Re: [Leaf-user] Announce keyboard.lrp

2001-11-28 Thread Jacques Nilo
From: "Luis.F.Correia" <[EMAIL PROTECTED]> I tested J.Nilo's keyboard package and I found a small error: in lrcfg, if you go to the keyboard settings, my ae says, could not find /etc/init.d/keyboard. The file is definitely there!!1 So as a sanity check, I edited /var/lib/lrpkg/keyaboard.conf and

Re: [Leaf-user] Dachstein RC2: Not loading all packages.

2001-11-28 Thread Simon Bolduc
Hey Jason, I think you may be encountering the 255 character limit in syslinux.cfg - if the last line is longer than 255 characters (or possibly all the characters in the file - someone will probably correct me) the remaining characters get truncated. That's the bad news - the good news is th

RE: [Leaf-user] development versions of oxygen.

2001-11-28 Thread David Douthitt
On 11/29/01 at 12:37 AM, Ryan P. Matijcio <[EMAIL PROTECTED]> wrote: > That's what I ended up doing, downloading > oxygen-090601.ima. However I can't seem to get it to > boot. Do the development versions support IDE drives? I thought they did. Look for a line from the Linux kernel detailing i

RE: [Leaf-user] development versions of oxygen.

2001-11-28 Thread Hilton Travis
Hi David, > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED]]On Behalf Of David > Douthitt > Sent: Thursday, 29 November 2001 15:21 > > On 11/28/01 at 1:21 PM, Ryan P. Matijcio <[EMAIL PROTECTED]> > wrote: > > > I am trying to find a disk image of the development

Re: [Leaf-user] development versions of oxygen.

2001-11-28 Thread David Douthitt
On 11/28/01 at 1:21 PM, Ryan P. Matijcio <[EMAIL PROTECTED]> wrote: > I am trying to find a disk image of the development > version of oxygen that has glibc 2.1.3. can anyone > recommend a development disk image I should try? They all have glibc 2.1.3. Use the most recent. I'm working on up

[Leaf-user] How not to log a deny'ed packet/ip address

2001-11-28 Thread guitarlynn
I've got a rogue 10.x.x.x/32 server polling my Dachstein firewall twice every 16 seconds for a dhcp server and a port 80 scan every 2 minutes. I can't find any info in the archives and sites about "dropping" (not logging) these packets when they are deny'ed. The packets (webtrash) I am looking to

Re: [Leaf-user] Loading Net Drivers and packages in DS 1.0.1

2001-11-28 Thread Greg Morgan
Bob Smith wrote: > Thank Greg, > > But that didn't help. I knew about lsmod, my problem was that ifconfig was > missing. I have since found ifconfig.lrp. > > I had been doing a partial backup of modules.lrp. I tried a full backup, and > now the drivers are attempting to load, but I still get t

Re: [Leaf-user] dachstein rooted

2001-11-28 Thread guitarlynn
On Wednesday 28 November 2001 04:05, you wrote: > > I am assuming the box has been cracked, > > Why? Because two log files are empty? > Do you have a strong password for root? > Are you using DF's standard ipchains rules? > If the answers are yes, I'm not convinced. > It's not called Dachstein "

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread C. Dummy
Can net ifdown all be rewritten that stops eth0 also? If I run above it stops only eth1 If I run net ifdown eth0 doesn't do anything Andrey Charles Steinkuehler wrote: > > What about copying > > ifdown > > to floppy and trying to use it. Where I could download > > ifdown > > compatible with Da

[Leaf-user] Dachstein RC2: Not loading all packages.

2001-11-28 Thread Jason C. Leach
hi, I have run into a bit of trouble with the Dachstein RC2 release. It does not load my last two packages. It's not failing, it's more like it does not read the last two packages from the config file. I am loading: LRP=etc,ramlog,local,modules,seawall,dhcpd,dnscache,mawk,ifconfig,ipsec,sshd-1

[Leaf-user] broadcasts on internal net

2001-11-28 Thread LaRoy McCann
I am using the E2B distribution with the scripts for DMZ (version 1.0 I think, I know it was not the latest ver (1.1?). I was running tcpdump on a red-hat box on the internal network (eth1 192.168.1) and I noticed some broadcast packets from my service providers network (eth0 12.29.11). Looki

Re: [Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Patrick Benson
[EMAIL PROTECTED] wrote: > > Now that I think about it and review notes, my problem, > similar to Troy's, that is a very long connect time, > was with SSH and not FTP. Someone on the LRP > list told me this was a reverse dns problem. > I passed the info, about nsswitch on to two other > new

Re: [Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Ray Olszewski
A "very long connect time" for *any* service can be caused by many things. A reverse-lookup failure is the most common of them. For it, "very long" usually equates to about 3 minutes. If your own probleme goes back to when I was still on the LRP list, I may even have been the person who told you t

RE: [Leaf-user] Announce keyboard.lrp

2001-11-28 Thread Luis.F.Correia
I tested J.Nilo's keyboard package and I found a small error: in lrcfg, if you go to the keyboard settings, my ae says, could not find /etc/init.d/keyboard. The file is definitely there!!1 So as a sanity check, I edited /var/lib/lrpkg/keyaboard.conf and replaced the spaces for a TAB in the first

Re: [Leaf-user] Firewall is hindering ftp.

2001-11-28 Thread Scott C. Best
Troy: Hello! I agree with Ray: my advice on the fwlog processor is incorrect. Okay, misleading. :) The parser on the processor is very much like how ipchains works: it checks the packet against a chain of rules, and the first one that matches is applied. Your ident packet log wasn't recogn

Re: [Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Phillip . Watts
Now that I think about it and review notes, my problem, similar to Troy's, that is a very long connect time, was with SSH and not FTP. Someone on the LRP list told me this was a reverse dns problem. I passed the info, about nsswitch on to two other newbies like me, for whom this "solved"

[Leaf-user] development versions of oxygen.

2001-11-28 Thread Ryan P. Matijcio
  I am trying to find a disk image of the development version of oxygen that has glibc 2.1.3.  can anyone recommend a development disk image I should try?    http://leaf.sourceforge.net/pub/oxygen/development/   thx.    

RE: [Leaf-user] Dhclient Release

2001-11-28 Thread Richard Doyle
Debian potato stores network configuration information in /etc/network/interfaces for use with compiled ifup and ifdown programs. -Richard > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED]]On > Behalf Of Charles Steinkuehler > Sent: Wednesday, November 28, 2001 6

Re: [Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Ray Olszewski
Just to avoid the spread of misinformation ... ident and reverse DNS have NOTHING to do with each other. They are two different ways of verifying (or trying to) that a connecting host is what it says it is. Making the changes that Phillip suggests will not address Troy's problem. As to the propos

[Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Phillip . Watts
Oh, by the way, Dachstein is 2.2.19 right? Did you happen to move to that from 2.2.16 and if so did you have any significant script changes? ___ Leaf-user mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user

[Leaf-user] Re: [LRP] Firewall is hindering ftp.

2001-11-28 Thread Phillip . Watts
I didn't understand any of that, but here is what I found. I was unable to get ftp working thru the router without the ports above 1024 open. As far as a slow connection, it seems reverse dns was causing this. Port 113, auth, has something do with reverse dns. Removing the dns entry in /e

Re: [Leaf-user] Firewall is hindering ftp.

2001-11-28 Thread Tom Eastep
On Wednesday 28 November 2001 08:22 am, Troy Aden wrote: > When I attempt to ftp our server (192.139.75.6) it was taking up to > 30 sec to connect. (It should take 2 sec) I turned on logging and this is > the output. > > Nov 27 22:12:12 firewall kernel: Packet log: remote DENY eth0 PROTO=6 > 192.1

Re: [Leaf-user] Firewall is hindering ftp.

2001-11-28 Thread Ray Olszewski
Well ... assuming you are correct that this DENY is associated with the ftp attempt ... your ftp server, or some related application (like tcp wrappers) on the system it is running on (192.139.75.6), is sending an ident query to the client (192.139.75.156 in the log entry you posted) you are tryin

Re: [Leaf-user] How to back up configuration to a floppy. (Dachstein CD with boot able floppy)

2001-11-28 Thread Charles Steinkuehler
> Can someone please show me an example of the syntax for backing up > everything except log to a floppy. If I am shown an example it would be very > helpful. I am using the Dachstien CD and trying to backup my configuration. > I keep getting unexpected end of file errors. Hmm...please list exact

Re: [Leaf-user] Firewall is hindering ftp.

2001-11-28 Thread Charles Steinkuehler
> When I attempt to ftp our server (192.139.75.6) it was taking up to > 30 sec to connect. (It should take 2 sec) I turned on logging and this is > the output. > > Nov 27 22:12:12 firewall kernel: Packet log: remote DENY eth0 PROTO=6 > 192.139.75.6:1083 192.139.75.156:113 L=60 S=0x00 I=19689 F=0x4

[Leaf-user] How to back up configuration to a floppy. (Dachstein CD with bootable floppy)

2001-11-28 Thread Troy Aden
Can someone please show me an example of the syntax for backing up everything except log to a floppy. If I am shown an example it would be very helpful. I am using the Dachstien CD and trying to backup my configuration. I keep getting unexpected end of file errors. Thanks.

[Leaf-user] Firewall is hindering ftp.

2001-11-28 Thread Troy Aden
When I attempt to ftp our server (192.139.75.6) it was taking up to 30 sec to connect. (It should take 2 sec) I turned on logging and this is the output. Nov 27 22:12:12 firewall kernel: Packet log: remote DENY eth0 PROTO=6 192.139.75.6:1083 192.139.75.156:113 L=60 S=0x00 I=19689 F=0x4000

Re: [Leaf-user] Multiple Internal Interfaces on E2B?

2001-11-28 Thread Charles Steinkuehler
> I have specified the additional interface configurations (xxx_IPADDR > etc) and they are brought up happily and are pingable from the attached > networks when the box boots. > > But specifically, how should I set the following vars: > > INTERN_IF > INTERN_NET > INTERN_IP > > to cover two p

[Leaf-user] Multiple Internal Interfaces on E2B?

2001-11-28 Thread Matt Brennan
Thanks to Charles, Jacques and all for recent answers on going from e2b to Dachstein rc2. I have decided to stick with e2b for now until I can test things like axfrdns on the eventual final dachstein floppy. In the interim, I wanted to add a second internal network and DMZ to an existing E2B b

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread Simon Bolduc
As I said earlier - I don't think dhclient 2.x has a release feature - it doesn't support dhclient -r (for releasing a lease) that is present in 3.x >From: "Charles Steinkuehler" <[EMAIL PROTECTED]> >To: "C. Dummy" <[EMAIL PROTECTED]>, "Victor McAllisteer" ><[EMAIL PROTECTED]>,"Leaf-Us

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread Charles Steinkuehler
> What about copying > ifdown > to floppy and trying to use it. Where I could download > ifdown > compatible with Dachstein? AFAIK, ifdown is just a script that calls other init scripts to bring down an interface (similar to doing "net ifdown eth0). Since the init scritps cannot currently releas

Re: [Leaf-user] [n00b] Mad packet loss on Dachstein Firewall

2001-11-28 Thread Peter Nosko
--- Matt Schalit <[EMAIL PROTECTED]> wrote: > Christopher Fowler wrote: > > > > OK, so I've got my dachstein firewall up and running (hooray!), no DHCP > > since I already have a Windows 2000 Domain controller handling such duties, > > and the DSL is business DSL so the external IP is assigned. N

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread C. Dummy
What about copying ifdown to floppy and trying to use it. Where I could download ifdown compatible with Dachstein? Andrey Charles Steinkuehler wrote: > > I tried > > net ifdown all > > that stops only eth1 > > and doesn't release lease from eth0 > > I tried also > > svi network stop > > this a

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread Charles Steinkuehler
> I tried > net ifdown all > that stops only eth1 > and doesn't release lease from eth0 > I tried also > svi network stop > this also didn't release lease from eth0. > All this trouble comes with new modem @Rogers. It doesn't reset on power off. In > windows you have to actually use winipcfg.exe

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread C. Dummy
I tried net ifdown all that stops only eth1 and doesn't release lease from eth0 I tried also svi network stop this also didn't release lease from eth0. All this trouble comes with new modem @Rogers. It doesn't reset on power off. In windows you have to actually use winipcfg.exe and relese all(r

[Leaf-user] Loading Net Drivers and packages in DS 1.0.1

2001-11-28 Thread Bob Smith
Thank Greg, But that didn't help. I knew about lsmod, my problem was that ifconfig was missing. I have since found ifconfig.lrp. I had been doing a partial backup of modules.lrp. I tried a full backup, and now the drivers are attempting to load, but I still get the insmod errors: INSMOD: not a

Re: [Leaf-user] Default editor for lrcfg in Dachstein-CD 1.0.1

2001-11-28 Thread Ewald Wasscher
Stephen Lee wrote: >Hi, >How do I change the default editor to vi in DS-CD 1.0.1? > Add the line below to /etc/profile (choose 2 then 5 in the lrcfg menu) and then login again. export EDITOR="e3vi" Ewald Wasscher ___ Leaf-user mailing list [EMAIL

Re: [Leaf-user] dachstein rooted

2001-11-28 Thread Matt Schalit
guitarlynn wrote: > > I put a dachsrein beta firewall up last week at the house, it works > great. My wife got into an apparent ongoing battle in which > several people in a yahoo chat room were hit with a buffer over- > flow (affecting windows client) in the chat program. The room > was actuall

Re: [Leaf-user] Dhclient Release

2001-11-28 Thread Victor McAllisteer
"C. Dummy" wrote: > Sorry but I'm linux newbie. > Where I can get file > ifdown > that would work with Dachstein. I need this file to release ip from nic on lrp > box. > Andrey > The network script will bring up or down any network card: # svi network Usage: network start|stop|reload n

Re: [Leaf-user] [n00b] Mad packet loss on Dachstein Firewall

2001-11-28 Thread Matt Schalit
Christopher Fowler wrote: > > OK, so I've got my dachstein firewall up and running (hooray!), no DHCP > since I already have a Windows 2000 Domain controller handling such duties, > and the DSL is business DSL so the external IP is assigned. NOW, my problem > is that when I try to ping the firewa