record for the LRP just to be used as a
forwarder? My primary DNS uses a set of forwarders that don't know my
servers exist. Does this have something to do with the fact that it is a
caching server vs. authoritative. Is adding a PTR the only solution?

Thanks,


- Original Message - 
From: "Ray Olszewski" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>;
<[EMAIL PROTECTED]>
Sent: Friday, November 07, 2003 4:13 PM
Subject: Re: [leaf-user] dnscache


> Offnhand, I do not see a cause for this problem, now that I understand
it a
> bit better. I'll give it some additional thought, though. In the
meantime,
> could I ask you to clarify one detail?
>
> If you tell the test host to use 192.168.63.11 as its DNS server, can
> nslookup then do a reverse lookup of 192.168.63.1 (the router's
internal IP
> address)? If not, then that is probably your problem, and you fix it
by
> adding appropriate information to your LAN-authoritative DNS records
on
> 192.168.63.11 (an entry similar to whatever one lets it respond to a
> reverse lookup of 192.168.63.11 with  the FQN mlsad2.mydomain.com). If
yes,
> then I don't (yet) have a suggestion as to what might be causing the
problem.
>
> At 03:43 PM 11/7/2003 -0500, ALParada wrote:
> >See below.
> [...]
> >If I do an nslookup with 192.168.63.11 configured as primary I get:
> >
> >C:\Documents and Settings\aparada>nslookup
> >Default Server:  mlsad2.mydomain.com
> >Address:  192.168.63.11
> >
> >192.168.63.11 is my primary dns server. Yes it's a W2K Server, sorry.
> >
> >If I change my primary dns to 192.168.63.1 which is the loc of LRP I
> >get:
> >
> >C:\Documents and Settings\aparada>nslookup
> >*** Can't find server name for address 192.168.63.1: Non-existent
domain
> >Default Server:  mlsad3.med-lab.com
> >Address:  192.168.63.13
> >
> >It obviously goes to the secondary 192.168.63.13
> [...]
>
>
>



---
This SF.Net email sponsored by: ApacheCon 2003,
16-19 November in Las Vegas. Learn firsthand the latest
developments in Apache, PHP, Perl, XML, Java, MySQL,
WebDAV, and more! http://www.apachecon.com/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] dnscache

2003-11-09 Thread ALParada
As it turns out ping and using url's do work. Nslookup seems to get
hung-up if the LRP is not configured in DNS.  The point is, IE is able
to resolve URL's and that is really what I needed.

> Beats me. Ask your ISP. Me, I can only *guess* that the ISP did
something
> to its DNS servers that causes them to return a dummy response (a
"null"
> hostname in their domain space) whever queried for a 192.168.c.d
reverse
> lookup. I've never actually seen anything like that before, which is
why I
> was so puzzled about your earlier report.

Somehow my ISP is registering (dynamically?) the LRP box  but the rest
of the DNS servers are not that forgiving. I am masqing the internal IP
so who knows.

Many thanks.

- Original Message - 
From: "Ray Olszewski" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>;
<[EMAIL PROTECTED]>
Sent: Friday, November 07, 2003 8:31 PM
Subject: Re: [leaf-user] dnscache


> At 06:52 PM 11/7/2003 -0500, ALParada wrote:
> >There is no record for the LRP in the primary DNS. Now that I added
one
> >and the associated PTR it works. However, why did it work with the
ISP
> >DNS servers?
>
> I've sort of lost track of the earlier stages in your investigation
... did
> you actually try (and fail) to get dnscache to work with, for example,
a
> browser attempting to resolve the FQN part of a URL? (Your original
message
> says only: "I however can't resolve any names", not what you used in
your
> attempts.)
>
> My own DNS here is set to respond properly to reverse lookups, and I'm
> disinclined to break my own setup just to see how much of it will
still
> work. So offhand I'm not sure how general the requirement is that the
> nameserver be able to resolve itself by reverse lookup.
>
> And the forwarders do not have to know that you exist (except in the
sense
> that they need to know a route back to you). You have to know that
they
> exist, and if they are set up properly, you do. That has nothing to do
with
> this problem, which requires only that a nameserver be able to answer
both
> a lookup and a reverse lookup for itself.
>
> >Thanks,
> [old stuff deleted]
>
>
>
>
>
> ---
> This SF.Net email sponsored by: ApacheCon 2003,
> 16-19 November in Las Vegas. Learn firsthand the latest
> developments in Apache, PHP, Perl, XML, Java, MySQL,
> WebDAV, and more! http://www.apachecon.com/
> --
--
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email sponsored by: ApacheCon 2003,
16-19 November in Las Vegas. Learn firsthand the latest
developments in Apache, PHP, Perl, XML, Java, MySQL,
WebDAV, and more! http://www.apachecon.com/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] tinyproxy

2003-11-11 Thread ALParada
I have been trying to get tinyproxy to work for a few days now. Can
someone shed some light on what I am doing wrong. I keep getting page
not found. I have setup my browser to use the proxy at 192.168.66.1:
which is the net interface for the LRP box. I am using the latest Bering
with TinyProxy 1.51.

I have setup the following policy:

fw  all ACCEPT

and the following rule:

ACCEPTnet:192.168.68.1/32 \
 fw tcp   

TIA

The tinyproxy.conf :
##

## tinyproxy.conf -- tinyproxy daemon configuration file

##

#

# Name of the user the tinyproxy daemon should switch to after the port

# has been bound.

#

User nobody

Group nogroup

#

# Port to listen on.

#

Port 

#

# If you have multiple interfaces this allows you to bind to only one.
If

# this is commented out, tinyproxy will bind to all interfaces present.

#

#Listen 192.168.0.1

#

# The Bind directive allows you to bind the outgoing connections to a

# particular IP address.

#

#Bind 192.168.0.1

#

# Timeout: The number of seconds of inactivity a connection is allowed
to

# have before it closed by tinyproxy.

#

Timeout 600

#

# Where to log the information. Either LogFile or Syslog should be set,

# but not both.

#

Logfile "/var/log/tinyproxy.log"

# Syslog On

#

# Set the logging level. Allowed settings are:

# Critical (least verbose)

# Error

# Warning

# Notice

# Connect (to log connections without Info's noise)

# Info (most verbose)

# The LogLevel logs from the set level and above. For example, if the
LogLevel

# was set to Warning, than all log messages from Warning to Critical
would be

# output, but Notice and below would be suppressed.

#

LogLevel Info

#

# PidFile: Write the PID of the main tinyproxy thread to this file so it

# can be used for signalling purposes.

#

PidFile "/var/run/tinyproxy.pid"

#

# Include the X-Tinyproxy header, which has the client's IP address when

# connecting to the sites listed.

#

#XTinyproxy mydomain.com

#

# Turns tinyproxy into a TCP tunnel which connects the local computer on

# 'Port' to the remote computer's port. No processing is done when using

# tinyproxy as a tunnel. If you want to connect to an upstream proxy use

# the "Upstream" directive below.

#

#Tunnel some.remote.computer:port

#

# Turns on upstream proxy support.

#

#Upstream some.remote.proxy:port

#

# This is the absolute highest number of threads which will be created.
In

# other words, only MaxClients number of clients can be connected at the

# same time.

#

MaxClients 100

#

# These settings set the upper and lower limit for the number of

# spare servers which should be available. If the number of spare
servers

# falls below MinSpareServers then new ones will be created. If the
number

# of servers exceeds MaxSpareServers then the extras will be killed off.

#

MinSpareServers 5

MaxSpareServers 20

#

# Number of servers to start initially.

#

StartServers 10

#

# MaxRequestsPerChild is the number of connections a thread will handle

# before it is killed. In practise this should be set to 0, which
disables

# thread reaping. If you do notice problems with memory leakage, then
set

# this to something like 1

#

MaxRequestsPerChild 0

#

# The following is the authorization controls. If there are any access

# control keywords then the default action is to DENY. Otherwise, the

# default action is ALLOW.

#

# Also the order of the controls are important. The incoming connections

# are tested against the controls based on order.

#

Allow 127.0.0.1

Allow 192.168.68.0/25

#

# The location of the filter file.

#

#Filter "/etc/tinyproxy/filter"

#

# Filter based on URLs rather than domains.

#

#FilterURLs On

#

# Use POSIX Extended regular expressions rather than basic.

#

#FilterExtended On

#

# Change the default policy of the filtering system. If this directive
is

# commented out, or is set to "No" then the default policy is to allow
everything

# which is not specifically denied by the filter file.

#

# However, by setting this directive to "Yes" the default policy becomes
to

# deny everything which is _not_ specifically allowed by the filter
file.

#

#FilterDefaultDeny Yes

#

# If an Anonymous keyword is present, then anonymous proxying is
enabled.

# The headers listed are allowed through, while all others are denied.
If

# no Anonymous keyword is present, then all header are allowed through.

# You must include quotes around the headers.

#

#Anonymous "Host"

#Anonymous "Authorization"

#

# This is a list of ports allowed by tinyproxy when the CONNECT method

# is used. To disable the CONNECT method altogether, set the value to 0.

# If no ConnectPort line is found, all ports are allowed (which is not

# very secure.)

#

# The following two ports are used by SSL.

#

ConnectPort 443

ConnectPort 563




---
This SF.Net email sponsored by: ApacheCon 

[leaf-user] cdrom boot problem

2003-11-17 Thread ALParada
Hello, I'm trying to get Bering 1.2 to boot from the CD. I would also
like to keep a few packages on the floppy since I'm not finished with
them yet and i'm still making changes. I have gotten as far as getting
the CD to boot and I have a working config just like the floopies.
However when it gets to the point of loading the packages it looks
briefly at the FD and then just goes from the CD. I tried adding a
package:F to the isolinux file but to no avail. I tried adding an lrpcfg
file to the file with the new packages and the same thing. It looks like
it goes to read the FD finds nothing and goes on it's merry way. If I
use the individual floppies it works and like I said the CD also works.
Am I missing something? Does it not work the way I think it does? Below
I have included the contents of the isolinux.cfg. And yes it is on one
line.


display syslinux.dpy
timeout 0
default linux initrd=initrd.lrp init=/linuxrc rw root=/dev/ram0
boot=/dev/cdrom:iso9660 PKGPATH=/dev/cdrom:iso9660,/dev/fd0:msdos
LRP=root,etc:R,local,modules,iptables,libz,sshd,shorwall:R,snort:R,dnsca
che,tinyprox:R,sftp,ulogd,weblet:R,squid_2:R



---
This SF. Net email is sponsored by: GoToMyPC
GoToMyPC is the fast, easy and secure way to access your computer from
any Web browser or wireless device. Click here to Try it Free!
https://www.gotomypc.com/tr/OSDN/AW/Q4_2003/t/g22lp?Target=mm/g22lp.tmpl

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] cdrom boot problem

2003-11-18 Thread ALParada
Looks like I finally got it booting from the floppies. I do however,
have two errors: I am getting an error just before the login prompt: cp:
unable to close" '/etc/dnscache/root/servers/@' : No space left on
device". When I try to restart dnscache I get the same error. When I
ps -aux, dnscache doesn't show up. The second is with squid: I can find
the squid files if I look for them but it doesn't show up as a package.
It does load during boot-up just doesn't show under packages. Squid also
shows up as a backup option. Is this normal?

TIA


----- Original Message - 
From: "ALParada" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Monday, November 17, 2003 7:23 PM
Subject: [leaf-user] cdrom boot problem


> Hello, I'm trying to get Bering 1.2 to boot from the CD. I would also
> like to keep a few packages on the floppy since I'm not finished with
> them yet and i'm still making changes. I have gotten as far as getting
> the CD to boot and I have a working config just like the floopies.
> However when it gets to the point of loading the packages it looks
> briefly at the FD and then just goes from the CD. I tried adding a
> package:F to the isolinux file but to no avail. I tried adding an
lrpcfg
> file to the file with the new packages and the same thing. It looks
like
> it goes to read the FD finds nothing and goes on it's merry way. If I
> use the individual floppies it works and like I said the CD also
works.
> Am I missing something? Does it not work the way I think it does?
Below
> I have included the contents of the isolinux.cfg. And yes it is on one
> line.
>
>
> display syslinux.dpy
> timeout 0
> default linux initrd=initrd.lrp init=/linuxrc rw root=/dev/ram0
> boot=/dev/cdrom:iso9660 PKGPATH=/dev/cdrom:iso9660,/dev/fd0:msdos
>
LRP=root,etc:R,local,modules,iptables,libz,sshd,shorwall:R,snort:R,dnsca
> che,tinyprox:R,sftp,ulogd,weblet:R,squid_2:R
>
>
>
> ---
> This SF. Net email is sponsored by: GoToMyPC
> GoToMyPC is the fast, easy and secure way to access your computer from
> any Web browser or wireless device. Click here to Try it Free!
>
https://www.gotomypc.com/tr/OSDN/AW/Q4_2003/t/g22lp?Target=mm/g22lp.tmpl
> --
--
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?  SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] lrpstat and shorewall

2003-11-20 Thread ALParada
I'm trying to get weblet w/lrpstat to work on a Bering 1.2. I have
weblet working and I can access the netmon.html page correctly. However,
it has no data. If I shutdown Shorewall data starts coming in. I thought
they both used the same tcp 80 port but I guess not. I can only guess
that a different port is used. Does anyone know what's going on?

TIA



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?  SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] lrpstat and shorewall

2003-11-21 Thread ALParada
Actually I misinterpreted the shorewall log file yesterday and created a
rule the opposite of what I needed. Therefore the confusion. A little
sleep, noticed the problem and corrected it.  Thanks.

- Original Message - 
From: "Martin Hejl" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Friday, November 21, 2003 6:31 AM
Subject: Re: [leaf-user] lrpstat and shorewall


> ALParada wrote:
> > I'm trying to get weblet w/lrpstat to work on a Bering 1.2. I have
> > weblet working and I can access the netmon.html page correctly.
However,
> > it has no data. If I shutdown Shorewall data starts coming in. I
thought
> > they both used the same tcp 80 port but I guess not. I can only
guess
> > that a different port is used. Does anyone know what's going on?
> LrpStat communicates with the server via it's own port - which port
that
> is depends on where you got the weblet package from.
> If you look at the source of  netmon.html, you should see a line that
> looks like this:
> 
> In this case, the port lrpStat uses would be 1023 - other ports I've
> seen used are 1024 and 60180.
>
> With this information, you need to open the respective port un
> /etc/shorewall/rules
>
> This is probably not enough (since AFAIK Bering 1.2 does not have the
> proper settings in /etc/services and /etc/inetd.conf - so those two
> files need to be updated as well. See
>
> http://leaf-project.org/devel/hejl/install.html
>
> and
>
> http://leaf-project.org/devel/hejl/troubleshooting.html
>
> for more info
>
> Martin
>
>
>
>
> ---
> This SF.net email is sponsored by: SF.net Giveback Program.
> Does SourceForge.net help you be more productive?  Does it
> help you create better code?  SHARE THE LOVE, and help us help
> YOU!  Click Here: http://sourceforge.net/donate/
> --
--
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?  SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Upgrade to uClibc

2004-04-23 Thread ALParada
Hi Everyone,

A newbie question. I have been using Bering for about 6 months now and want
to try uClibc. I was hoping to bring in all my lrp's and modules and
basically reboot. Is this possible or do I need to start from scratch? I did
read something about packages needing to be recompiled but not sure if this
applies to Bering packages. My main reason in doing this is to use the
openvpn package. I understand the Bering package may have some issues. Any
suggestions or shortcuts will be appreciated.

TIA



---
This SF.net email is sponsored by: The Robotic Monkeys at ThinkGeek
For a limited time only, get FREE Ground shipping on all orders of $35
or more. Hurry up and shop folks, this offer expires April 30th!
http://www.thinkgeek.com/freeshipping/?cpg=12297

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] openvpn with SSL/TLS

2004-05-10 Thread ALParada
Hello List,

Trying to get openvpn working with certs. I was able to get the static keys
working but not with SSL/TLS. I tried the instructions in the HOWTO on the
openvpn site:
http://openvpn.sourceforge.net/howto.html
as well as these:
http://mia.ece.uic.edu/~papers/volans/openvpn.html
http://mia.ece.uic.edu/~papers/volans/settingupCA.html
which are links at the openvpn site.

I also tried  the certificates and the keys howto at the openssl site.
http://www.openssl.org/docs/HOWTO/certificates.txt
http://www.openssl.org/docs/HOWTO/keys.txt

Also reviewed this one:
http://www.gtlib.cc.gatech.edu/pub/linux/docs/HOWTO/other-formats/html_single/SSL-Certificates-HOWTO.html

Why the difference in file names such as pem, crt, cert and key. I
understand there are differences between the cert and the key but is there a
difference between crt and cert or between key and pem?

Following the HOWTO's on the openvpn site when I get to:

openssl ca -out home.crt -in home.csr

This is the error I am get:

Certificate is to be certified until May 15 12:20:42 2007 GMT (1100 days)
Sign the certificate? [y/n]:y
failed to update database
TXT_DB error number 2
firewall#

Any ideas?

TIA









---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] Can't mount usb flash drive

2004-05-10 Thread ALParada
Well looks like part of the problem is WINXP. It won't let an application
directly access the hard disk (usb flash drive). How can I run syslinux to
write to the usb device if WINXP won't allow it? Is there a work around?

TIA
- Original Message - 
From: "ALParada" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Thursday, May 06, 2004 1:30 PM
Subject: Re: [leaf-user] Can't mount usb flash drive


> Already did that, found one but not working for me. I guess I'll just keep
> trying. Thanks for you help.
>
> - Original Message - 
> From: "Erich Titl" <[EMAIL PROTECTED]>
> To: "ALParada" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
> Sent: Thursday, May 06, 2004 12:46 PM
> Subject: Re: [leaf-user] Can't mount usb flash drive
>
>
> At 17:12 06.05.2004, you wrote:
> >Well I managed to mount the device but I am still having some
configuration
> >issues. Is there a Howto for this as well as maybe booting of this device
> >(given the bios supports booting from usb)
>
> There was a post a while ago. Check the archives
>
> cheers
> Erich
>
> THINK
> Püntenstrasse 39
> 8143 Stallikon
> mailto:[EMAIL PROTECTED]
> PGP Fingerprint: BC9A 25BC 3954 3BC8 C024 8D8A B7D4 FF9D 05B8 0A16
>
>
>
>
> ---
> This SF.Net email is sponsored by Sleepycat Software
> Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> deliver higher performing products faster, at low TCO.
> http://www.sleepycat.com/telcomwpreg.php?From=dnemail3
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
>
>
>
> ---
> This SF.Net email is sponsored by Sleepycat Software
> Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> deliver higher performing products faster, at low TCO.
> http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] Can't mount usb flash drive

2004-05-10 Thread ALParada
Well, got sylinux to load. It does however get an error during booting:

cat:  /var/lib/lrpkg/root.pn.links: No such file or directory:
can't open /var/lib/lrpkg/root.dev.own
Kernel panic: Attempted to kill init!

All the files that are on the working floppies are on the usb device. You
can mount the usb device if you boot from floppies, you can also backup to
sda1. Is there any other changes that need to be made in order to boot from
a usb drive?

TIA

- Original Message - 
From: "ALParada" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Monday, May 10, 2004 2:16 PM
Subject: Re: [leaf-user] Can't mount usb flash drive


> Well looks like part of the problem is WINXP. It won't let an application
> directly access the hard disk (usb flash drive). How can I run syslinux to
> write to the usb device if WINXP won't allow it? Is there a work around?
>
> TIA
> - Original Message - 
> From: "ALParada" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Sent: Thursday, May 06, 2004 1:30 PM
> Subject: Re: [leaf-user] Can't mount usb flash drive
>
>
> > Already did that, found one but not working for me. I guess I'll just
keep
> > trying. Thanks for you help.
> >
> > - Original Message - 
> > From: "Erich Titl" <[EMAIL PROTECTED]>
> > To: "ALParada" <[EMAIL PROTECTED]>;
<[EMAIL PROTECTED]>
> > Sent: Thursday, May 06, 2004 12:46 PM
> > Subject: Re: [leaf-user] Can't mount usb flash drive
> >
> >
> > At 17:12 06.05.2004, you wrote:
> > >Well I managed to mount the device but I am still having some
> configuration
> > >issues. Is there a Howto for this as well as maybe booting of this
device
> > >(given the bios supports booting from usb)
> >
> > There was a post a while ago. Check the archives
> >
> > cheers
> > Erich
> >
> > THINK
> > Püntenstrasse 39
> > 8143 Stallikon
> > mailto:[EMAIL PROTECTED]
> > PGP Fingerprint: BC9A 25BC 3954 3BC8 C024 8D8A B7D4 FF9D 05B8 0A16
> >
> >
> >
> >
> > ---
> > This SF.Net email is sponsored by Sleepycat Software
> > Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> > deliver higher performing products faster, at low TCO.
> > http://www.sleepycat.com/telcomwpreg.php?From=dnemail3
> > 
> > leaf-user mailing list: [EMAIL PROTECTED]
> > https://lists.sourceforge.net/lists/listinfo/leaf-user
> > SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
> >
> >
> >
> > ---
> > This SF.Net email is sponsored by Sleepycat Software
> > Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> > deliver higher performing products faster, at low TCO.
> > http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3
> > 
> > leaf-user mailing list: [EMAIL PROTECTED]
> > https://lists.sourceforge.net/lists/listinfo/leaf-user
> > SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
>
>
>
> ---
> This SF.Net email is sponsored by Sleepycat Software
> Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> deliver higher performing products faster, at low TCO.
> http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
>



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] OpenVPN and routing

2004-05-13 Thread ALParada

Setting up OpenVPN on uClibc.  I will also be replacing the current Bering
install with uClibc. Have everything setup and working with static keys as
well as with certs. Since I was replacing and not installing from scratch  I
hadn't thought about any routing issues, until now. My scenario is this:

Openvpn connections will be coming in on eth1. However, eth2 is the default
gateway that leads to our current vpn solution (IPSEC) and out to the
Internet. I was trying to bypass our current vpn solution by coming in
through another interface. Unfortuately, now I don't know if any issues will
come from this.  If it were possible to have all the openvpn connections go
back out the same interface they came in through, it would be great.

Are tun and tap devices associated with any one interface? Will there be any
issues in having users come in on eth1 and go back out on eth2? Will
multiple gateways just mess things up?

Any ideas or feedback would be greatly appreciated.

TIA



---
This SF.Net email is sponsored by: SourceForge.net Broadband
Sign-up now for SourceForge Broadband and get the fastest
6.0/768 connection for only $19.95/mo for the first 3 months!
http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] OpenVPN and routing

2004-05-13 Thread ALParada
I forgot to ask: Is a "route add" command the best/only way to handle this
situation?

Thanks


- Original Message - 
From: "ALParada" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Thursday, May 13, 2004 6:30 PM
Subject: [leaf-user] OpenVPN and routing


>
> Setting up OpenVPN on uClibc.  I will also be replacing the current Bering
> install with uClibc. Have everything setup and working with static keys as
> well as with certs. Since I was replacing and not installing from scratch
I
> hadn't thought about any routing issues, until now. My scenario is this:
>
> Openvpn connections will be coming in on eth1. However, eth2 is the
default
> gateway that leads to our current vpn solution (IPSEC) and out to the
> Internet. I was trying to bypass our current vpn solution by coming in
> through another interface. Unfortuately, now I don't know if any issues
will
> come from this.  If it were possible to have all the openvpn connections
go
> back out the same interface they came in through, it would be great.
>
> Are tun and tap devices associated with any one interface? Will there be
any
> issues in having users come in on eth1 and go back out on eth2? Will
> multiple gateways just mess things up?
>
> Any ideas or feedback would be greatly appreciated.
>
> TIA
>
>
>
> ---
> This SF.Net email is sponsored by: SourceForge.net Broadband
> Sign-up now for SourceForge Broadband and get the fastest
> 6.0/768 connection for only $19.95/mo for the first 3 months!
> http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by: SourceForge.net Broadband
Sign-up now for SourceForge Broadband and get the fastest
6.0/768 connection for only $19.95/mo for the first 3 months!
http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] WinScp3 and dropbear

2004-04-28 Thread ALParada
Hello Everyone,

Started my upgrade (sidegrade?) from Bering 1.2 to uClibc 2.0. I started to
setup dropbear but am having a problem connecting using WinScp3. I can
connect using Putty and pscp but not with WinScp3. When I launch it says
connecting, authenticating, starting the session and then times out. If I
cancel it says "your shell is probably incompatible with the application
(BASH is recommended). I thought that WinScp was compatible with dropbear. I
also tried to go to the dropbear site but could not get to it. Is there some
configuration necessary on WinScp?

BTW I did download the newest dropbear patched for pscp.

TIA



---
This SF.Net email is sponsored by: Oracle 10g
Get certified on the hottest thing ever to hit the market... Oracle 10g. 
Take an Oracle 10g class now, and we'll give you the exam FREE. 
http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] BadThing: Doc links broken (404) atleaf.sourceforge.net

2004-05-05 Thread ALParada
There are still several links not working. How-To, Manuals and the lrp
mirror site. Did it fail or is it just me?

- Original Message - 
From: "Mike Noyes" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, May 05, 2004 11:02 AM
Subject: Re: [leaf-user] BadThing: Doc links broken (404)
atleaf.sourceforge.net


> On Wed, 2004-05-05 at 03:39, freeman wrote:
> > All guides (excepting two for WISP) come up as 404, e.g.:
> >http://leaf.sourceforge.net/doc/guide/binstall.html
> >
> > HowTo's and ManualPages are similarly miscreant. FAQ's seem to be
OK.
> >
> > Not complaining, just bringing it to the attention of those who can
> > fix it. :)
>
> Scott,
> Thanks for mentioning this. I noticed the problem when I received my
> daily cron email. Someone committed a non-valid document to our
> repository. It was a minor error, but it caused our daily.sh script to
> fail auto-building our documents. Anyway, the issue is resolved.
>
> -- 
> Mike Noyes 
> http://sourceforge.net/users/mhnoyes/
> SF.net Projects: ffl, leaf, phpwebsite, phpwebsite-comm, sitedocs
>
>
>
> ---
> This SF.Net email is sponsored by: Oracle 10g
> Get certified on the hottest thing ever to hit the market... Oracle 10g.
> Take an Oracle 10g class now, and we'll give you the exam FREE.
> http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] BadThing: Doc links broken (404) atleaf.sourceforge.net

2004-05-05 Thread ALParada
There are still several links not working. How-To, Manuals and the lrp
mirror site. Did it fail or is it just me?

- Original Message - 
From: "Mike Noyes" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, May 05, 2004 11:02 AM
Subject: Re: [leaf-user] BadThing: Doc links broken (404)
atleaf.sourceforge.net


> On Wed, 2004-05-05 at 03:39, freeman wrote:
> > All guides (excepting two for WISP) come up as 404, e.g.:
> >http://leaf.sourceforge.net/doc/guide/binstall.html
> >
> > HowTo's and ManualPages are similarly miscreant. FAQ's seem to be
OK.
> >
> > Not complaining, just bringing it to the attention of those who can
> > fix it. :)
>
> Scott,
> Thanks for mentioning this. I noticed the problem when I received my
> daily cron email. Someone committed a non-valid document to our
> repository. It was a minor error, but it caused our daily.sh script to
> fail auto-building our documents. Anyway, the issue is resolved.
>
> -- 
> Mike Noyes 
> http://sourceforge.net/users/mhnoyes/
> SF.net Projects: ffl, leaf, phpwebsite, phpwebsite-comm, sitedocs
>
>
>
> ---
> This SF.Net email is sponsored by: Oracle 10g
> Get certified on the hottest thing ever to hit the market... Oracle 10g.
> Take an Oracle 10g class now, and we'll give you the exam FREE.
> http://ads.osdn.com/?ad_id=3149&alloc_id=8166&op=click
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] BadThing: Doc links broken (404)atleaf.sourceforge.net

2004-05-05 Thread ALParada
Sorry, didn't think I needed to be specific since someone else commented on
the problem already.

These links come up with HTTP 404 file not found.

http://leaf.sourceforge.net/mod.php?mod=userpage&menu=1302&page_id=11
http://leaf.sourceforge.net/mod.php?mod=userpage&menu=1303&page_id=12
http://leaf.sourceforge.net/devel/thc/


- Original Message - 
From: "Mike Noyes" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, May 05, 2004 1:14 PM
Subject: Re: [leaf-user] BadThing: Doc links broken
(404)atleaf.sourceforge.net


> On Wed, 2004-05-05 at 09:15, ALParada wrote:
> > There are still several links not working. How-To, Manuals and the lrp
> > mirror site. Did it fail or is it just me?
>
> Everyone,
> The documentation auto-built properly.
>
> http://leaf-project.org/doc/
>
> There are known problems with our website at this time. I'm working on
> an upgrade.
>
> Al,
> What issue are you seeing? Be specific. Generic "it doesn't work"
> statements aren't very useful in diagnosing problems.
>
> Note: the problems you are seeing may not be addressed until the
> new website is put in place.
>
> -- 
> Mike Noyes 
> http://sourceforge.net/users/mhnoyes/
> SF.net Projects: ffl, leaf, phpwebsite, phpwebsite-comm, sitedocs
>
>
>
> ---
> This SF.Net email is sponsored by Sleepycat Software
> Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
> deliver higher performing products faster, at low TCO.
> http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Can't mount usb flash drive

2004-05-05 Thread ALParada
Hello Everyone,

Trying to mount a usb flash drive with little luck. I have added the usb and
scsi files to lib/modules and etc/modules. I see the device under
/proc/bus/usb/devices and I see no errors under /var/log/messages. It seems
to be picked up and assigned but when I try to mount it I get  "Mounting
/dev/sdaX on /usb failed: No such file or directory". Any ideas?

TIA

dmesg
---
usb.c: registered new driver usbdevfs
usb.c: registered new driver hub
usb-uhci.c: $Revision: 1.275 $ time 21:01:10 Feb 11 2004
usb-uhci.c: High bandwidth mode enabled
PCI: Found IRQ 9 for device 00:07.2
PCI: Sharing IRQ 9 with 00:10.0
usb-uhci.c: USB UHCI at I/O 0x1800, IRQ 9
usb-uhci.c: Detected 2 ports
usb.c: new USB bus registered, assigned bus number 1
hub.c: USB hub found
hub.c: 2 ports detected
usb-uhci.c: v1.275:USB Universal Host Controller Interface driver
SCSI subsystem driver Revision: 1.00
Initializing USB Mass Storage driver...
usb.c: registered new driver usb-storage
USB Mass Storage support registered.
hub.c: new USB device 00:07.2-2, assigned address 2
scsi0 : SCSI emulation for USB Mass Storage devices
  Vendor: 64MB  Model: HardDrive Rev: 1.88
  Type:   Direct-Access  ANSI SCSI revision: 02
Attached scsi removable disk sda at scsi0, channel 0, id 0, lun 0
SCSI device sda: 128000 512-byte hdwr sectors (66 MB)
sda: Write Protect is off
Partition check:
 sda: sda1
WARNING: USB Mass Storage data integrity not assured
USB Mass Storage device found at 2

lsmod
--

odule  Size  Used byNot tainted
vfat9036   0 (unused)
softdog 1508   1
ip_nat_irc  2128   0 (unused)
ip_nat_ftp  2736   0 (unused)
ip_conntrack_irc2864   1
ip_conntrack_ftp3472   1
tun 3456   6
rtl813912616   1
pci-scan3532   1 [rtl8139]
natsemi15208   1
sd_mod 10300   0 (unused)
usb-storage60788   0 (unused)
scsi_mod   53960   2 [sd_mod usb-storage]
usb-uhci   21352   0 (unused)
usbcore55904   1 [usb-storage usb-uhci]
isofs  17012   0 (unused)
ide-detect   144   0 (unused)
ide-cd 28572   0
ide-disk   12492   0
ide-core   88752   0 [usb-storage ide-detect ide-cd ide-disk]
cdrom  26976   0 [ide-cd]



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] Can't mount usb flash drive

2004-05-06 Thread ALParada

Huh?? You need to format the usb device? I have seen bits and pieces about
formatting cf cards on ide adapters but nothing on usb. I put a bunch of
*.lrp on the device so I guess it is formatted. I can read it from Windows.

There is no /usb directory, does it get created or do I need to create it?

Thanks,


- Original Message - 
From: "Erich Titl" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
Sent: Thursday, May 06, 2004 2:29 AM
Subject: Re: [leaf-user] Can't mount usb flash drive


At 00:34 06.05.2004 -0400, ALParada wrote:
>Hello Everyone,
>
>Trying to mount a usb flash drive with little luck. I have added the usb
and
>scsi files to lib/modules and etc/modules. I see the device under
>/proc/bus/usb/devices and I see no errors under /var/log/messages. It seems
>to be picked up and assigned but when I try to mount it I get  "Mounting
>/dev/sdaX on /usb failed: No such file or directory". Any ideas?


- Do you have a /usb directory?
- Is the USB drive formatted?

HTH

Erich

THINK
Püntenstrasse 39
8143 Stallikon
mailto:[EMAIL PROTECTED]
PGP Fingerprint: BC9A 25BC 3954 3BC8 C024 8D8A B7D4 FF9D 05B8 0A16





---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] Can't mount usb flash drive

2004-05-06 Thread ALParada
Already did that, found one but not working for me. I guess I'll just keep
trying. Thanks for you help.

- Original Message - 
From: "Erich Titl" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
Sent: Thursday, May 06, 2004 12:46 PM
Subject: Re: [leaf-user] Can't mount usb flash drive


At 17:12 06.05.2004, you wrote:
>Well I managed to mount the device but I am still having some configuration
>issues. Is there a Howto for this as well as maybe booting of this device
>(given the bios supports booting from usb)

There was a post a while ago. Check the archives

cheers
Erich

THINK
Püntenstrasse 39
8143 Stallikon
mailto:[EMAIL PROTECTED]
PGP Fingerprint: BC9A 25BC 3954 3BC8 C024 8D8A B7D4 FF9D 05B8 0A16




---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=dnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html



---
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to 
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Module won't load

2004-05-14 Thread ALParada
Hi Everyone,

I am having problems booting with the e1000 module, or at least I think that
is the problem. It boots fine until it gets to "configuring network
interfaces" then it hangs. I have tried it on several machines successfully,
but they don't use that module. I tried a couple of different e1000 modules
but with same result. I renamed the module and it booted, so I think that's
the problem. I got the module from the modules.tar file which I think is the
latest.  I am currently running Bering on the PC that doesn't boot, and it
works fine, so I don't think it is a hardware issue. Has anyone had this
problem and how do I solve it?

TIA



---
This SF.Net email is sponsored by: SourceForge.net Broadband
Sign-up now for SourceForge Broadband and get the fastest
6.0/768 connection for only $19.95/mo for the first 3 months!
http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] Module won't load

2004-05-14 Thread ALParada
Thanks for the reply. See below.

- Original Message - 
From: "Ray Olszewski" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Friday, May 14, 2004 11:15 PM
Subject: Re: [leaf-user] Module won't load


> At 08:27 PM 5/14/2004 -0400, ALParada wrote:
> >Hi Everyone,
> >
> >I am having problems booting with the e1000 module, or at least I think
that
> >is the problem. It boots fine until it gets to "configuring network
> >interfaces" then it hangs. I have tried it on several machines
successfully,
> >but they don't use that module. I tried a couple of different e1000
modules
> >but with same result. I renamed the module and it booted, so I think
that's
> >the problem. I got the module from the modules.tar file which I think is
the
> >latest.  I am currently running Bering on the PC that doesn't boot, and
it
> >works fine, so I don't think it is a hardware issue. Has anyone had this
> >problem and how do I solve it?
>
> Your description is, I think, too hard to follow. Certainly too hard for
> me, and I suspect for others as well.  Please try again, and be more exact
> about ...
>
> 1. What version of Bering you are using.

I am using uClibc 2.1.1
>
> 2. What version of the e1000 module you are using. (One from"the"
> modules.tar file which you "think is the latest" is too vague.)  Why do
you
> think it is the correct version for the kernel you are booting?

It was the latest I could find:

http://cvs.sourceforge.net/viewcvs.py/leaf/bin/bering-uclibc/packages/modules.lrp
>
> 3. What NIC you are attempting to use the module with. And does this NIC
> work in some other context (under Windows, or with a different Linux
distro)?

Intel Pro1000 currently working under Bering 1.2
>
> 4. If you do not use /etc/modules to load the module, but instead wait
> until boot/init is finished, then insmod it from the command line, what
the
> result is. Do you get any error message back to the console?

I have not tried this.
>
> 5. The meaning of "hangs". How long do you wait before giving up? Does
> CTRL-C not work? Does CTRL-ALT-DEL not work?

I waited about 3 minutes. I did not try ^C and ^ALT-DEL does not work.
Normally
it zips right by and you don't notice it so 3 minutes was enough.
>
> 6. Nouns in many places where you use "it". For example, when you write,
"I
> have tried it on several machines successfully, but they don't use that
> module" ... is "it" e1000.o, an unspecified version of Bering, or
something
> else? And if "it" does mean the module, in what sense is it "successful"
in
> these tries? Other examples are "It boots fine until it gets to
> 'configuring network interfaces' then it hangs" and "I am currently
running
> Bering on the PC that doesn't boot, and it
> works fine" (also, what does "works fine" mean?).

 I am booting from a floppy and loading the packages from USB. I have one
 uClibc 2.1.1 distro with all the modules and packages that I need. What I
mean, is that the
 distro loads to the login prompt with the e1000 module on any machine that
doesn't
 use the e1000.o module. On the PC that does use the modules it stops at the
'configuring network interfaces' line. Bering 1.2 is running on this machine
that "hangs"
with uClibc, so I believe the hardware is good.

> 7. What "I renamed the module and it booted" means. What did you change
the
> name from, and to?

What I mean is that I commented out the /etc/modules e1000 line. It made no
difference. I then renamed the e1000 module at /lib/modules to e1000.o.old.
Once
I did this the PC in question booted to the login prompt.


>Is the "it" that booted the Bering kernel (with or
> without an interface for the NIC in question), or do you mean that the
> renamed e1000 module in this instance successfully created an eth0 (or
> whatever) interface? (Normal rules of English diction say that "it" refers
> to a module here ... but modules don't "boot", kernels do. So I'm unclear
> what you mean by "boot" if it applies to the module, not the kernel.)

Either the kernel or the PC. I got to the login prompt which is what I
consider
 "booted". I did not check whether an ethernet adapter was created but I
suspect that it wasn't.


> You *probably have a simple problem, easy to correct. But without a clear
> description, I ... and others, probably ... will find it difficult to help
> you spot it.

I am hoping it is a simple problem. It is all that is keeping me from
upgrading
to uClibc, but more importantly openvpn.

Many thanks,
>
>
>
>
>
> --

[leaf-user] bandwidth tracking

2004-06-29 Thread ALParada
Hello,

Is there an easy way to monitor who is hogging up all the bandwidth? For the
last couple of days our router has been saturated and slowing our network to
a crawl. I am not looking for anything fancy just enough to figure out who
the culprit is.

I am running uClibc with Shorewall. No proxy and no additional net tools.
Any help would be greatly appreciated.






---
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - 
digital self defense, top technical experts, no vendor pitches, 
unmatched networking opportunities. Visit www.blackhat.com

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] bandwidth tracking

2004-06-29 Thread ALParada
I thought about that since I have Ethereal already installed in my PC.
However, I believe it will only report on traffic local that PC.

I have TCPDump already copied but I don't load it. I loaded it once and it
had a small issue. I wasn't there so not really sure what happened. If
anyone is using it successfully please let me know it's worth another try.

Armando

- Original Message - 
From: "Victor McAllister" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Tuesday, June 29, 2004 8:30 PM
Subject: Re: [leaf-user] bandwidth tracking


> ALParada wrote:
>
> >Hello,
> >
> >Is there an easy way to monitor who is hogging up all the bandwidth? For
the
> >last couple of days our router has been saturated and slowing our network
to
> >a crawl. I am not looking for anything fancy just enough to figure out
who
> >the culprit is.
> >
> >I am running uClibc with Shorewall. No proxy and no additional net tools.
> >Any help would be greatly appreciated.
> >
> >
> Why not run a protocol analyzer - ethereal on a win box or tcpdump on
> the router?
>
>
>
>
>
> ---
> This SF.Net email sponsored by Black Hat Briefings & Training.
> Attend Black Hat Briefings & Training, Las Vegas July 24-29 -
> digital self defense, top technical experts, no vendor pitches,
> unmatched networking opportunities. Visit www.blackhat.com
> 
> leaf-user mailing list: [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
>



---
This SF.Net email sponsored by Black Hat Briefings & Training.
Attend Black Hat Briefings & Training, Las Vegas July 24-29 - 
digital self defense, top technical experts, no vendor pitches, 
unmatched networking opportunities. Visit www.blackhat.com

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Fw: Suggestions on VPN

2004-08-28 Thread ALParada
Hi Everyone,

I am using uClibc with Shorewall and OpenVPN. It's been set up for several
months now, no problems and working flawlessly. If not having to plan for
the future I wouldn't touch it. We are however rolling out PocketPC and will
need to connect to our Exchange Server. These will be remote connections via
the Internet and will need to use a vpn client. OpenVPN has no PocketPC
client that I am aware of, so I was thinking about the pptpd.lrp. Unless I
am wrong PocketPC has a builtin client that "should" work with pptp. I
realize it is still in testing and I don't know if two vpn servers are going
to play nice, even they are using different ports and such. Is the lrp
stable and is it being used?

Given my situation, what would you do? If this doesn't work out the only
other choice I see is to go the Cisco route.

TIA

ALP



---
This SF.Net email is sponsored by BEA Weblogic Workshop
FREE Java Enterprise J2EE developer tools!
Get your free copy of BEA WebLogic Workshop 8.1 today.
http://ads.osdn.com/?ad_id=5047&alloc_id=10808&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] My leaf crashed

2004-11-10 Thread ALParada
Hello,

I had a problem with Leaf yesterday that surprised me a little bit. Last
night I rebooted it via Putty and well it never came back up. This morning I
showed up to find a kernel panic. This was a working system not something
new. It has been flawless for about 6 months now. It goes to load root and
stalls then loads some more packages and then it says can't find
\var\lib\lrpkg\root.dev.own. I opened the *.lrp and the file was there. I
ended up replacing the root.lrp with a backup and it was happy again. Has
anyone seen this before or know why this would happen. I am using uClibc
2.1.0.

TIA



---
This SF.Net email is sponsored by:
Sybase ASE Linux Express Edition - download now for FREE
LinuxWorld Reader's Choice Award Winner for best database on Linux.
http://ads.osdn.com/?ad_id=5588&alloc_id=12065&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] My leaf crashed

2004-11-10 Thread ALParada
I did backup root but never considered the memory issue. I'm using a 128 MB
stick and allocating 10 MB to the system with 3 MB for the logs. I can't say
I looked at the space thinking there must be plenty.


- Original Message - 
From: "Victor McAllister" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>
Sent: Wednesday, November 10, 2004 11:52 PM
Subject: Re: [leaf-user] My leaf crashed


> ALParada wrote:
>
> >Hello,
> >
> >I had a problem with Leaf yesterday that surprised me a little bit. Last
> >night I rebooted it via Putty and well it never came back up. This
morning I
> >showed up to find a kernel panic. This was a working system not something
> >new. It has been flawless for about 6 months now. It goes to load root
and
> >stalls then loads some more packages and then it says can't find
> >\var\lib\lrpkg\root.dev.own. I opened the *.lrp and the file was there. I
> >ended up replacing the root.lrp with a backup and it was happy again. Has
> >anyone seen this before or know why this would happen. I am using uClibc
> >2.1.0.
> >
> >TIA
> >
> >
> backing up root itself can sometimes cause this if the box doesn't have
> enough memory.  Normally root does not need backup unless you are
> modifying something out of the ordinary.
>
>



---
This SF.Net email is sponsored by:
Sybase ASE Linux Express Edition - download now for FREE
LinuxWorld Reader's Choice Award Winner for best database on Linux.
http://ads.osdn.com/?ad_id=5588&alloc_id=12065&op=click

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] dnscache inconsistent

2004-11-23 Thread ALParada
Hello,

I'm having problems with what I think can only be dnscache. I am using
uClibc 2.1.0 with Shorewall and Openvpn. Dnscache is setup to forward to my
internal DNS. Openvpn is setup to use dnscache as the primary dns on the
config file. Somtimes it simply doesn't resolve. I have tried it from the
console and sometimes it works, sometimes it doesn't. Sometimes it will
resolve a host on my internal lan then 20 seconds later tell me "unknown
host". It doesn't sound like it is "caching" anything. I have setup Ethereal
on my internal DNS hoping to capture traffic between it and dnscache, but
alot of traffic doesn't get logged. I am thinking it simply doesn't send the
request to the forwarder. I don't have the tools installed, so no log files
are generated. Is dnscache supposed to be reliable and stable or does it
have issues? All I really need is a caching DNS since my internal lan
already has two DNS servers. Would I be better of with another package? Any
suggestions are greatly appreciated.

TIA



---
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] dnscache inconsistent

2004-11-25 Thread ALParada
Thanks for the info. Installed and configured dnsmasq and seems to be
working well. I did had some problems getting it to respond on only one
interface but it looks like it worked itself out.

Thanks


> ALParada wrote:
>
> >Hello,
> >
> >I'm having problems with what I think can only be dnscache. I am using
> >uClibc 2.1.0 with Shorewall and Openvpn. Dnscache is setup to forward to
my
> >internal DNS. Openvpn is setup to use dnscache as the primary dns on the
> >config file. Somtimes it simply doesn't resolve. I have tried it from the
> >console and sometimes it works, sometimes it doesn't. Sometimes it will
> >resolve a host on my internal lan then 20 seconds later tell me "unknown
> >host". It doesn't sound like it is "caching" anything. I have setup
Ethereal
> >on my internal DNS hoping to capture traffic between it and dnscache, but
> >alot of traffic doesn't get logged. I am thinking it simply doesn't send
the
> >request to the forwarder. I don't have the tools installed, so no log
files
> >are generated. Is dnscache supposed to be reliable and stable or does it
> >have issues? All I really need is a caching DNS since my internal lan
> >already has two DNS servers. Would I be better of with another package?
Any
> >suggestions are greatly appreciated.
> >
> >TIA
> >
> >
> I switched to dnsmasq and found it stable.  I abandoned dnscache because
> it periodically would fail for a few seconds but then give the correct
> result next attempt.  I never bothered to find out why, perhaps I had it
> incorrectly configured.  When I swtiched to dnsmasq - my problems went
away.
>



---
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


Re: [leaf-user] dnscache inconsistent

2004-11-30 Thread ALParada
Unfortunately it was inconsistent all the time. Morning, noon or night it
failed. In my setup I had it forwarding to my internal DNS servers. I  would
do a ping mypc and get a response. Twenty seconds later I would ping the
same computer and get unknown host. It really should cache for more than 20
seconds. Sometimes I would get a response, sometimes I wouldn't, and my
internal DNS servers have not gone down. I finally ran Ethereal on my DNS
servers and found that they were not getting all the request from dnscache.
Again, sometimes it got a request and other times it didn't. I changed to
dnsmasq and have not gotten any more complaints.

Hope this helps,



- Original Message - 
From: "Nathan Angelacos" <[EMAIL PROTECTED]>
To: "ALParada" <[EMAIL PROTECTED]>
Sent: Tuesday, November 30, 2004 10:07 AM
Subject: Re: [leaf-user] dnscache inconsistent


> Al,
>
> You mentioned you were having problems with dnscache a while ago, and it
> worked better for you running dnsmasq.
>
> We're using dnrd (similar to dnsmasq) but then falling back to dnscache
when
> the ISP's dns server goes to lunch for some reason.  dnscache is supposed
to
> be real stable, but we're seeing similar  problems.   Unfortunately for
me,
> I'm in a situation were we must go to the root servers  (like dnscache
does)
> when the ISP's dns server fails.
>
> Do you remember any specifics as to when dnscache failed?  Was it under
heavy
> load?  mostly at night? Did it happen all the time, or once a week?   ANY
> information you have would be helpful to me.
>
> Thanks in advance!
>
> > > >I'm having problems with what I think can only be dnscache. I am
using
> > > >uClibc 2.1.0 with Shorewall and Openvpn. Dnscache is setup to forward
to
> >
> > my
> >
> > > >internal DNS. Openvpn is setup to use dnscache as the primary dns on
the
> > > >config file. Somtimes it simply doesn't resolve. I have tried it from
> > > > the console and sometimes it works, sometimes it doesn't. Sometimes
it
> > > > will resolve a host on my internal lan then 20 seconds later tell me
> > > > "unknown host". It doesn't sound like it is "caching" anything. I
have
> > > > setup
> >
> > Ethereal
> >
> > > >on my internal DNS hoping to capture traffic between it and dnscache,
> > > > but alot of traffic doesn't get logged. I am thinking it simply
doesn't
> > > > send
> >
> > the
> >
> > > >request to the forwarder. I don't have the tools installed, so no log
> >
> > files
> >
> > > >are generated. Is dnscache supposed to be reliable and stable or does
it
> > > >have issues? All I really need is a caching DNS since my internal lan
> > > >already has two DNS servers. Would I be better of with another
package?
> >
> > Any
> >
> > > >suggestions are greatly appreciated.
> > > >
> > > >TIA
> > >
> > > I switched to dnsmasq and found it stable.  I abandoned dnscache
because
> > > it periodically would fail for a few seconds but then give the correct
> > > result next attempt.  I never bothered to find out why, perhaps I had
it
> > > incorrectly configured.  When I swtiched to dnsmasq - my problems went
> >
>



---
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/

leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] multiple addresses

2005-01-18 Thread ALParada
Hello,

Exactly how do you add mutiple ip addresses to the same interface? I tried
adding this under network config/interfaces:

# Configure Interface
auto eth1
iface eth1 inet static
  address 192.168.1.155
  netmask 255.255.255.0
  broadcast 192.168.1.0
  gateway 192.168.1.1

auto eth1:0
iface eth1 inet static
  address 192.168.2.155
  netmask 255.255.255.0
  broadcast 192.168.2.0

When I restarted networking I had lost all my addresses. I did an "ip addr"
and they were all gone. I commented the second address and did a:

ip addr add 192.168.2.155/24 brd 192.168.1.255 dev eth0 label eth0:0

and it worked. Since I don't want to do this everytime I reboot what am I
doing wrong and how do I fix it?

TIA.






---
The SF.Net email is sponsored by: Beat the post-holiday blues
Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek.
It's fun and FREE -- well, almosthttp://www.thinkgeek.com/sfshirt

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html


[leaf-user] Fw: Openvpn 2.0

2005-03-19 Thread ALParada
Any chance there is an Openvpn  2.0 version for uClibc on the way?

Tx


---
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click

leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html