[masq] (Fwd) Re: [masq] ipchains - proper forum?

1998-10-30 Thread Charles Shoemaker
Subject: Re: [masq] ipchains - proper forum? Is discussing ipchains on this list appropriate since it appears as if ipchains is pretty much going to replace ipmasq as we currently know it? IPCHAINS will only replace IPFWADM. MASQ is still a function of the Linux kernel. So.. YES..

[masq] Blocking certain domain names

1998-10-30 Thread David Kramer
I would like to to start putting in firewall rules to block ANYTHING from certain domain names. For instance, I'll often get hit from (something).sp.mandic.com.br, but there doesn't seem to be a contiguous IP range. I think I figured out that I need ipfwadm -I -a deny -S mandic.com.br

[masq] Masq/FTP/ipchains

1998-10-30 Thread Clint Todish
I posted a similar message recently to a Usenet group. Hopefully, you guys will know better: I got my Austin Roadrunner service up and running with Linux (Redhat 5.1 + kernel 1.2.126) masquerading a RFC1918 network. Surprisingly, there is currently no need for the authorization process in my

[masq] Getting traceroute to work through a firewall + ipmasquerading configuration

1998-10-30 Thread Henty Waker
Greetings everyone I've got a public IP address for my gateway. The gateway is doing IP masquerading for my entire LAN. The gateway also acts as a firewall. If I take down the firewall (i.e. flush all Input and Output rules) and just leave masquerading running I can traceroute from the LAN.

[masq] Transparent proxy

1998-10-30 Thread Lars Bensmann
Hi, I hope this is not off-topic. If it is, please tell me where it would be more approriate. I got a question concerning the transparent proxy support in the Linux kernel. As I understand it the Linux box will catch any outgoing request to a specific port and redirect it to a local port. (If

Re: [masq] Blocking certain domain names

1998-10-30 Thread Fuzzy Fox
David Kramer [EMAIL PROTECTED] wrote: I would like to to start putting in firewall rules to block ANYTHING from certain domain names. What sounds simple on the surface is often not-so-simple underneath. For instance, I'll often get hit from (something).sp.mandic.com.br, but there doesn't

Re: [masq] Flood Pinging and Spoofing

1998-10-30 Thread David A. Ranch
I have someone flood pinging my IPMasq PC from what I believe to be spoofed IP addresses. I would like to stop this. Is there any way to stop an IPMasq PC from responding to pings and/or spoofed packets? Try this before your implict IPFWADM deny/reject: $extif is the NAME of your internet

[masq] more masq/firewall stuff...

1998-10-30 Thread Clint Todish
So I think I finally dug up what I needed, but I wanted to bounce it off to see if this is right. In the kernel, there is a defined start and length for the ip_masq ports (61000 + 4096) by default. Am I current to assume that I can just permit this range of ports in arbitrarily and let the masq

[masq] VPN Question

1998-10-30 Thread Dave C.
Hi, I was wondering if anyone knows where I can get additional documentation on VPN and Linux aside from the VPN Howto. Thanks, Dave C. - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL

[masq] NO ident server for irc (bitchx)

1998-10-30 Thread s.j. beaulac
I'm using bitchx or any irc client on a client system (win95) but when I try to connect to any IRC server I get an error message saying that I'm not running a ident rfc14?? server which I'm 100% shure that win95 is running. I can telnet to the ipmasq server and use BitchX there and it will work.