Has anyone seen this article on Kuro5hin? It's an interesting read.
http://www.kuro5hin.org/story/2002/11/23/14927/477
Guide to OpenBSD Packet Filtering Firewalls (Internet)
Sat Nov 23rd, 2002 at 10:29:52 PM EST
by Roger E. Rustad, Jr.
-
> -Original Message-
> From: Alby [mailto:alby@;empire.org]
> Sent: Thursday, November 07, 2002 3:37 PM
> To: [EMAIL PROTECTED]
> Subject: [leaf-user] NTP Server (.lrp)
>
>
> Where can I get a NTP Server module for Bering rc4?
>
See the third bullet item:
http://leaf.sourceforge.
> -Original Message-
> From: Timothy J. Massey [mailto:modernmerchant@;yahoo.com]
> Sent: Thursday, November 07, 2002 11:40 AM
> Subject: RE: [leaf-user] Unable to serve "large" files (Dachstein 1.0.2)
> Anyway, I am not physically in front of the firewall,
> and I don't have SSH on that
people haven't. I found nothing in the Bering installation
or users guides about enabling this option if you are running dhcpd.
Perhaps someone can add it in the next revision.
George Luft
Trumbull, CT
---
This sf.net email is sponsored
Backup the etc package.
> -Original Message-
> From: Troy Aden [mailto:Troy.Aden@;WaveCom.CA]
> Sent: Tuesday, November 05, 2002 2:35 PM
> To: 'Godfried Duodu'; [EMAIL PROTECTED]
> Subject: RE: [leaf-user] Root Password
>
>
> Type "passwd" in the command prompt. (Follow the prompts
It looks like I need to add the dhcp option to eth1 in my Bering rc4? I was
running the dhcpd package on my pppoe adsl connection. DHCP
ACKs from the server to internal clients were being dropped--yet the DHCP
clients were able to release and renew addresses just fine. It's just that
these messa
> -Original Message-
> From: Jacques Nilo [mailto:jnilo@;users.sourceforge.net]
> Sent: Thursday, October 24, 2002 2:44 PM
> To: Craig; LEAF
> Subject: Re: [leaf-user] English version of
> Bering_1.0-rc4_img_bering_1680.exe???
>
>
> Le Jeudi 24 Octobre 2002 20:06, Craig a ecrit :
> > Hi f
shorewall.net]
> Sent: Monday, October 28, 2002 9:23 PM
> To: George Luft
> Cc: [EMAIL PROTECTED]; Jacques Nilo
> Subject: Re: [leaf-user] error backing up shorewall (rc4)
>
>
>
>
> George Luft wrote:
>
> >
> >>>The fix is to replace
> >>&
> -Original Message-
> From: Brad Fritz [mailto:brad@;fritzfam.com]
> Sent: Thursday, October 31, 2002 8:12 PM
> To: George Luft
> Cc: [EMAIL PROTECTED]
> Subject: submitting a FAQ answer (was: change Bering default
> IP address)
>
>
>
> On Thu, 3
> -Original Message-
> From: Brad Fritz [mailto:brad@;fritzfam.com]
> Sent: Thursday, October 31, 2002 8:12 PM
> To: George Luft
> Cc: [EMAIL PROTECTED]
> Subject: submitting a FAQ answer (was: change Bering default
> IP address)
>
>
>
> On Thu, 3
shorewall.net]
> Sent: Monday, October 28, 2002 9:23 PM
> To: George Luft
> Cc: [EMAIL PROTECTED]; Jacques Nilo
> Subject: Re: [leaf-user] error backing up shorewall (rc4)
>
>
>
>
> George Luft wrote:
>
> >
> >>>The fix is to replace
> >>&
> -Original Message-
> From: David Blood [mailto:david@;matraex.com]
> Sent: Thursday, October 31, 2002 5:19 PM
> To: [EMAIL PROTECTED]
> Subject: [leaf-user] timezone
>
>
> How do I change the time zone? Leaf Bering rc3
>
http://leaf.sourceforge.net/devel/jnilo/butime.html
or more sp
I've done this enough times that I thought I'd write it up. I'm surprised
it's not in the FAQ (or at least I couldn't find it). If there's a better
way to turn this into a FAQ item, please let me know.
George
Eight easy steps to change the default IP address of a Bering firewall:
(using
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:leaf@;gualeguaychu.gov.ar]
> Sent: Thursday, October 31, 2002 7:22 AM
> To: [EMAIL PROTECTED]
> Subject: [leaf-user] samba lrp package
>
>
> Hi
>
> Where can I download the samba lrp package?
>
> thanks
> roberto
>
See forwarded
er is. ;-)
George Luft
Trumbull, CT
From: [EMAIL PROTECTED] (Mary Mack)
Subject: the prefect router
Date: 1999/08/29
Message-ID: <[EMAIL PROTECTED]>
Content-Transfer-Encoding: 8bit
Content-Type: text/plain; charset=ISO-8859-1
X-Trace: news.uswest.net 935900125 216.161.87.53 (Sat, 28 Aug 1999 2
>> -Original Message-
>> From: Tom Eastep [mailto:teastep@;shorewall.net]
>> Sent: Monday, October 28, 2002 10:17 AM
>> To: George Luft
>> Cc: [EMAIL PROTECTED]
>> Subject: Re: [leaf-user] error backing up shorewall (rc4)
>>
>>
>>
; -Original Message-
> From: Tom Eastep [mailto:teastep@;shorewall.net]
> Sent: Monday, October 28, 2002 10:17 AM
> To: George Luft
> Cc: [EMAIL PROTECTED]
> Subject: Re: [leaf-user] error backing up shorewall (rc4)
>
>
>
>
> George Luft wrote:
> > I th
/pipermai
The fix is to replace
var/lib/shorewall
by
var/lib/shorewall/ (notice the / at the end)
in /var/lib/lrpkg/shorwall.list
> -Original Message-
> From: George Luft [mailto:GLuft@;clayton.com]
> Sent: Monday, October 28, 2002 9:30 AM
> To: [EMAIL PROTECTED]
>
rror exit delayed from previous errors
This was a clean rc4 install to replace my Dachstein. Otherwise it went
rather smoothly.
Are these two separate issues?
George Luft
Trumbull, CT
Many thanks to Jacques and Eric, Father Stein--and all the folks
Dumb question: can I run the UML environment from an SSH session, or will I
completely hang everything up?
I've followed the instructions in
http://leaf.sourceforge.net/devel/jnilo/uml.html, but do I need to execute
'./linuxuml-2.4.18-45 ubd0=root_fs_slink' from an actual console? The
instructio
No, none. iptraf comes with trinux. Is that the small distro that you plan
to use? Don't know about ipmeter.
> -Original Message-
> From: Todd MacDougall [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, August 27, 2002 10:24 AM
> To: George Luft
> Cc: Brad Frit
IPAUDIT is a great tool--especially for finding those bandwidth hogs. But I
would run it on a separate box.
> -Original Message-
> From: Todd MacDougall [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, August 27, 2002 9:25 AM
> To: Brad Fritz
> Cc: Mark Ivey; [EMAIL PROTECTED]
> Subject: Re:
> -Original Message-
> From: vivek varshney
> Sent: Wednesday, August 14, 2002 2:42 PM
> To: [EMAIL PROTECTED]
> Subject: [leaf-user] Port Forwarding Documentation
>
>
> I would to know if there is set of complete
> documentation on Port Sharing using LEAF (I am using
> Bering v0.5 of L
This is Lynn's HOWTO:
http://leaf.sourceforge.net/devel/guitarlynn/ipsec.txt
> -Original Message-
> From: Chad Carr [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, July 09, 2002 10:49 AM
> To: [EMAIL PROTECTED]
> Cc: [EMAIL PROTECTED]
> Subject: Re: [leaf-user] IPSEC Howto for LRP
>
>
> On
Here's an article I ran across (from a link in this mailing list, I
believe). It references duckling and LRP.
http://www.linuxjournal.com/article.php?sid=4772
And also another from seawall: http://seawall.sourceforge.net/IPSEC.html
or more recently, shorewall:
http://www.shorewall.net/IPSEC.ht
Thank you Jacques and Jeff. As usual, it's in the documentation.
Sometimes the hard part is remembering to look in the places you've already
been.
Kinda like trying to find your car keys or sunglasses. :-)
___
Multimillion Doll
According to the instructions contained within /etc/network/interfaces, I am
supposed to "uncomment/adjust one of the following 4 options." I am running
a pppoe DSL connection, and I have *both* options 1.1 and 1.3 un-commented.
Is 1.1 unnecessary?
I guess I could try it and see what happens if
I wish you well in this endeavor, Richard. I am trying to do basically the
same thing. I want to use static DSL as a backup to a T-1 (mainly to
maintain connectivity to/from our mail server), and I keep bumping into the
issue of the default gateway.
I think we'll end up using a script to test c
> -Original Message-
> From: Sergio Morilla [mailto:[EMAIL PROTECTED]]
> Sent: Monday, June 10, 2002 2:39 PM
> To: Leaf-user@lists. sourceforge. net (E-mail)
> Subject: [leaf-user] OT: stripping path on filename
>
> I'm sure there must be an easy way to strip the path from
> a filename (as
I am running Bering and connecting to it via SSH using puTTY as my
client--from the outside. Everything works fine but in my syslog, exactly
every minute, I get a packet dropped and logged on port 20041 from my client
IP. I've poked around on the web and found some vague references to SSH, so
I'
have since printed up the Shorewall 1.3 docs and I'm reading up on
those Interfaces options.
> -Original Message-
> From: Tom Eastep [mailto:[EMAIL PROTECTED]]
> Sent: Friday, June 07, 2002 9:59 AM
> To: George Luft
> Cc: [EMAIL PROTECTED]
> Subject: Re: [leaf
Following the instructions in
http://leaf.sourceforge.net/devel/jnilo/bupppoe.html#AEN343
I added the net/ppp0/- line to the Interfaces file and commented out the
eth0 line. Should I have left eth0 in? Do I need the dhcp, routefilter,
and norfc1918 options added to the ppp0 line?
#ZONE INTER
Rob, I cannot offer much help on this subject just yet, but I will be
following it with interest as I am trying to accomplish nearly the same
thing: using a DSL connection as backup to our T-1--mostly for SMTP.
Inbound connections seem to work fine, but the default route for outbound
connections h
, but I'm also
wondering why I'm having such a hard time finding it.
> -Original Message-
> From: Charles Steinkuehler [mailto:[EMAIL PROTECTED]]
> Sent: Monday, June 03, 2002 4:33 PM
> To: George Luft; [EMAIL PROTECTED]
> Subject: Re: [leaf-user] svi documentati
Is the svi shell script documented anywhere?
It seems rather elegantly and concisely written, but not being expert in
ash, I am having a hard time following it. I tried searching the web and
newsgroups with no luck.
Can anybody point me in the right direction?
___
> > Perhaps this question has been answered before--if so, sorry.
> >
> > What happens when two .LRP packages contain the same file,
> like ppp and
> > pppoe? Both contain /etc/pap-secrets. Does the package
> that gets loaded
> > last simply overwrite the existing file?
>
> When loading, yes.
Perhaps this question has been answered before--if so, sorry.
What happens when two .LRP packages contain the same file, like ppp and
pppoe? Both contain /etc/pap-secrets. Does the package that gets loaded
last simply overwrite the existing file?
Thanks,
George Luft
Sorry for the impertinence. I have been following the list for some time
now, but my mail server (I'll leave you to guess which one) has not been
sending uuencode mail. I am trying to reconfigure it to behave better so I
can post to this list.
George
___
38 matches
Mail list logo