[leaf-user] copy Bering floppy to CF card

2005-12-11 Thread Chera Bekker
Hello List, Right now I am running a Bering uclib firewall from a floppy. I am thinking of buying an IDE CF reader to boot the firewall from a CF card. What would be the easiest way to copy the contents of my current Bering floppy to a CF card which is mounted as /dev/hda1 and to make the CF

Re: [leaf-user] DNAT rule

2005-12-11 Thread Eric Spakman
Hello Marko, >> host computername{ hardware ethernet 00:00:00:00:00:00; fixed-address >> 192.168.x.x; >> } >> >> >> Don't forget to change the relevant variables to suit your network >> first. >> >> > What is the difference between that and putting the line > "dhcp-host=00:50:BF:xx:xx:xx,hannibal,

[leaf-user] Lots of port probes.

2005-12-11 Thread Jim Ford
I'm seeing lots of probes, mainly UDP, targetting ports 1025 to 1032 on my firewall. I've had a look at grc.com (very informative) and it seems that these ports are targetted by trojans. Is what I'm seeing an attempt to see if a trojan has opened any of these ports? Wish I could understand what

Re: [leaf-user] Lots of port probes.

2005-12-11 Thread Tom Eastep
On Sunday 11 December 2005 06:56, Jim Ford wrote: > I'm seeing lots of probes, mainly UDP, targetting ports 1025 to 1032 on my > firewall. I've had a look at grc.com (very informative) and it seems that > these ports are targetted by trojans. Is what I'm seeing an attempt to see > if a trojan has o

Re: [leaf-user] RE: Bering uClibc Package Updates

2005-12-11 Thread Eric Spakman
Hi Paul, > Has anyone looked at the Debian ucf package? If not, they should. I > think it could be easily modified to work in a leaf package environment as > an extension to lrcfg. > I took a quick look, but I'm not sure if if can be easely modified (at least not by me :)) It heavely depends on

Re: [leaf-user] copy Bering floppy to CF card

2005-12-11 Thread Eric Spakman
Hello Chera, The easiest way is to use initrd_ide.lrp (with ide boot modules) from: http://leaf.sourceforge.net/bering-uclibc/index.php?module=pagemaster&PAGE_user_op=view_page&PAGE_id=3&MMN_position=3:3 if you are using Bering-uClibc 2.3.x If you are using Bering-uClibc 2.2.x, you can find initrd

[leaf-user] syslog message: firewall kernel: ip_conntrack: table full, dropping packet.

2005-12-11 Thread Chera Bekker
Hello List, I have noticed that when running a p2p client behind my Bering firewall my syslog gets flooded with the message: |firewall kernel: ip_conntrack: table full, dropping packet.| || Allmost all entries in /proc/net/ip_conntrack pointed to the internal machine running the client. |I

Re: [leaf-user] syslog message: firewall kernel: ip_conntrack: table full, dropping packet.

2005-12-11 Thread Eric Spakman
Hello Chera, There is some information about this setting in the following Bering-uClibc guide and the links section in this guide. http://leaf.sourceforge.net/doc/guide/bucu-conntrack.html Eric > Hello List, > > > I have noticed that when running a p2p client behind my Bering firewall > my sys