Re: [leaf-user] Dachstein LEAF Firewall ipmasqadm help

2006-05-08 Thread Mike Noyes
On Sat, 2006-05-06 at 06:36, Kevin wrote: How can I set the following rule to auto load when I have to reboot the router? ie. where to input in the config files, mostly a newbie to Linux snip I am using Charles's Dachstein version 1.02 with PPPOE Kevin, Please consider using a newer LEAF

RE: [leaf-user] Dachstein Bin to ISO?

2004-12-19 Thread Mike Noyes
On Fri, 2004-12-17 at 07:14, [EMAIL PROTECTED] wrote: Charles, I don't mean to be dense (although sometimes I am!) Mike Noyes posted that Dachstein had been updated to the latest kernel (2.2.19-3 or something similar) and had a few package improvements. When I retrieve the image his

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: Charles, the new distribution is a BIN instead of an ISO ? if it were an ISO I think I know how to attack it. Is there also an ISO for the new distribution? Dachstein is available in both CD-ROM (ISO) and floppy-disk format:

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: Charles, I don't mean to be dense (although sometimes I am!) Mike Noyes posted that Dachstein had been updated to the latest kernel (2.2.19-3 or something similar) and had a few package improvements. When I retrieve the image his announcement referenced, it was on

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Simon Bolduc
Kenneth, If you are pretty sure it's a CD image, you could always burn it to a CDRW - test and see if it actually boots Dachstein, and then make an ISO out of it. That would likely ensure an image that you can work with. Otherwise you could post the link to the bin file on the list and someone

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Mike Noyes
On Fri, 2004-12-17 at 08:17, Charles Steinkuehler wrote: I think the Dachstein announcements are old posts that got relisted somehow with all the changes to the website lately (Mike Noyes is updating the dynamic php code that generates the web-pages, and the SourceForge folks have been

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Mike Noyes
On Fri, 2004-12-17 at 20:55, Ken Gentle wrote: An updated Dachstein was a lot to hope for... back to collecting modules for Bering uClib... Ken, Bering uClibc files are located in these locations: https://sourceforge.net/project/showfiles.php?group_id=13751package_id=67534

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-16 Thread Charles Steinkuehler
Ken Gentle wrote: Guys, I know I've seen this on this list and in the documentation, but I can't seem to put my hands on it. I want to take the new Dachstein bin image and make an ISO cd out of it -- would some kind, benevolent soul please point me at the correct FM to RT? You probably want the

Re: [leaf-user] Dachstein reboot

2004-08-28 Thread Tom Eastep
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 GD wrote: | I suspect it might be a hardware problem, | but am not quite sure. What could cause the firewall | reboot itself? Almost certainly a hardware problem -- the last time that it happened to me, incredibly the faulty component was *the

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-28 Thread Charles Steinkuehler
Craig Johnson wrote: The only documentation I can point you to for the border_router option is the shell-script source that builds the firewall rules. So when you use the border_router option, what is the setting for IPFILTER_SWITCH in network.conf? I beleive it should be set to router. Look

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Charles Steinkuehler
Craig Johnson wrote: Wondering if I can get some help? I have a static public IP from ISP for an ADSL account (call it addrISP). We also have our own public IP range. I want to setup an LEAF box (eg dachstein), which holds the addrISP on one NIC, and one of our public IP addresses on another NIC.

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
Thanks for the quick reply! Some more stuff below... * what is the best way/distro to setup a LEAF box as this kind of border router? (I noticed references to border_router options on the dachstain network.conf documentation page, but haven't been able to find any substantial

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Charles Steinkuehler
Craig Johnson wrote: Thanks for the quick reply! Some more stuff below... * what is the best way/distro to setup a LEAF box as this kind of border router? (I noticed references to border_router options on the dachstain network.conf documentation page, but haven't been able to find any

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
The only documentation I can point you to for the border_router option is the shell-script source that builds the firewall rules. So when you use the border_router option, what is the setting for IPFILTER_SWITCH in network.conf? Hmm...I suspect the ISP will consider anything coming down

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
Date: Tue, 27 Apr 2004 00:23:59 -0400 From: George Metz [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein as border_router? (public ip addresses etc) Don't know about shorewall (which you would have to configure to allow VPN traffic to pass through

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Craig Johnson wrote: So if NAT is turned off and I have straight-forward routing happening, will the shorewall rules mean only what it says will get through? Or will the shorewall just forward packets addressed to the firewall to another server, without interfering with packets addressed to the

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
-Original Message- From: Tom Eastep [mailto:[EMAIL PROTECTED] Sent: Wednesday, 28 April 2004 8:40 To: Craig Johnson Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein as border_router? (public ip addresses etc) So if NAT is turned off and I have straight-forward routing

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Craig Johnson wrote: -Original Message- From: Tom Eastep [mailto:[EMAIL PROTECTED] Sent: Wednesday, 28 April 2004 8:40 To: Craig Johnson Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein as border_router? (public ip addresses etc) So if NAT is turned off and I have straight

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Tom Eastep wrote: If you are going to use Bering, I would start with a shorwall.lrp from shorewall.net. Those packages have all NAT turned off by default. The best best document for you to read is http://shorewall.net/shorewall_setup_guide.htm. I meant to say that the best *Shorewall*

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-26 Thread George Metz
Don't know about shorewall (which you would have to configure to allow VPN traffic to pass through to that specific IP address), but what you basically want it to do is substitute for a traditional router. Effectively, you'd simply have to turn off NAT and let DNS and the public IP addresses

Re: [leaf-user] dachstein vt100 emulation

2004-04-20 Thread Tony
TeraTerm Pro? Putty? Tony - Original Message - From: Arnold Wiegert [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Tuesday, April 20, 2004 12:28 PM Subject: [leaf-user] dachstein vt100 emulation Hi all I'm still running Dachstein, but would like to use a serial line to access

Re: [leaf-user] dachstein vt100 emulation

2004-04-20 Thread Charles Steinkuehler
Arnold Wiegert wrote: Hi all I'm still running Dachstein, but would like to use a serial line to access the 'box' from a Windows machine. Since I haven't found a good free VT100 emulation program, I've used and older modem program which does a pretty good job, except for the page up and down

[Fwd: Re: [leaf-user] dachstein vt100 emulation]

2004-04-20 Thread Arnold Wiegert
Thanks for the references. I looked them up and it seems Putty is good for telnetting only. Found TeraTerm Pro and have installed it. It works well for serial connections, but the 'page up' key seems to cause text to be deleted; the page down key works as it does at the machine console. I'll

Re: [leaf-user] dachstein vt100 emulation

2004-04-20 Thread Arnold Wiegert
Charles Steinkuehler wrote: Arnold Wiegert wrote: Hi all I'm still running Dachstein, but would like to use a serial line to access the 'box' from a Windows machine. Since I haven't found a good free VT100 emulation program, I've used and older modem program which does a pretty good job,

[Fwd: Re: [Fwd: Re: [leaf-user] dachstein vt100 emulation]]

2004-04-20 Thread Arnold Wiegert
Giovanni Franza wrote: Arnold Wiegert ha scritto: Thanks for the references. I looked them up and it seems Putty is good for telnetting only. Found TeraTerm Pro and have installed it. It works well for serial connections, but the 'page up' key seems to cause text to be deleted; the page down

Re: [leaf-user] Dachstein routing to squid

2004-03-22 Thread Charles Steinkuehler
LaRoy McCann wrote: I have spent all weekend looking and trying to figure out how to make this work. Now it is time to ask for help. I have Dachstein CD running as a proxy-arp firewall for a system. Is it possible to have the firewall redirect all port 80 requests from the DMZ (eth2) and

Re: [leaf-user] dachstein : multiple ip addresses on an interface

2004-03-07 Thread Ray Olszewski
At 06:52 PM 3/7/2004 +, Miguel De Avila wrote: I have 4 addresses that I would like to bind to the public interface of my dachstein firewall. The addresses appear to bind ok, but I can't ping the secondary addresses, only the primary address (216.65.38.18). From here, I can ping all 4

Re: [leaf-user] Dachstein-CD and an Internal Modem

2004-02-22 Thread Richard Doyle
If memeory serves, you may need to load the serial.o module; setserial is not needed in for most configurations. -Richard On Sun, 2004-02-22 at 05:23, [EMAIL PROTECTED] wrote: I have been very happy using the Dachstein-CD. I have configured 1 for broadband, and also 1 for dialup with an

RE: [leaf-user] dachstein mrtg problem

2003-12-10 Thread Joey Officer
This is in reference to the mrtg program file, the line references line 1485. There may be a syntax error. another way to get what you want as a test is to perform an snmpget on your selected target. joey -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of

Fwd: RE: [leaf-user] dachstein mrtg problem

2003-12-10 Thread greg gede
--- Joey Officer [EMAIL PROTECTED] wrote: This is in reference to the mrtg program file, the line references line 1485. There may be a syntax error. no, it's not the mrtg program. because it works just fine if the target is other router. another way to get what you want as a

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-27 Thread George Metz
Negative, 192.168.0/23 will route 192.168.0.0/24 and 192.168.1.0/24 but ignore 192.168.2.0/24. You'd need to do a /22 to do aggregate routing with the specified /24s, and at that you'd have two /24s floating in limbo. Victor McAllister wrote: Dachstein will not route between interfaces unless

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-26 Thread Mark Bynum
Richard, Two questions: 1. What is wrong with Dachstein? Is it insecure? 2. I've tried your suggestions and still I can't ping either internal network from the other. But, I do know have a new route: 192.168.2.0/24 via 192.168.1.254 dev eth1 The other one didn't take. I don't know why. Any

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-26 Thread Victor McAllister
Mark Bynum wrote: Richard, Two questions: 1. What is wrong with Dachstein? Is it insecure? 2. I've tried your suggestions and still I can't ping either internal network from the other. But, I do know have a new route: 192.168.2.0/24 via 192.168.1.254 dev eth1 The other one didn't take. I

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-26 Thread Charles Steinkuehler
Mark Bynum wrote: All, It shouldn't be this hard. All I'm trying to do is route between my two internal networks of 192.168.1.0 and 192.168.2.0. Here is what I have: INTERN_NET=192.168.1.0/24 192.168.2.0/24 eth1_ROUTES=192.168.2.0/24_via_192.168.2.254 eth2_ROUTES=192.168.1.0/24_via_192.168.1.254

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-25 Thread Richard Doyle
On Thu, 2003-09-25 at 21:37, Mark Bynum wrote: All, It shouldn't be this hard. All I'm trying to do is route between my two internal networks of 192.168.1.0 and 192.168.2.0. Here is what I have: INTERN_NET=192.168.1.0/24 192.168.2.0/24 eth1_ROUTES=192.168.2.0/24_via_192.168.2.254

Re: [leaf-user] Dachstein and ssh tunneling

2003-09-17 Thread Charles Steinkuehler
Alex McLintock wrote: Hi folks, I have a Dachstein firewall which I set up over a year ago - it works fine. But I now want to make a couple of linux servers available to the outside world through ssh. I thought about port forwarding - but I guess that wont cut the mustard for ssh. SSH works

RE: [leaf-user] Dachstein lrpkg.cfg - BOOT_IMAGE=linux (nf!)

2003-09-06 Thread Alex Rhomberg
When I try to use the lrpkg.cfg file to extend the command line length, as described in various messages on this list and other documentation, to load more packages from the second floppy. I thought lrpkg.cfg works only with *Bering*, not Dachstein, but I have never used Dachstein, so I can't

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Charles Steinkuehler
William Brinkman wrote: All, I put the NTP rpm in my mandrake 9.0 linux box. Set the ntp.conf server to 192.168.1.254 (firewall address). Inserted a /etc/ntp.drift and put a 1 in the file. Started the ntpd daemon. Tested out the troubleshooting guide and on the mandrake box tried a: # ntpq -p

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Kevin
: Mon, 17 Mar 2003 07:00:00 -0600 From: Charles Steinkuehler [EMAIL PROTECTED] To: William Brinkman [EMAIL PROTECTED] CC: [EMAIL PROTECTED] Subject: Re: [leaf-user] dachstein NTP Internal Time Server - Up and running William Brinkman wrote: All, I put the NTP rpm in my mandrake 9.0 linux box

Re: [leaf-user] dachstein NTP Internal Time Server - M$ freeware works

2003-03-17 Thread William Brinkman
Kevin, Thanks for weighing in with your results. I am up and running with a M$ freeware called Dimension 4 on a 98se box. It uses the SNTP (Simple NTP) and for whatever reason, works well with the Dachstein firewall. It however, does not mention compatability with XP so - your mileage may

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Charles Steinkuehler
Kevin wrote: I was curious, so I tried to hit my firewall without making any changes to its current state. I used a program call NetLab 1.4, freeware for windows. It has a time snyc function I use to keep my clocks updated. When I hit the main time server that worked through the firewall -

Re: [leaf-user] dachstein NTP Internal Time Server - EXTERNAL ports now open

2003-03-16 Thread William Brinkman
All - A quick update, I inserted into network.conf, down about line 323, the list of servers matching the list from the ntpsimpl conf from the setup package menu. ie: EXTERN_UPD_PORT0=0/0 domain EXTERN_UDP_PORT1=0/0 bootpc EXTERN_UDP_PORT2=www.xxx.yyy.zzz/24 ntp

Re: [leaf-user] dachstein NTP Internal Time Server - EXTERNAL portsnow open

2003-03-16 Thread Charles Steinkuehler
William Brinkman wrote: snip My M$ machine still cannot sync with the DS firewall with a unable to contact server and a mandrake 9.0 box with netdate 192.168.1.254 run from root gets connection refused. Looks like I'm still lost as how to open the internal port 123 for the time server. Port 123

Re: [leaf-user] dachstein NTP Internal Time Server - udp internal port looks open

2003-03-16 Thread William Brinkman
Thank you Charles for the excellent lead! I took your advice and did a #netstat -ldp | more and got the following lines concerning port 123 (with apologies for the formatting problems): proto recv-Q send-Q local addr foreign addr state PID/Pgrm name udp 0 0 192.168.1.254:123 0.0.0.0:*

Re: [leaf-user] dachstein NTP Internal Time Server - udp internalport looks open

2003-03-16 Thread Charles Steinkuehler
William Brinkman wrote: Thank you Charles for the excellent lead! I took your advice and did a #netstat -ldp | more and got the following lines concerning port 123 (with apologies for the formatting problems): proto recv-Q send-Q local addr foreign addr state PID/Pgrm name udp 0 0

Re: [leaf-user] dachstein NTP Internal Time Server - Any Bering Folks using this?

2003-03-16 Thread William Brinkman
Thank you Charles for the expert advice on upd. I did a little more snooping and turns out #netdate command (linux box) is port 37 while ntp is port 123. (I realize I'm beginning to sound like a total moron and should have done the homework and rtfmed). I downloaded a program called

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-16 Thread William Brinkman
All, I put the NTP rpm in my mandrake 9.0 linux box. Set the ntp.conf server to 192.168.1.254 (firewall address). Inserted a /etc/ntp.drift and put a 1 in the file. Started the ntpd daemon. Tested out the troubleshooting guide and on the mandrake box tried a: # ntpq -p 192.168.1.254 The

Re: [leaf-user] dachstein NTP Internal Time Server

2003-03-15 Thread Erich Titl
William William Brinkman wrote the following at 00:03 16.03.2003: Greetings All- I really don't want to open the EXTERNAL upd ports and let my box be the time server to the world. No need... . What about your log files, do they indicate any port 123 traffic to be blocked? Erich THINK

Re: [leaf-user] dachstein NTP Internal Time Server

2003-03-15 Thread William Brinkman
Erich, Thanks for asking! I should have looked earlier! I examined the denied packets carefully, and yes, the selected internet time servers were getting blocked coming back to the firewall in a rather impressive (in volume of traffic) manner. I disabled the servers until I can start to let

RE: [leaf-user] Dachstein Port Forwarding

2003-03-08 Thread Doug Sampson
Hi all, I am back from vacation! This morning I attempted to remove M$ Proxy Server from the Exchange box and reconfigure TCP/IP settings. The Exchange box is now fully functioning behind the Dachstein router as originally intended. Note: the box had to be rebooted for the gateway address

RE: [leaf-user] Dachstein Port Forwarding

2003-02-14 Thread Doug Sampson
But ... the ONLY change we are suggesting you make is to the Exchange server's default gateway. Does that *really* require a reboot on Windows? (I know the old joke about You have moved your mouse - press any key to reboot, but surely Microsoft has make networking reconfiguration a

Re: [leaf-user] Dachstein Port Forwarding

2003-02-14 Thread Mike Leone
Doug Sampson ([EMAIL PROTECTED]) had this to say on 02/14/03 at 15:07: But ... the ONLY change we are suggesting you make is to the Exchange server's default gateway. Does that *really* require a reboot on Windows? (I know the old joke about You have moved your mouse - press any

Re: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Charles Steinkuehler
Doug Sampson wrote: No, Dachstein isn't replacing anything that used to exist at that address. I am still running a Proxy Server 2.0 at that address and it shows port 25 and 80 being open. Running a port scanner from outside the network against the Dachstein router shows only port 80 (and 22) as

RE: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Doug Sampson
Ray/Charles, I was afraid you'd both still point to the TCP/IP settings of the Exchange box as the cause for the failure. I had thought that scanning a range of ports was to check if it was open. But it looks like my assumption was wrong. It checks for responses and obviously the scanner isn't

RE: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Ray Olszewski
At 10:06 AM 2/11/03 -0800, Doug Sampson wrote: Ray/Charles, I was afraid you'd both still point to the TCP/IP settings of the Exchange box as the cause for the failure. I had thought that scanning a range of ports was to check if it was open. But it looks like my assumption was wrong. It checks

Re: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Charles Steinkuehler
Doug Sampson wrote: I want to port forward any packets sent to port 25 on the external interface to an internal email server but I seem to be having trouble doing so. I've made the necessary changes to the network config file but the changes aren't taking hold. I've rebooted the server twice to

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Doug Sampson
OK, are several things that could be going wrong, besides mis-configuration (it looks like you've got everything setup properly, but I can't tell for sure without the full output of net ipfilter list). 1) Your ISP is blocking port 25. This is fairly common, and is typically

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Ray Olszewski
OK. Nothing like looking at a real ruleset to sort things out. The input chain appears to be working properly to allow port-25 traffic in, since this rule shows matching packets: 20 800 ACCEPT tcp -- 0xFF 0x00 eth0 0.0.0.0/00.0.0.0/0 * - 25 Since you

Re: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Lynn Avants
On Monday 10 February 2003 04:32 pm, Doug Sampson wrote: 20 800 ACCEPT tcp -- 0xFF 0x00 eth0 0.0.0.0/00.0.0.0/0 * - 25 0 0 MASQ tcp -- 0xFF 0x00 * 192.168.1.4 0.0.0.0/0 25 - * :: Port FW :: prot localaddr

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Doug Sampson
Ray, But with all of that, I cannot connect (using telnet) to your mail server from here (though I can ping you and connect to the Web server). You couldn't- all attempts to port 23 are blocked. So ... how thoroughly have you checked the Exchange server for configuration problems? Is

Re: [leaf-user] DACHSTEIN VS BERING

2003-02-02 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: I have used both Dachstein 1.0.2 and Bering uClib 1.0.1 on a 90mhz pentium box. Both are standard distributions. The only modifications were to the modules section to support my two network cards. I have a cable modem connection. When running the Dachstien distribution

Re: [leaf-user] Dachstein Dead?

2003-01-22 Thread Charles Steinkuehler
Karl Poglitsch wrote: Just wondering, I haven't seen anything lately on any upgrades to Dachstein, just a lot of chatter about Bering etc. Has Dachstein been abandoned? Not dead, really, just kind of in stasis. :) While I have not had the free time lately to do much updating, the existing

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Brad Fritz
Roger, On Mon, 20 Jan 2003 15:10:21 EST Roger E McClurg wrote: I need to create a LEAF firewall using Dachstein 1.02 on a laptop with 2 PCMCIA NICs. Do you need to use Dachstein? Bering has much better PCMCIA support. It should be doable under Dachstein, but you will almost certainly

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Roger E McClurg
? Roger Todd Pearsall todd @pearsall.us 01/20/2003 03:55 PM To: Roger E McClurg/CEG/CSC@CSC cc: Subject:Re: [leaf-user] Dachstein 1.02 and PCMCIA I haven't done pcmcia with Dachstein, but I have with Bering. If you don't have to Dachstein, try Bering

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Brad Fritz
Roger, On Mon, 20 Jan 2003 16:26:09 EST Roger E McClurg wrote: I'm willing to go with Bering, if someone can tell me how to get it up and running via PCMCIA quickly. I need a firewall doing DHCP on eth0 for it's IP address, and running DHCPD on eth1. dhcpd is included in the stock Bering

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-15 Thread Todd Pearsall
. Thanks to all that helped out. - Todd -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Greg Morgan Sent: Wednesday, January 15, 2003 12:36 AM To: [EMAIL PROTECTED]; Todd Pearsall Subject: RE: [leaf-user] Dachstein Config, HW Issue or Comcast

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap?Approx 2MB dl Limit

2003-01-14 Thread Charles Steinkuehler
Todd Pearsall wrote: Now for the problem, for the week or 2 (approx. the same time as the HW swap) I can't download files greater than about 2MB. It 1st appeared because some antivirus downloads were failing and later I noticed that any somewhat large file would just hand during download. When

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Lynn Avants
On Tuesday 14 January 2003 08:40 am, Todd Pearsall wrote: I did a HW swat for that firewall because I needed the space for 3 NICs in the office so I swapped in a different PC. The new box has different NICs in it (2 Linksys 100TX vs. the 2 ISA 3COM NICs in the old one) and the new one can't

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Todd Pearsall
2) try an alternate driver for the Linksys NICs 3) try different NICs Thanks again. - Todd -Original Message- From: Charles Steinkuehler [mailto:[EMAIL PROTECTED]] Sent: Tuesday, January 14, 2003 10:56 AM To: Todd Pearsall Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Brad Fritz
On Tue, 14 Jan 2003 14:34:15 EST Todd Pearsall wrote: Thanks for the great advice as always Charles and Lynn. I hadn't considered the memory or drivers as potential problems. In the past I've had problems finding the right drivers for the Linksys chipset du jour, but when I got one that

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap?Approx 2MB dl Limit

2003-01-14 Thread Greg Morgan
Todd Pearsall wrote: Tonight I'll: 1) test the memory Try http://www.memtest86.com/ for testing memory. There is both a diskette and cd-rom test program. Just put it on a disk and reboot. 2) try an alternate driver for the Linksys NICs 3) try different NICs Greg Morgan

Re: [leaf-user] Dachstein CD with Realtek 8139 NICs

2003-01-10 Thread Lynn Avants
On Wednesday 08 January 2003 05:08 pm, Chris Low wrote: The disk that came with the NICs wanted me to compile a driver from the source code rtl8139.c, then copy it to /lib/modules/2.2.14-5.0/pcmcia then edit the /etc/pcmcia/config file and the linuxconf. How do I do this? or, is there an

Re: [leaf-user] Dachstein CD Question

2003-01-08 Thread Chris Low
Charles, This typically happens if the booting process doesn't load the etc package (etc.lrp). There are many reasons for why this can happen, but I think the most likely would be the system is not finding the CD-ROM drive. You were right, it found the CD drive fine, but the drive didn't

Re: [leaf-user] Dachstein CD Question

2003-01-07 Thread Charles Steinkuehler
Chris wrote: My system doesn't allow booting from a CD so I'm booting with a floppy and that seems to work fine, however after loading I don't get a login prompt. Instead it asks me to Enter runlevel I've tried putting in 1, 2, 3, and 5 but each returns the same message: no more proccesses

RE: [leaf-user] Dachstein firewall monitor

2002-12-10 Thread Doug Sampson
:[EMAIL PROTECTED]] Sent: Monday, December 09, 2002 11:15 AM To: '[EMAIL PROTECTED]' Subject: Re: [leaf-user] Dachstein firewall monitor Wrigglesworth, Colin wrote: Do you really mean it was working now has stopped? I haven't seen it work yet on my Dachstein CD 1.0.2 so would

Re: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Martin Hejl
Wrigglesworth, Colin wrote: Do you really mean it was working now has stopped? I haven't seen it work yet on my Dachstein CD 1.0.2 so would be interested to know if you have had it working. I thought my problem was Java related but maybe not. well, I've seen it working on plenty of Dachtstein

Re: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Lynn Avants
Since Weblet ran out of the box on the images I tried, I tend to agree with you that it indeed is a Java related problem on your browser - but lacking any info what it is (or isn't) doing, I could only speculate on what's happening. Well, the only reasons I've ever seen for failure is

Re: [leaf-user] Dachstein FreeS/WAN IPSec update re:bugtraq id 6011?

2002-12-05 Thread Charles Steinkuehler
Duncan Napier wrote: Hi, I was wondering if Dachstein is still being maintained, and if so whether there are any plans to update the IPSec components to something newer than FreeS/WAN 1.9.6? Essentially, the issue is that certain types of malformed IPSec packets can cause kernel panics in

RE: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-28 Thread Wrigglesworth, Colin
Charles, You hit the problem right on the head, then I guess you would. I ended up modifying the qmail init script to create the 'missing' directories because it was simple and the qmail298 script takes care of any permissions problems I might have got wrong. I didn't quite follow how to

Re: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-26 Thread Joey Officer
although i have no expierence setting up qmail, its possible it could be a couple of different problems, check the load order, you said in your email that you load qmail manually, if this is the case, make sure the qmail package is the last one loaded, just in case. if that doesn't work, load it

Re: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-26 Thread Charles Steinkuehler
Wrigglesworth, Colin wrote: I am encountering a problem with adding the qmail.lrp package to my Dachstein-CD setup. I have tried both loading the package by floppy and by adding it to a custom copy of the CD. The problem manifests itself only on rebooting the router after adding qmail to the

RE: [leaf-user] Dachstein DNS Config - HELP!

2002-11-15 Thread Wrigglesworth, Colin
Spot on. I had bash.lrp loaded! So this leads me on to asking if you could add an entry for bash on you packages page at http://lrp.steinkuehler.net/Packages.htm http://lrp.steinkuehler.net/Packages.htm stating that installing the bash package, therefore changing the default

RE: [leaf-user] Dachstein DNS Config - HELP!

2002-11-14 Thread Wrigglesworth, Colin
Brad Ray, Thanks for your help and now I have managed to access Jacques Nilo's LEAF website I'm in a much better position to work out what's happening. We had a major failure yesterday which took the whole network down and when it came back up dnscache was running! I must have changed

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-14 Thread Charles Steinkuehler
Wrigglesworth, Colin wrote: Didn't take me log to find out what the brain dead problem istinydns isn't running. Why?...well I don't actually know but I'm sure this has got something to do with it: # /etc/init.d/tinydns start /etc/init.d/tinydns start: UID: readonly variable # So what is

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Ray Olszewski
A preliminary comment -- please be more careful about use of upper and lower case in your reporting. I'm inclined to believe that your interface variables really are eth0 and eth1, not (as you report them) Eth0 and Eth1, and I doubt your LAN-side SuSE server is named both pingu-serv and

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Brad Fritz
A small addition to Ray's already comprehensive analysis... On Tue, 12 Nov 2002 10:53:38 PST Ray O. wrote: Now, the tcpdump traffic you report is -- 17:07:30.870333 pingu-serv.farside.net.vfo 193.37.83.1.domain: 58405+ PTR? 81.83.37.193.in-addr.arpa. (43) (DF)

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Ray Olszewski
At 02:44 PM 11/12/02 -0500, Brad Fritz wrote: A small addition to Ray's already comprehensive analysis... [...] 3. You have dnscache listening on port 193.37.83.1:53 and traffic is allowed to it through the packet filter, but /etc/dnscache/env/IPQUERY does not include a line that allows

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Brad Fritz
Good catch, Ray. As usual, you were spot on. Details below... On Tue, 12 Nov 2002 12:30:19 PST Ray Olszewski wrote: At 02:44 PM 11/12/02 -0500, Brad Fritz wrote: A small addition to Ray's already comprehensive analysis... [...] 3. You have dnscache listening on port 193.37.83.1:53 and

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-24 Thread Steven Peck
, 2002 7:25 PM To: [EMAIL PROTECTED] Cc: Richard Doyle Subject: RE: [leaf-user] Dachstein work laptop on home network using WinXP OK _ I think I started something here.I am using the alternate IP address in WinXP and using DHCP on workl and home connections. I have DHCP working on both

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-24 Thread Kevin
PROTECTED] Cc: Richard Doyle Subject: Re: [leaf-user] Dachstein work laptop on home network using WinXP Any help is most welcome on how to get the work DNS from populating while at home, so I can use the laptop on the internet. Well, I haven't made the leap to XP yet, but earlier versions

Re: [leaf-user] Dachstein - port forward SMTP?

2002-10-23 Thread Erich Titl
Hi James handling mail services is a bit off topic here, you will get detailed information concerning mail and DNS on the respective forums, if you get everything set up you won't have to use an ip address anymore, please don't forget the open relay topic. Have fun Erich James Duberg wrote

RE: [leaf-user] Dachstein - port forward SMTP?

2002-10-23 Thread Joey Officer
- From: [EMAIL PROTECTED] [mailto:leaf-user-admin;lists.sourceforge.net]On Behalf Of Erich Titl Sent: Wednesday, October 23, 2002 12:37 PM To: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein - port forward SMTP? Hi James handling mail services is a bit off topic here, you will get detailed

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Simpson, Doug
- From: Charles Steinkuehler [mailto:charles;steinkuehler.net] Sent: Wednesday, October 23, 2002 4:00 PM To: Kevin; [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein work laptop on home network using WinXP Problem is work and home networks use DHCP, work also uses WINS with a static IP address

Re: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Richard Doyle
On Wed, 2002-10-23 at 13:06, Kevin wrote: I have a fully working network using DHCP, Dachstein 1.02 two floppy version. Work just gave me a laptop with WinXP installed. In the documents, I see where you can have two ip stacks and WinXP will use the correct stack. Well, sort of. Your mail

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Kevin
while at home, so I can use the laptop on the internet. Thanks -Original Message- From: Richard Doyle [mailto:rdoyle;islandnetworks.com] Sent: Wednesday, October 23, 2002 6:00 PM To: Kevin Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein work laptop on home network using WinXP

Re: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Charles Steinkuehler
Any help is most welcome on how to get the work DNS from populating while at home, so I can use the laptop on the internet. Well, I haven't made the leap to XP yet, but earlier versions of 'doze had the ability to manually enter DNS servers, or to get them via DHCP. In Win2K, this is in

Re: [leaf-user] Dachstein IPsec HELP wanted

2002-10-22 Thread Charles Steinkuehler
I am trying to set up a VPN with IPsec - Dachstein v1.0.2-ipsec (modified by Lynn Avant). I am using VmWare on a W2000 for the test environment. My test configuration is (192.168.1.254 / 12.247.85.201) -(VMnet2)- (212.247.85.202 / 192.168.2.254) ping from 212.247.85.201 to

Re: [leaf-user] Dachstein - can't reach mail server on DMZ

2002-10-05 Thread Charles Steinkuehler
Thanks for responding, Ray. I have added the diagnostic info described at leaf support. A couple of comments...I think your main problem is you're not allowing the mail packets through the input firewall rules. Since you're using a PRIVATE DMZ, and port-forwarding your external firewall IP to

Re: [leaf-user] Dachstein - can't reach mail server on DMZ

2002-10-05 Thread Ray Olszewski
As I look through the firewall ruleset ... the input chain specifically ... I don't see a rule to ACCEPT port-25 traffic. Nor do I see one to ACCEPT port-80 traffic (but you did say the Web server worked, didn't you?). WIth that as a hint, I *think* I've spotted the error in the config file.

Re: [leaf-user] Dachstein - can't reach mail server on DMZ

2002-10-05 Thread Tom Eastep
Ray Olszewski wrote: As I look through the firewall ruleset ... the input chain specifically ... I don't see a rule to ACCEPT port-25 traffic. Nor do I see one to ACCEPT port-80 traffic (but you did say the Web server worked, didn't you?). WIth that as a hint, I *think* I've spotted

  1   2   3   4   5   >