Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-06 Thread Charles Steinkuehler
> from the man page > > UsePrivilegedPort > Specifies whether to use a privileged port for outgoing connecĀ­ > tions. The argument must be ``yes'' or ``no''. The default is > ``no''. ^^ So if the default is no, Scott, and ssh defaults to usi

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-06 Thread Matt Schalit
Charles Steinkuehler wrote: > from the man page > > UsePrivilegedPort > Specifies whether to use a privileged port for outgoing connecĀ­ > tions. The argument must be ``yes'' or ``no''. The default is > ``no''. ^^ So if the default is no,

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-05 Thread Matt Schalit
Charles Steinkuehler wrote: > When you run ssh on a *nix box, it will default to using a "low" port to > make the connection unless you specify a command line switch (which is > different for ssh, scp, and varies from one ssh implementation to anoteher). I just found this on the openssh faq:

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-05 Thread Michael D. Schleif
Matt Schalit wrote: > > Charles Steinkuehler wrote: > > > When you run ssh on a *nix box, it will default to using a "low" port to > > make the connection unless you specify a command line switch (which is > > different for ssh, scp, and varies from one ssh implementation to anoteher). > > I t

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-05 Thread Matt Schalit
Charles Steinkuehler wrote: > When you run ssh on a *nix box, it will default to using a "low" port to > make the connection unless you specify a command line switch (which is > different for ssh, scp, and varies from one ssh implementation to anoteher). I tried this on every system I could f

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Matt Schalit
Scott C. Best wrote: > Matt: > Heya. Thanks for the candid feedback. Some replies > to you inline, with gratuitous clipping: > > >> Let me first say that I like echowall and what you've done with. >>I've said that before and recommended it to others even though I've >>authored my own pfw

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Matt Schalit
Charles Steinkuehler wrote: [snip] > When you run ssh on a *nix box, it will default to using a "low" port to > make the connection unless you specify a command line switch Aha. I didn't realize that as I never run ssh from the firewall to anywhere. I always use an internal machine whose tra

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Scott C. Best
Matt: Heya. Thanks for the candid feedback. Some replies to you inline, with gratuitous clipping: >Let me first say that I like echowall and what you've done with. > I've said that before and recommended it to others even though I've > authored my own pfw. Yours is better, more capab

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Michael Leone
On Mon, 2002-03-04 at 18:32, Matt Schalit wrote: > > > EchoWall Firewall Package for LEAF/LRP > > Version 1.40 > > 06 Jan 2002 > > > > > > EchoWall is a firewall configuration package, meant for > > LEAF/LRP Linux (kernel 2.2.x) systems acting as IP-masquerading >

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Charles Steinkuehler
I'm not that familiar with Echowall, but I can help with the ssh bit: >In addition, I don't see the wisdom in this: > > # -- For SSH'ing out from firewall, allow responses from SSH servers. > # -- Configure firewall's SSH client to use 823 to 1023 port range. > $IPCHAINS -A input -s 0/0 22 -d

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Matt Schalit
Scott C. Best wrote: > Lonnie: > > You can best find echoWall on freshmeat.net. The blurb > there is fairly accurate. :) > > http://freshmeat.net/projects/echowall/ > > cheers, > Scott Scott! Let me first say that I like echowall and what you've done with. I've said that before and

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Lonnie Cumberland
Sorry for the dumb question Scott, but is Echowall an LRP package that is either added to, or already on, the Dachstein CDROM? Or, is a a complete seperate LRP Firewall distro? I guess that I have not been keeping up much since I have been using the Eigerstein LRP version which was very easy t o

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Scott C. Best
Lonnie: You can best find echoWall on freshmeat.net. The blurb there is fairly accurate. :) http://freshmeat.net/projects/echowall/ cheers, Scott On Mon, 4 Mar 2002, Lonnie Cumberland wrote: > Thanks Scott, > > I think that I will now proceed to upgrade my old EigerStein LRP to > the

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Lonnie Cumberland
Thanks Scott, I think that I will now proceed to upgrade my old EigerStein LRP to the newer Dachstein one. Could you please tell me about this "EchoWall"? Thandk again for being a REAL help. cheers, Lonnie > Lonnie, Boyd: > > Ah, serendipity. :) One email, two answers... > > To get

Re: [Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-04 Thread Scott C. Best
Lonnie, Boyd: Ah, serendipity. :) One email, two answers... To get a PPTP-based VPN client working from behind a LEAF/LRP disk, you need to do four things (none of which is to search the email archives, though that works too ;): 1. Be sure to be using a "VPN enabled kernel". Dac

[Leaf-user] forwarding Protocal 47(gre) on Eigerstein LRP

2002-03-03 Thread Lonnie Cumberland
Hello, Could you please tell me how to prot forward this protocal 47 on my Eigerstein LRP box? I know how to forward regular ports coming in to a server behind the firewall, but I do not know about htis protocal 47 (gre) Thanks, Lonnie -- Lonnie Cumberland OutStep Technologies Incorporated