RE: [newbie] SNF 7.2 and VPN.

2002-06-04 Thread Chris Lynch

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Anyone?  I would really like to know, as I am trying to decide
between Wolverine (which is still in Alpha) and SNF 7.2.
 
Thanks,
 
Chris

- -Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Chris Lynch
Sent: Monday, June 03, 2002 8:01 PM
To: Newbie Linux - Mandrake
Subject: [newbie] SNF 7.2 and VPN.



- -BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Has anyone installed any VPN server software on Mandrake's SNF 7.2?
Anyone successful?  Any tips?

Thanks,

Chris

- -BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPwtLkr5pFJx+BQ5EQL1HgCg+m6wdDf6ESHCba0VE2EjmbZZ680AoPy8
/JM+G7tPZPBjPya6H2Y5kpvo
=T8Tk
- -END PGP SIGNATURE-



-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPzrW0r5pFJx+BQ5EQLYtgCeMBA9tH9is4ImMBElCjPeel/BjTIAoNXD
CaK//ljIjEnQrh+70K7KvG7F
=laM+
-END PGP SIGNATURE-


<>
Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



[newbie] SNF 7.2 and VPN.

2002-06-03 Thread Chris Lynch
Title: SNF 7.2 and VPN.






-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Has anyone installed any VPN server software on Mandrake's SNF 7.2?
Anyone successful?  Any tips?

Thanks,

Chris

-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPwtLkr5pFJx+BQ5EQL1HgCg+m6wdDf6ESHCba0VE2EjmbZZ680AoPy8
/JM+G7tPZPBjPya6H2Y5kpvo
=T8Tk
-END PGP SIGNATURE-






PGPexch.rtf.asc
Description: Binary data

Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2 problems.

2002-05-29 Thread Mark Van Bruggen



  On 30/05/2002,

 The following message was beamed across the Internet:

 
> -BEGIN PGP SIGNED MESSAGE-
> Hash: SHA1

> I have looked at Smoothwall, but I am looking for a good custom
> firewall that has IDS, reporting, and preferably a Web interface, as
> I am not a Linux guru by an means.


  Checkout IPCop, it is one step ahead of smoothwall and has nice
  people on the email groups.

  It was originally based on Smoothwall 0.9.9 but has grown some since
  then... :)

  http://www.ipcop.org


-- 
 Regards,
Mark Van Bruggen

[EMAIL PROTECTED]

There is always a way, it's just reality that's the problem !!

==

 Mark Van Bruggen 
  Microsoft OEM Certified  Phone : 07 4926 4900   
   Computer Systems Supplier   Mobile: 04 3886 4900
Internet / Computer Technician E-mail: [EMAIL PROTECTED] 
   
 Rockhampton  QLD  AU  
 
==




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2 problems.

2002-05-29 Thread Dan LaBine

Try out the following. At worst, you'll need to do a search at
http://www.google.com/linux to find them.

SME server at www.e-smith.org

http://www.astaro.org/cgi/ultimatebb.cgi

http://www.ipcop.org/cgi-bin/twiki/view/IPCop/WebHome

Those out to do.

Lanman
- Original Message -
From: "Chris Lynch" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, May 29, 2002 12:01 PM
Subject: RE: [newbie] SNF 7.2 problems.


>
> -BEGIN PGP SIGNED MESSAGE-
> Hash: SHA1
>
> I have looked at Smoothwall, but I am looking for a good custom
> firewall that has IDS, reporting, and preferably a Web interface, as
> I am not a Linux guru by an means.
>
> Has anyone heard of Wolverine?  I found this one while searching for
> other firewalls, and this one came up.  It appears that the
> developers are trying to make a Watchguard-like firewall with the
> 2.4.x kernel.  Has anyone tried this distro?  Any thoughts?  Any
> other ideas for a firewall?  I really do not want to have to take a
> Red Hat or Mandrake 8.x distro and turn it into a firewall, as I
> don't know what to have and not to have installed.
>
> Thanks,
>
> Chris
>
> - -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]] On Behalf Of FemmeFatale
> Sent: Tuesday, May 28, 2002 7:10 PM
> To: [EMAIL PROTECTED]
> Subject: Re: [newbie] SNF 7.2 problems.
>
>
> et wrote:
> >
> > boy I don't know if stuff has changed or what, but used to be
> > SINGLE  Network firewall mean only one lan and one external
> > interface no
> > wonder you have a problem with SINGLE NETWORK on MULTIpul eth
> > interfaces... have you ever considered useing only eth0 for the
> > inside  lan as the gateway  (192.168.0.1) and eth1 as the (dhcp?)
> > outside lan?  and maybe consder a complete distro custom setup as a
> > firewall machine  to get all these other ETH2, ETH3,
> > ppp0,ppp1,ppp2, running at the same  time?
> >
>
> That or consider Smootwall for your needs
>
> - --
> Femme
>
> Good Decisions You boss Made:
>
> "We'll do as you suggest and go with Linux.  I've always liked that
> character from Peanuts."
>
> - - Source: Dilbert
>
>
>
> -BEGIN PGP SIGNATURE-
> Version: PGP 7.1
> Comment: Public Key Signature for Chris Lynch
>
> iQA/AwUBPPT7UEr5pFJx+BQ5EQKOewCfd4wfM24KlNH400q8NWQsUrAkEb4AoP15
> 7TXm8fwKwmaOIA3FhODwcc8+
> =yd4D
> -END PGP SIGNATURE-
>
>
>






> Want to buy your Pack or Services from MandrakeSoft?
> Go to http://www.mandrakestore.com
>




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



RE: [newbie] SNF 7.2 problems.

2002-05-29 Thread Chris Lynch
${i} | grep "inet addr" | awk '{print $2":"$4}' | awk -F: '{print
$2"/"$4}'`"
done

IP_MASQ_MODULES="cuseeme ftp irc quake raudio vdolive dplay icq h323
"


# 8) How to react to disallowed packets
# whether to "REJECT" or "DENY" disallowed packets; if you're running
any
# public services, you probably ought to use "REJECT"; if in serious
stealth
# mode, choose "DENY" so simple probes don't know if there's anything
out there
#   NOTE: disallowed ICMP packets are discarded with "DENY", as
#   it would not make sense to "reject" the packet if you're
#   trying to disallow ping/traceroute
#
REJECT_METHOD="DENY"

# 9) DHCP
#In case your server needs to get a DHCP address from some other
#machine (e.g. cable modem)
#DHCP_IFACES="eth0" # example, to allow you to query on eth0
#DHCP_IFACES="" # DISABLED
#
# Please make sure variable assignments are on single lines; do NOT
# use the "\" continuation character (so Bastille can change the
# values if it is run more than once)
DHCP_IFACES=""


# 10) more UDP fun. List IP addresses or network space of NTP servers
#
#NTP_SERVERS="" # DISABLE NTP QUERIES / SAFEST
#NTP_SERVERS="a.b.c.d/32 e.f.g.h/32"# example, to allow querying 2
servers
#
# Please make sure variable assignments are on single lines; do NOT
# use the "\" continuation character (so Bastille can change the
# values if it is run more than once)
NTP_SERVERS=""  


# 11) more ICMP. Control the outbound ICMP to make yourself invisible
to
# traceroute probesMissing
#
#ICMP_OUTBOUND_DISABLED_TYPES="destination-unreachable time-exceeded"
#
# Please make sure variable assignments are on single lines; do NOT
# use the "\" continuation character (so Bastille can change the
# values if it is run more than once)
ICMP_OUTBOUND_DISABLED_TYPES=""


# 12) Logging
#   With this enabled, ipchains will log all blocked packets.
#** this could generate huge logs **
#   This is primarily intended for the port mointoring system; 
#   also note that you probably do not want to "AUDIT" any services
#   that you are not allowing, as doing so would mean duplicate
#   logging
LOG_FAILURES="N"    


# 13) ADSL
#   Set to yes if you a ADSL modem is plug to one of you external
interface
#   For ADSL internet access firewall script let access to TCP port
1073 et need protocole 47
ADSL_INTERFACES=""  


# 14) SQUID
#   Redirect all packet for masquerade network from port 80 to SQUID
port (squid port)

SQUID_REDIRECT_PORT=""


# 15) OptimiozeTOS packet for specific protole, Thanks to Trinity os
for this !!!
# Though very FEW ISPs do anything with the TOS bits, I thought you'd
# like to see it.  In theory, you can tell the Internet how to handle
# your traffic, be it sensitive to delay, throughput, etc.
#
#   -t 0x01 0x10 = Minimum Delay
#   -t 0x01 0x08 = Maximum Throughput
#   -t 0x01 0x04 = Maximum Reliability
#   -t 0x01 0x02 = Minimum Cost

TOS_MIN_DELAY=""
TOS_MAX_THROUGHPUT=""
TOS_MAX_RELIABILITY=""
TOS_MIN_COST=""

Do I have to modify Item 7 within this config file?

Thanks,

Chris
- -Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of et
Sent: Tuesday, May 28, 2002 1:53 PM
To: [EMAIL PROTECTED]
Subject: Re: [newbie] SNF 7.2 problems.


boy I don't know if stuff has changed or what, but used to be SINGLE
Network 
firewall mean only one lan and one external interface no wonder you
have a 
problem with SINGLE NETWORK on MULTIpul eth interfaces... have you
ever 
considered useing only eth0 for the inside lan as the gateway 
(192.168.0.1) 
and eth1 as the (dhcp?) outside lan? and maybe consder a complete
distro 
custom setup as a firewall machine to get all these other ETH2, ETH3,
ppp0,ppp1,ppp2, running at the same time?


On Tuesday 28 May 2002 04:02 pm, you wrote:
> Yes.  The ETH interfaces are the gateways for the respected LAN 
> segments.  I do have RIPv2 running on the network and all of the 
> routers "see" the other subnets.  Like I said, I can SSH into the 
> firewall from the IP Address 192.168.150.1, do what I need to do on
>  the firewall, but I cannot get outside the firewall.  Is there a 
> script or config file you would like me to paste so you can look at
> it  to see if there is a config problem?  I haven't made any
> changes to  any of the script files, except the init.rc (or the
> rc.local, which  ever is the very last script to run during bootup)
> which I has to add  the static routes to the other netwo

RE: [newbie] SNF 7.2 problems.

2002-05-29 Thread Chris Lynch

 
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

I have looked at Smoothwall, but I am looking for a good custom
firewall that has IDS, reporting, and preferably a Web interface, as
I am not a Linux guru by an means.

Has anyone heard of Wolverine?  I found this one while searching for
other firewalls, and this one came up.  It appears that the
developers are trying to make a Watchguard-like firewall with the
2.4.x kernel.  Has anyone tried this distro?  Any thoughts?  Any
other ideas for a firewall?  I really do not want to have to take a
Red Hat or Mandrake 8.x distro and turn it into a firewall, as I
don't know what to have and not to have installed.

Thanks,

Chris

- -Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of FemmeFatale
Sent: Tuesday, May 28, 2002 7:10 PM
To: [EMAIL PROTECTED]
Subject: Re: [newbie] SNF 7.2 problems.


et wrote:
> 
> boy I don't know if stuff has changed or what, but used to be
> SINGLE  Network firewall mean only one lan and one external
> interface no 
> wonder you have a problem with SINGLE NETWORK on MULTIpul eth 
> interfaces... have you ever considered useing only eth0 for the
> inside  lan as the gateway  (192.168.0.1) and eth1 as the (dhcp?)
> outside lan?  and maybe consder a complete distro custom setup as a
> firewall machine  to get all these other ETH2, ETH3,
> ppp0,ppp1,ppp2, running at the same  time?
> 

That or consider Smootwall for your needs

- -- 
Femme

Good Decisions You boss Made:

"We'll do as you suggest and go with Linux.  I've always liked that
character from Peanuts."

- - Source: Dilbert



-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPT7UEr5pFJx+BQ5EQKOewCfd4wfM24KlNH400q8NWQsUrAkEb4AoP15
7TXm8fwKwmaOIA3FhODwcc8+
=yd4D
-END PGP SIGNATURE-




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2 problems.

2002-05-28 Thread et

boy I don't know if stuff has changed or what, but used to be SINGLE Network 
firewall mean only one lan and one external interface no wonder you have a 
problem with SINGLE NETWORK on MULTIpul eth interfaces... have you ever 
considered useing only eth0 for the inside lan as the gateway  (192.168.0.1) 
and eth1 as the (dhcp?) outside lan? and maybe consder a complete distro 
custom setup as a firewall machine to get all these other ETH2, ETH3, 
ppp0,ppp1,ppp2, running at the same time?


On Tuesday 28 May 2002 04:02 pm, you wrote:
> Yes.  The ETH interfaces are the gateways for the respected LAN
> segments.  I do have RIPv2 running on the network and all of the
> routers "see" the other subnets.  Like I said, I can SSH into the
> firewall from the IP Address 192.168.150.1, do what I need to do on
> the firewall, but I cannot get outside the firewall.  Is there a
> script or config file you would like me to paste so you can look at
> it to see if there is a config problem?  I haven't made any changes
> to any of the script files, except the init.rc (or the rc.local,
> which ever is the very last script to run during bootup) which I has
> to add the static routes to the other networks.  Now, before anyone
> else jumps, I did add the static routes manually BEFORE I modified
> the init.rc script, and I was able to access the firewall via HTTPS
> and SSH, but I was still not able to get out to the Internet.
>
> Thanks,
>
> Chris
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]] On Behalf Of Dennis Myers
> Sent: Tuesday, May 28, 2002 12:12 PM
> To: [EMAIL PROTECTED]
> Subject: Re: [newbie] SNF 7.2 problems.
>
> On Tuesday 28 May 2002 12:41 pm, you wrote:
> > Does anyone have any good FAQ links for the Mandrake SNF 7.2 build,
> >  other than the one on Mandrake's site?
> >
> > Also, I have a problem with the firewall itself. I have the
> > firewall  setup in the diagram attached. I have static routes in
> > the init.rc  startup script, because I am unable to get routed or
> > gated to receive  any RIPv1 or RIPv2 broadcasts from my Cisco 2621
> > routers. Every time I  try to start routed with the -q or -a switch
> > (whichever switch is for  listening only), routed says it cannot
> > bind to address.
> >
> > Anyway, I can access the firewall via the web management interface,
> >  and also via SSH. The problem is that my clients on any of the
> > 192.168  networks cannot get out to the Internet. I have allowed
> > DNS (UDP
> > only), HTTP, HTTPS, FTP, SSH, SFTP, and SFC. Can anyone tell me
> > what  could be going on? BTW, I can get out to the Internet from
> > the
> > firewall by both pinging an IP address (both the Internet DNS
> > server  and the IP address of 208.208.208.208), and by running the
> > TEST
> > INTERNET CONNECTION from the list after logging into the console
> > with  admin.
> >
> > I have not installed any of the security updates, as this causes a
> > problem when restarting the system as it hangs on bringing up the
> > ETH2  interface. Can anyone recommend how to install the security
> > updates/patches?
> >
> > Thanks,
> >
> > Chris
> >
> >
> > PS.  My apologies to the mod, as I don't have a website to upload
> > the  image (only 20kb).
>
> OOps! hit the mouse button at the wrong moment, so previous message
> resembles
> the inner workings of my brain.Have you set up the LAN so that
> all of the
> system knows what the gateway address is?.  You don't mention a
> gateway
> device.  Just curious and hope to help.



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



RE: [newbie] SNF 7.2 problems.

2002-05-28 Thread Chris Lynch

 
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Yes.  The ETH interfaces are the gateways for the respected LAN
segments.  I do have RIPv2 running on the network and all of the
routers "see" the other subnets.  Like I said, I can SSH into the
firewall from the IP Address 192.168.150.1, do what I need to do on
the firewall, but I cannot get outside the firewall.  Is there a
script or config file you would like me to paste so you can look at
it to see if there is a config problem?  I haven't made any changes
to any of the script files, except the init.rc (or the rc.local,
which ever is the very last script to run during bootup) which I has
to add the static routes to the other networks.  Now, before anyone
else jumps, I did add the static routes manually BEFORE I modified
the init.rc script, and I was able to access the firewall via HTTPS
and SSH, but I was still not able to get out to the Internet.

Thanks,

Chris

- -Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Dennis Myers
Sent: Tuesday, May 28, 2002 12:12 PM
To: [EMAIL PROTECTED]
Subject: Re: [newbie] SNF 7.2 problems.


On Tuesday 28 May 2002 12:41 pm, you wrote:
> Does anyone have any good FAQ links for the Mandrake SNF 7.2 build,
>  other than the one on Mandrake's site?
>
> Also, I have a problem with the firewall itself. I have the
> firewall  setup in the diagram attached. I have static routes in
> the init.rc  startup script, because I am unable to get routed or
> gated to receive  any RIPv1 or RIPv2 broadcasts from my Cisco 2621
> routers. Every time I  try to start routed with the -q or -a switch
> (whichever switch is for  listening only), routed says it cannot
> bind to address.
>
> Anyway, I can access the firewall via the web management interface,
>  and also via SSH. The problem is that my clients on any of the
> 192.168  networks cannot get out to the Internet. I have allowed
> DNS (UDP 
> only), HTTP, HTTPS, FTP, SSH, SFTP, and SFC. Can anyone tell me
> what  could be going on? BTW, I can get out to the Internet from
> the 
> firewall by both pinging an IP address (both the Internet DNS
> server  and the IP address of 208.208.208.208), and by running the
> TEST 
> INTERNET CONNECTION from the list after logging into the console
> with  admin.
>
> I have not installed any of the security updates, as this causes a 
> problem when restarting the system as it hangs on bringing up the
> ETH2  interface. Can anyone recommend how to install the security 
> updates/patches?
>
> Thanks,
>
> Chris
>
>
> PS.  My apologies to the mod, as I don't have a website to upload
> the  image (only 20kb).
OOps! hit the mouse button at the wrong moment, so previous message
resembles 
the inner workings of my brain.Have you set up the LAN so that
all of the 
system knows what the gateway address is?.  You don't mention a
gateway 
device.  Just curious and hope to help. 
- -- 
Dennis M. linux user #180842


-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPPiWkr5pFJx+BQ5EQKMoQCeLa4X+wlA8nFi4FK7gI+pxAk9iNAAmwe5
I7jQALxkgs8ByaK7OjK3W9eE
=OMTa
-END PGP SIGNATURE-




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2 problems.

2002-05-28 Thread Dennis Myers

On Tuesday 28 May 2002 12:41 pm, you wrote:
> Does anyone have any good FAQ links for the Mandrake SNF 7.2 build,
> other than the one on Mandrake's site?
>
> Also, I have a problem with the firewall itself. I have the firewall
> setup in the diagram attached. I have static routes in the init.rc
> startup script, because I am unable to get routed or gated to receive
> any RIPv1 or RIPv2 broadcasts from my Cisco 2621 routers. Every time
> I try to start routed with the -q or -a switch (whichever switch is
> for listening only), routed says it cannot bind to address.
>
> Anyway, I can access the firewall via the web management interface,
> and also via SSH. The problem is that my clients on any of the
> 192.168 networks cannot get out to the Internet. I have allowed DNS
> (UDP only), HTTP, HTTPS, FTP, SSH, SFTP, and SFC. Can anyone tell me
> what could be going on?
> BTW, I can get out to the Internet from the firewall by both pinging
> an IP address (both the Internet DNS server and the IP address of
> 208.208.208.208), and by running the TEST INTERNET CONNECTION from
> the list after logging into the console with admin.
>
> I have not installed any of the security updates, as this causes a
> problem when restarting the system as it hangs on bringing up the
> ETH2 interface. Can anyone recommend how to install the security
> updates/patches?
>
> Thanks,
>
> Chris
>
>
> PS.  My apologies to the mod, as I don't have a website to upload the
> image (only 20kb).

-- 
Dennis M. linux user #180842



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2 problems.

2002-05-28 Thread Dennis Myers

On Tuesday 28 May 2002 12:41 pm, you wrote:
> Does anyone have any good FAQ links for the Mandrake SNF 7.2 build,
> other than the one on Mandrake's site?
>
> Also, I have a problem with the firewall itself. I have the firewall
> setup in the diagram attached. I have static routes in the init.rc
> startup script, because I am unable to get routed or gated to receive
> any RIPv1 or RIPv2 broadcasts from my Cisco 2621 routers. Every time
> I try to start routed with the -q or -a switch (whichever switch is
> for listening only), routed says it cannot bind to address.
>
> Anyway, I can access the firewall via the web management interface,
> and also via SSH. The problem is that my clients on any of the
> 192.168 networks cannot get out to the Internet. I have allowed DNS
> (UDP only), HTTP, HTTPS, FTP, SSH, SFTP, and SFC. Can anyone tell me
> what could be going on?
> BTW, I can get out to the Internet from the firewall by both pinging
> an IP address (both the Internet DNS server and the IP address of
> 208.208.208.208), and by running the TEST INTERNET CONNECTION from
> the list after logging into the console with admin.
>
> I have not installed any of the security updates, as this causes a
> problem when restarting the system as it hangs on bringing up the
> ETH2 interface. Can anyone recommend how to install the security
> updates/patches?
>
> Thanks,
>
> Chris
>
>
> PS.  My apologies to the mod, as I don't have a website to upload the
> image (only 20kb).
OOps! hit the mouse button at the wrong moment, so previous message resembles 
the inner workings of my brain.Have you set up the LAN so that all of the 
system knows what the gateway address is?.  You don't mention a gateway 
device.  Just curious and hope to help. 
-- 
Dennis M. linux user #180842



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



[newbie] SNF 7.2 problems.

2002-05-28 Thread Chris Lynch

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Does anyone have any good FAQ links for the Mandrake SNF 7.2 build,
other than the one on Mandrake's site?

Also, I have a problem with the firewall itself. I have the firewall
setup in the diagram attached. I have static routes in the init.rc
startup script, because I am unable to get routed or gated to receive
any RIPv1 or RIPv2 broadcasts from my Cisco 2621 routers. Every time
I try to start routed with the -q or -a switch (whichever switch is
for listening only), routed says it cannot bind to address.

Anyway, I can access the firewall via the web management interface,
and also via SSH. The problem is that my clients on any of the
192.168 networks cannot get out to the Internet. I have allowed DNS
(UDP only), HTTP, HTTPS, FTP, SSH, SFTP, and SFC. Can anyone tell me
what could be going on?
BTW, I can get out to the Internet from the firewall by both pinging
an IP address (both the Internet DNS server and the IP address of
208.208.208.208), and by running the TEST INTERNET CONNECTION from
the list after logging into the console with admin.

I have not installed any of the security updates, as this causes a
problem when restarting the system as it hangs on bringing up the
ETH2 interface. Can anyone recommend how to install the security
updates/patches?

Thanks,

Chris


PS.  My apologies to the mod, as I don't have a website to upload the
image (only 20kb).

 
 


-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPPPBK0r5pFJx+BQ5EQIGbgCeP85U7Hw+Gm5vH6VQs7BiAFt4OZMAn1Pi
zamA7FT3yCt7qxnSJOWQb/Jc
=OKqt
-END PGP SIGNATURE-


<>
Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2

2002-05-27 Thread Jason Pearce

Ok here we go,
I have just set this up today but am not having much luck
I am trying to use the ip address that was given to me during 
the install https://192.168.0.1:8443 through a browser on my laptop
although the gateway (SNF) is not handing out ip addresses so 
I am getting " the process blah blah died unexpectantly"??
I can't ping from here for the same reason.
I have logged in to the machine using the admin account 
and looked through the settings there and turned on DHCP 
but still no luck .
any suggetsions
regards jason 

On Saturday 25 May 2002 14:40, you wrote:
> On Friday 24 May 2002 11:30 am, you wrote:
> > Thanks for the replys, jerry & Dennis
> > I have now found the docs @
> > http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/index.html
> > I think the part that you are looking for Dennis is @
> > http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/naat-config.html
> > then "connecting"
> > thanks again I post again when I have got my hands dirty hopefully over
> > the weekend I'll get a chance to do the install.
> > cheers people
> > jason
> >
> > On Saturday 25 May 2002 02:04, you wrote:
> > > -Original Message-
> > > From: [EMAIL PROTECTED]
> > > [mailto:[EMAIL PROTECTED]]On Behalf Of Jason Pearce
> > > Sent: Friday, May 24, 2002 7:51 AM
> > > To: [EMAIL PROTECTED]
> > > Subject: [newbie] SNF 7.2
> > >
> > >
> > > Hi Guys & Girls,
> > > I have just downloaded the Mandrake Singal Network Firewall 7.2
> > > could anyone tell me where I could get some documentation for this
> > > OS .
> > > I intend to use it for a Internet Cafe to share the ADSL connection
> > > and act as a proxy to minimize outgoing bandwidth.
> > > a poke in the right direction would be appreciated .
> > > I have looked on the Mandrake site but I could not find anything
> > > specific to SNF.
> > > If anyone has any experience (good or bad) with SNF ,that info would
> > > also be much appreciated.
> > > cheers and thanks in advance.
> > > Jason
> > >
> > > SNF documentation can be obtained by starting here:
> > > http://www.linux-mandrake.com/en/fdoc.php3. I have had a problem
> > > getting into the firewall machine
> > > once it is installed. I can't figure out if telnet needs to be used or
> > > what, but I can't connect to the LAN
> > > with it or from a LAN machine I can't ping the firewall machine. So
> > > something is missing in my connection. If you
> > > install and it works please post if you had to do anything like
> > > activate an additional package or something. Thanks
> > > Dennis M.
> >
> > 
> > Content-Type: text/html; charset="iso-8859-1"; name="Attachment: 1"
> > Content-Transfer-Encoding: quoted-printable
> > Content-Description:
> > 
>
> OK, I have a firewall.  I did not give it a  gateway address during
> install, save that for later when you telnet to it.  I then took one of the
> computers on the LAN off of a dial up account and gave it no info on the
> gateway. Voila! I can continue to configure and set up the firewall via my
> other computer. Is that telnet on a LAN or just what do you call it?  Now
> if they would just deliver the cable modem and give me the IP addresses I
> can convert to broadband.  Life is good, just don't weaken.  And never give
> up.


Content-Type: text/plain; charset="iso-8859-1"; name="message.footer"
Content-Transfer-Encoding: 8bit
Content-Description: 




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2

2002-05-24 Thread Dennis Myers

On Friday 24 May 2002 11:30 am, you wrote:
> Thanks for the replys, jerry & Dennis
> I have now found the docs @
> http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/index.html
> I think the part that you are looking for Dennis is @
> http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/naat-config.html
> then "connecting"
> thanks again I post again when I have got my hands dirty hopefully over the
> weekend I'll get a chance to do the install.
> cheers people
> jason
>
> On Saturday 25 May 2002 02:04, you wrote:
> > -Original Message-
> > From: [EMAIL PROTECTED]
> > [mailto:[EMAIL PROTECTED]]On Behalf Of Jason Pearce
> > Sent: Friday, May 24, 2002 7:51 AM
> > To: [EMAIL PROTECTED]
> > Subject: [newbie] SNF 7.2
> >
> >
> > Hi Guys & Girls,
> > I have just downloaded the Mandrake Singal Network Firewall 7.2
> > could anyone tell me where I could get some documentation for this
> > OS .
> > I intend to use it for a Internet Cafe to share the ADSL connection
> > and act as a proxy to minimize outgoing bandwidth.
> > a poke in the right direction would be appreciated .
> > I have looked on the Mandrake site but I could not find anything
> > specific to SNF.
> > If anyone has any experience (good or bad) with SNF ,that info would
> > also be much appreciated.
> > cheers and thanks in advance.
> > Jason
> >
> > SNF documentation can be obtained by starting here:
> > http://www.linux-mandrake.com/en/fdoc.php3. I have had a problem getting
> > into the firewall machine
> > once it is installed. I can't figure out if telnet needs to be used or
> > what, but I can't connect to the LAN
> > with it or from a LAN machine I can't ping the firewall machine. So
> > something is missing in my connection. If you
> > install and it works please post if you had to do anything like activate
> > an additional package or something. Thanks
> > Dennis M.
>
> 
> Content-Type: text/html; charset="iso-8859-1"; name="Attachment: 1"
> Content-Transfer-Encoding: quoted-printable
> Content-Description:
> 
OK, I have a firewall.  I did not give it a  gateway address during install, 
save that for later when you telnet to it.  I then took one of the computers 
on the LAN off of a dial up account and gave it no info on the gateway. 
Voila! I can continue to configure and set up the firewall via my other 
computer. Is that telnet on a LAN or just what do you call it?  Now if they 
would just deliver the cable modem and give me the IP addresses I can convert 
to broadband.  Life is good, just don't weaken.  And never give up.
-- 
Dennis M. linux user #180842



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2

2002-05-24 Thread FemmeFatale

Jerry wrote:
> 
> you might want to try looking for an iso of the doc cd on the mandrake ftp
> site (or a mirror... most likely you'll get better speed on the mirrors
> anyway).  in the initial folder go into the /pub folder and see if you can
> find a reference to SNF.  the directory structure on their ftp site has links
> all over it so it can throw you for a loop as to where you are at times.  if
> you're useing a gui ftp client watch for the folder icons with the arrows..
> those are links to other folders.  i try not to go those routes because you
> miss sections of the directory tree where your files might be.
> 
> hth
> jerry.
> 
> (ps i'll tool around it a bit and see if i can see)
> 
> j
> On Friday 24 May 2002 06:51 am, you wrote:
> > Hi Guys & Girls,
> > I have just downloaded the Mandrake Singal Network Firewall 7.2
> > could anyone tell me where I could get some documentation for this
> > OS .
> > I intend to use it for a Internet Cafe to share the ADSL connection
> > and act as a proxy to minimize outgoing bandwidth.
> > a poke in the right direction would be appreciated .
> > I have looked on the Mandrake site but I could not find anything
> > specific to SNF.
> > If anyone has any experience (good or bad) with SNF ,that info would
> > also be much appreciated.
> > cheers and thanks in advance.
> > Jason
> 

if you wish, email me pvtly i'll give you a file for SNF itself. Not
sure if it will help but its worth a shot :)

-- 
Femme

Good Decisions You boss Made:

"We'll do as you suggest and go with Linux.  I've always liked that
character from Peanuts."

- Source: Dilbert




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



Re: [newbie] SNF 7.2

2002-05-24 Thread Jason Pearce

Thanks for the replys, jerry & Dennis
I have now found the docs @
http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/index.html
I think the part that you are looking for Dennis is @
http://www.linux-mandrake.com/en/doc/72/SNF/en/user.html/naat-config.html
then "connecting"
thanks again I post again when I have got my hands dirty hopefully over the 
weekend I'll get a chance to do the install.
cheers people
jason 


On Saturday 25 May 2002 02:04, you wrote:
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]]On Behalf Of Jason Pearce
> Sent: Friday, May 24, 2002 7:51 AM
> To: [EMAIL PROTECTED]
> Subject: [newbie] SNF 7.2
>
>
> Hi Guys & Girls,
> I have just downloaded the Mandrake Singal Network Firewall 7.2
> could anyone tell me where I could get some documentation for this
> OS .
> I intend to use it for a Internet Cafe to share the ADSL connection
> and act as a proxy to minimize outgoing bandwidth.
> a poke in the right direction would be appreciated .
> I have looked on the Mandrake site but I could not find anything
> specific to SNF.
> If anyone has any experience (good or bad) with SNF ,that info would
> also be much appreciated.
> cheers and thanks in advance.
> Jason
>
> SNF documentation can be obtained by starting here:
> http://www.linux-mandrake.com/en/fdoc.php3. I have had a problem getting
> into the firewall machine
> once it is installed. I can't figure out if telnet needs to be used or
> what, but I can't connect to the LAN
> with it or from a LAN machine I can't ping the firewall machine. So
> something is missing in my connection. If you
> install and it works please post if you had to do anything like activate an
> additional package or something. Thanks
> Dennis M.


Content-Type: text/html; charset="iso-8859-1"; name="Attachment: 1"
Content-Transfer-Encoding: quoted-printable
Content-Description: 




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



RE: [newbie] SNF 7.2

2002-05-24 Thread Myers, Dennis R NWO
Title: RE: [newbie] SNF 7.2







-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Jason Pearce
Sent: Friday, May 24, 2002 7:51 AM
To: [EMAIL PROTECTED]
Subject: [newbie] SNF 7.2



Hi Guys & Girls,
I have just downloaded the Mandrake Singal Network Firewall 7.2
could anyone tell me where I could get some documentation for this 
OS .
I intend to use it for a Internet Cafe to share the ADSL connection 
and act as a proxy to minimize outgoing bandwidth.
a poke in the right direction would be appreciated .
I have looked on the Mandrake site but I could not find anything 
specific to SNF.
If anyone has any experience (good or bad) with SNF ,that info would 
also be much appreciated.
cheers and thanks in advance.
Jason 


SNF documentation can be obtained by starting here: http://www.linux-mandrake.com/en/fdoc.php3. I have had a problem getting into the firewall machine

once it is installed. I can't figure out if telnet needs to be used or what, but I can't connect to the LAN 
with it or from a LAN machine I can't ping the firewall machine. So something is missing in my connection. If you
install and it works please post if you had to do anything like activate an additional package or something. Thanks
Dennis M.





Re: [newbie] SNF 7.2

2002-05-24 Thread Jerry


you might want to try looking for an iso of the doc cd on the mandrake ftp 
site (or a mirror... most likely you'll get better speed on the mirrors 
anyway).  in the initial folder go into the /pub folder and see if you can 
find a reference to SNF.  the directory structure on their ftp site has links 
all over it so it can throw you for a loop as to where you are at times.  if 
you're useing a gui ftp client watch for the folder icons with the arrows.. 
those are links to other folders.  i try not to go those routes because you 
miss sections of the directory tree where your files might be.

hth
jerry.

(ps i'll tool around it a bit and see if i can see)

j
On Friday 24 May 2002 06:51 am, you wrote:
> Hi Guys & Girls,
> I have just downloaded the Mandrake Singal Network Firewall 7.2
> could anyone tell me where I could get some documentation for this
> OS .
> I intend to use it for a Internet Cafe to share the ADSL connection
> and act as a proxy to minimize outgoing bandwidth.
> a poke in the right direction would be appreciated .
> I have looked on the Mandrake site but I could not find anything
> specific to SNF.
> If anyone has any experience (good or bad) with SNF ,that info would
> also be much appreciated.
> cheers and thanks in advance.
> Jason



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



[newbie] SNF 7.2

2002-05-24 Thread Jason Pearce

Hi Guys & Girls,
I have just downloaded the Mandrake Singal Network Firewall 7.2
could anyone tell me where I could get some documentation for this 
OS .
I intend to use it for a Internet Cafe to share the ADSL connection 
and act as a proxy to minimize outgoing bandwidth.
a poke in the right direction would be appreciated .
I have looked on the Mandrake site but I could not find anything 
specific to SNF.
If anyone has any experience (good or bad) with SNF ,that info would 
also be much appreciated.
cheers and thanks in advance.
Jason 



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



RE: [newbie] SNF 7.2 questions.

2002-05-16 Thread Chris Lynch



-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Never mind.  I have finally found the documentation on how to use
routed.  I finally found it on the FreeBSD MAN pages.  If anyone is
interested, you can read it here,
http://www.freebsd.org/cgi/man.cgi?query=routed&sektion=8.

Chris

- -Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Chris Lynch
Sent: Thursday, May 16, 2002 7:11 PM
To: [EMAIL PROTECTED]
Subject: [newbie] SNF 7.2 questions.



- -BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

I have a system that is running the Mandrake SNF 7.2 build, and I
have some specific routing questions.

First off. I have the SNF system placed within the following diagram:

Internet
  | (eth2)
[FW]  (eth0)  --->  [Cisco 2621]  --> [2621]
 |
 [2621]



Now, the problem that I am having is I don't know how to configure
nor use gated or routed.  I asked some other people on another
mailing list, and someone suggested that I use zebra.  Well, I tried
to install zebra with no luck (and, yes, I did remove gated and
routed before trying to install zebra).  I am at the point where I
just want to add static routes, but I don't want to have to add a
route every single time I reboot the firewall.  So, how would I go
about adding static routes a script, or the network script?

Also, how would I go about creating aliased interfaces during
startup?  Does anyone have a better link to the SNF instructions
other than the HTML pages on Mandrakes site?

Thanks,

Chris

- -BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPORmsEr5pFJx+BQ5EQJydgCfT+koWIsRAc3E9+3n55UmgFr1n3YAoJDs
aJb92fH6HMY2e07ZKeoXXPH/
=QU26
- -END PGP SIGNATURE-



-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPOR5rUr5pFJx+BQ5EQLmcQCgijxMVKq1bxjxhCvMiNwplNhqFnIAoMVM
XB8vX/BuHqWvG79HThtKxt5H
=bz9t
-END PGP SIGNATURE-



PGPexch.rtf.asc
Description: Binary data

Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



[newbie] SNF 7.2 questions.

2002-05-16 Thread Chris Lynch
Title: SNF 7.2 questions.






-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

I have a system that is running the Mandrake SNF 7.2 build, and I
have some specific routing questions.

First off. I have the SNF system placed within the following diagram:

Internet
  | (eth2)
[FW]  (eth0)  --->  [Cisco 2621]  --> [2621]
 |
 [2621]



Now, the problem that I am having is I don't know how to configure
nor use gated or routed.  I asked some other people on another
mailing list, and someone suggested that I use zebra.  Well, I tried
to install zebra with no luck (and, yes, I did remove gated and
routed before trying to install zebra).  I am at the point where I
just want to add static routes, but I don't want to have to add a
route every single time I reboot the firewall.  So, how would I go
about adding static routes a script, or the network script?

Also, how would I go about creating aliased interfaces during
startup?  Does anyone have a better link to the SNF instructions
other than the HTML pages on Mandrakes site?

Thanks,

Chris

-BEGIN PGP SIGNATURE-
Version: PGP 7.1
Comment: Public Key Signature for Chris Lynch

iQA/AwUBPORmsEr5pFJx+BQ5EQJydgCfT+koWIsRAc3E9+3n55UmgFr1n3YAoJDs
aJb92fH6HMY2e07ZKeoXXPH/
=QU26
-END PGP SIGNATURE-






PGPexch.rtf.asc
Description: Binary data

Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com