Re: [leaf-user] separate mail routing on two LANs on shared ISP Link

2003-06-29 Thread Lynn Avants
On Sunday 29 June 2003 06:28 pm, Nyawallow James wrote: > Hi Steve, > I am actually running the setup below (on LAN# 1) on Dachstein Kernel > 2.2.19 based disk image v 1.0.2 and would definitely prefer to continue > with it but would not mind using a different leaf image if advisable. The > issues

Re: [leaf-user] Re: Some questions about leaf PPPoE

2003-06-29 Thread Lynn Avants
On Sunday 29 June 2003 11:05 pm, PAGE,RAYMOND wrote: > Not all of this may be 100% accurate, but is to the best of my > current knowledge. Understood. > A bridge is merely a router with one to one connections (as > opposed to a star). The modem is able to turn off it's DHCP, DNS, > and NAT abili

Re: [leaf-user] Re: Some questions about leaf PPPoE

2003-06-29 Thread Lynn Avants
On Sunday 29 June 2003 10:00 pm, PAGE,RAYMOND wrote: > Turns out that I hadn't saved my pap.secrets file. Updated it, > but didn't back it up to disk. So I now have internet > connectivity and can ping the internet, yeah :)I was curious > if I still require pump, ie. what does pump handle so

Re: [leaf-user] Re: Some questions about leaf PPPoE

2003-06-29 Thread PAGE,RAYMOND
Turns out that I hadn't saved my pap.secrets file. Updated it, but didn't back it up to disk. So I now have internet connectivity and can ping the internet, yeah :)I was curious if I still require pump, ie. what does pump handle so that I might be able to get rid of it? Fifth bullet or s

Re: [leaf-user] separate mail routing on two LANs on shared ISP Link

2003-06-29 Thread Nyawallow James
Hi Steve, I am actually running the setup below (on LAN# 1) on Dachstein Kernel 2.2.19 based disk image v 1.0.2 and would definitely prefer to continue with it but would not mind using a different leaf image if advisable. The issues I raised were because I noticed (if am right) that on Dachstein, I

[leaf-user] Vlan Acces link (vlan.lrp + bridge.lrp

2003-06-29 Thread Jose Luis Abuelo Sebio
Hi everyone, I am trying to set a vlan but using vlan-unaware machines ( PC1, PC2,PC3 and PC4 as you can see in the picture). Here the bridge is the one to do the tagging of the frames and untag them to send them to the correct machine (Because the vlan-unaware machines dont tag their frames, a

Re: [leaf-user] Because the list auto-rejects emails with attachments....here's my configs for everyone inline

2003-06-29 Thread eric wolzak
Yes suppose that WWWRaymond is you login and PAGESecret is your password than you have to have in your pppoe option file a name "WWWRaymond" or user "WWWRaymond" and in your pap-secrets file "WWWRaymond" * "PAGESecret" put those in quotes if you have any special characters in them -Ursp

[leaf-user] hostap for Bering : does it work ?

2003-06-29 Thread Francois BERGERET
Hi everybody, Is somebody using hostap with Bering ? I am using Bering V1.1, running in a Soekris net4521. I have tempted to use pcmcia_hostap.lrp form our friend Jacques, but without success :-( Introduction of Prism2 cards are detected, but a Kernel Panic occurs at PCMCIA inserting. I have r

RE: [leaf-user] DNS lookups in shorewall rules fail at boot.

2003-06-29 Thread Tom Eastep
On Sun, 2003-06-29 at 08:17, James Neave wrote: > Aha, > > didn't see that bit... > > OK. > > Anything I can do about it? This is way beyond my meager problem solving > skills... I suspect that Shorewall is starting before dnscache so you will need to reverse their startup order. The means for

Re: [leaf-user] DNS lookups in shorewall rules fail at boot.

2003-06-29 Thread Tom Eastep
On Sun, 2003-06-29 at 07:48, Tom Eastep wrote: > > > > The shorewall guides don't say anything about putting DNS entries in the > > rules file, appart from that you can. > > See http://www.shorewall.net/configuration_file_basics.#dnsnames Er -- make that http://www.shorewall.net/configuration_

Re: [leaf-user] DNS lookups in shorewall rules fail at boot.

2003-06-29 Thread Tom Eastep
On Sun, 2003-06-29 at 02:45, James Neave wrote: > Hi, > > I open holes in the firewall from specific IP addresses to allow access > to my pptp server. > > ACCEPT net:X.X.X.X fw tcp 1723 > ACCRPT net:X.X.X.X fw 47 > > and for my friends with dynamic IPs, they have dynamic DNS entrie

[leaf-user] separate mail routing on two LANs on shared ISP Link

2003-06-29 Thread Nyawallow James
Hi all, I have the setup below which I would like to use leaf for 'firewalling' the two LANs while enabling smtp/pop3 and http for both LANs separately! my questions are: a.Is this possible using leaf? b.Do I need to change the setup below? say two external nics and two internal nics? or two extern

[leaf-user] Because the list auto-rejects emails with attachments....here's my configs for everyone inline

2003-06-29 Thread PAGE,RAYMOND
Eric, I'm not sure if this is what you were conveying, but do you think that I have a incorrect login/password in my pap/chap.secrets? Thanks for all the input, this helps a lot. firewall: -root- # uname -a Linux firewall 2.4.20 #1 Sun May 11 18:53:34 CEST 2003 i586 unknown firewall: -root- #

Re: [leaf-user] Re: Some questions about leaf PPPoE

2003-06-29 Thread eric wolzak
Hello Raymond, Lynn list Hello Lynn, Raymond, I don't think the modem is a router, the internal "modem" addres is probably only for maintainance btw, be carefull, that this is a "private" ip and might be blocked by shorewall, if you try to do maintainance. So if it is internal network --> LEAF -

Re: [leaf-user] UDP Port 1191

2003-06-29 Thread Patrick Benson
Jim Hubbard wrote: > > Is this the script kiddie port du jour just for me or has anyone > else been getting a whole buttload of hits on udp1191? Starting > to look like a virus there's so much traffic from so many hosts. > > Sincerely, > Jim Hubbard You might want to consider visiting Dshield h

[leaf-user] DNS lookups in shorewall rules fail at boot.

2003-06-29 Thread James Neave
Hi, I open holes in the firewall from specific IP addresses to allow access to my pptp server. ACCEPT net:X.X.X.X fw tcp 1723 ACCRPT net:X.X.X.X fw 47 and for my friends with dynamic IPs, they have dynamic DNS entries. ACCEPT net:MyIP.No-IP.Org fw tcp 1723 ACCEPT net:MyIP.N