Re: TCP FIN hangups in encrypted ESP tunnel

2021-07-08 Thread Andre Stoebe
Hi Peter, it's not just you, I have similar problems since around July 1, but with a netcup server. Since then, downloading a bigger file from the netcup server using scp or rsync fails pretty consistently. Normal ssh sessions or other stuff like imap or xmpp remain stable, as far as I can tell.

Re: TCP FIN hangups in encrypted ESP tunnel

2021-07-08 Thread Brian Brombacher
> On Jul 8, 2021, at 8:05 AM, Peter J. Philipp wrote: > > On Wed, Jul 07, 2021 at 11:57:50PM +0300, Ville Valkonen wrote: >> Hi, >> >> not sure if related but my Linux box (also in Hetzner) also started to have >> flaky connection lately. >> >> -- >> Regards, >> Ville > > I opened a

Re: TCP FIN hangups in encrypted ESP tunnel

2021-07-08 Thread Peter J. Philipp
On Thu, Jul 08, 2021 at 12:18:09PM -0400, Brian Brombacher wrote: [..] > Are you changing the default TCPKeepAlive setting? It defaults to yes. It > exists as options in sshd_ and ssh_config. Additionally, ClientAliveInterval > and ServerAliveInterval might be handy. A sysctl also exists to

Re: TCP FIN hangups in encrypted ESP tunnel

2021-07-08 Thread Peter J. Philipp
On Wed, Jul 07, 2021 at 11:57:50PM +0300, Ville Valkonen wrote: > Hi, > > not sure if related but my Linux box (also in Hetzner) also started to have > flaky connection lately. > > -- > Regards, > Ville I opened a ticket with Hetzner last week thinking it was an in-band DoS. They assured me,

Re: TCP FIN hangups in encrypted ESP tunnel

2021-07-07 Thread Ville Valkonen
Hi, not sure if related but my Linux box (also in Hetzner) also started to have flaky connection lately. -- Regards, Ville On Wed 7. Jul 2021 at 19.58, Peter J. Philipp wrote: > Hi, > > My VPS at Hetzner has very weird behaviour: > > last week it started hanging up scp'ing of large backups,

TCP FIN hangups in encrypted ESP tunnel

2021-07-07 Thread Peter J. Philipp
Hi, My VPS at Hetzner has very weird behaviour: last week it started hanging up scp'ing of large backups, so I worked hard to get these encrypted if it was a hangup attack. Well surprise to me too the hangups are back. I have tcpdump'ed the enc0 from both sides and the FIN does originate from