Linux-Networking Digest #185, Volume #10         Fri, 12 Feb 99 16:13:43 EST

Contents:
  Re: TCP port number and process (Barry Margolin)
  Re: connecting machine to internet via modem causes loss of local network access 
([EMAIL PROTECTED])
  problem with 3COM 3C900B-TPC-COMBO (Yifang Gong)
  Router/Firewall performance problem ([EMAIL PROTECTED])
  Re: Q: ELSA QUICKSTEP 1000PRO-PCI  &  SuSE LINUX 6.0 ? (Heinz-Detlev Koch)
  Re: PPP problems under 2.2.1 (Clifford Kite)
  ppp help please (RLopez6836)
  Re: Problem: Linksys Fast 10/100 with tulip.c v90 driver (mark ross)
  Re: IPCHAINS and ip port forwarding (Kevin Dick)
  Re: ISPS and modems for LINUX (Rick Onanian)
  Re: linux firewall and ICQ ("Robert L. Ziegler")
  Re: Networking 2 win98 boxes and a linux box (grumpy)
  Re: S.u.S.E. 6:0 + IPX Network ([EMAIL PROTECTED])

----------------------------------------------------------------------------

From: Barry Margolin <[EMAIL PROTECTED]>
Crossposted-To: 
comp.unix.programmer,comp.os.linux.development.system,comp.protocols.tcp-ip
Subject: Re: TCP port number and process
Date: Fri, 12 Feb 1999 18:31:57 GMT

In article <[EMAIL PROTECTED]>,
ndrianina  <[EMAIL PROTECTED]> wrote:
>
>  Hello,
>
>  [ network dev. in C-UNIX ]
>
>  I'm writing an app to monitor TCP/IP connections on my computer.
>  ( Linux RH 5.2 kern 2.0.36 )
>
>  Now I have the TCP port number of a connection. How can I get
>(very quickly) the name of the program (executable file) using that
>connection ?
>
>  I think It'll be okay if I get the PID of the process using that
>connection.

Use fuser.

>bonus : - Is it possible for multiple process to use the same port number
>         for multiple connections (what about setsockopt SO_REUSEADDR) ? 
>         If so, what else do I need to find the right process ? And how
>         can I do that ?

Only one process can bind a listening socket to a port at a time.  However,
if that process forks, any of the child processes can call accept() on it.
If multiple processes are waiting for a connection to come in, it will be
given to just one of them.  This is essentially the same logic as multiple
processes calling read() on the same descriptor that they inherited from a
parent.

Without SO_REUSEADDR you can't bind to a port if there are *any* processes
using that local port.  With the option, only listening sockets prevent it.

-- 
Barry Margolin, [EMAIL PROTECTED]
GTE Internetworking, Powered by BBN, Burlington, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Don't bother cc'ing followups to me.

------------------------------

From: [EMAIL PROTECTED]
Subject: Re: connecting machine to internet via modem causes loss of local network 
access
Date: Fri, 12 Feb 1999 18:14:29 GMT

Do you have any idea how I do this?  The basic configuration for the LAN i
copied off one of the WinNT machines next to it (changed the IP address
ofcourse).  I didn't have to specify any additional routing info.  This is the
info I have

IP Address  : 170.146.12.159
Subnet Mask  : 255.255.255.192
Default Gateway  : 170.146.12.129

The local LAN has IP address that all start with 170.146.xxx.xxx.  I want to
access these locally, and everything else I want to access through the dialup.
How would I specify this as a routing command?

Your help is appreciated.


Kenneth




In article <[EMAIL PROTECTED]>,
  Jerry Shenk <[EMAIL PROTECTED]> wrote:
> Sounds like you are overwriting your default gateway when you dialup.
> You might be able to overcome that by putting in a static route to your
> internal networks.
>
> [EMAIL PROTECTED] wrote:
> >
> > My PC running Linux is connected to my LAN, via a token ring network card.
I
> > have complete access to the network.  However when I connect to the internet
> > using PPP  I lose all access to the local network.  I cant even ping the LAN
> > network interface of my PC.  When I disconnect from the internet I regain
> > access to the LAN.
> >
> > The local network has internal IP addresses assigned 170.146.xxx.xxx and the
> > IP address from the ISP is usually 32.102.xxx.xxx.  I would like to setup
the
> > machine so that all 170.146.xxx.xxx addresses are access through the local
> > LAN, and everything else is accessed through the dial-up PPP connection.
> >
> > Any help would be appreciated.
> >
> > Thanks in advance
> >
> > Kenneth
> >
> > -----------== Posted via Deja News, The Discussion Network ==----------
> > http://www.dejanews.com/       Search, Read, Discuss, or Start Your Own
>

============= Posted via Deja News, The Discussion Network ============
http://www.dejanews.com/       Search, Read, Discuss, or Start Your Own    

------------------------------

From: Yifang Gong <[EMAIL PROTECTED]>
Subject: problem with 3COM 3C900B-TPC-COMBO
Date: Fri, 12 Feb 1999 14:00:50 -0500

I have a weird problem on my 3COM 900B-TPC-COMBO.

My machine is a new PII-400 Dell Dimension XPS-R400. I am running
RH5.2.  Driver is 3c59x.  The machine is in a small network of about 50
machines connected with BNC cables.  I got a very slow connection to the
machines which are located at the other side of my building. (connection
to the machines in my office is fine)  At first, I thought it is the
cable problem.  However, the strange thing is when I connect the machine
using  twist-pair and an adapter (convert BNC to TP), the connection
became normal.  At this moment, I thought it is the problem of the
card.  So I called Dell, and got a replacement card .  I put the new
card into my machine.  The problem is exactly the same.

Is it a hardware problem of software problem?

any comments will be appreciated.

Yifang
[EMAIL PROTECTED]




------------------------------

From: [EMAIL PROTECTED]
Subject: Router/Firewall performance problem
Date: Fri, 12 Feb 1999 18:35:13 GMT

We have been using this setup for about 10 months:

200 Mhz Pentium
RedHat 5.1
2.0.35 kernel
patched w/ ipchains-1.3.8

Serves as gateway/firewall for about 15 sun/solaries machines (sun
network).  Uses ipchains packet filtering.

Here's what it looks like:

PC == Linux PC firewall


                     subnet
                    /
                   /
  internet--------= router
                   \
                    \             |----|
                     subnet(S)----| PC |----- sun network (15 machines)
                     4 machines   |----|      (SUNS)


At times, performance has degraded--with inbound packets to the SUNS from
subnet S at transfer rates of around 2 kB/s.  Typically, we get rates around
600 kB/s.

This has happened about 6 times over the period of 10 months--rebooting the
PC has been the solution thus far.  The time between these events appears to
be random.  We have gone as long as 4 months with no problems and as little
as three days before experiencing the same performance problem.

When the problems happens, apparently only inbound packets to the SUNS are
affected, ie, throughput of outbound packets (SUNS --> subnet S) appears to
be normal.  For example, ftp transfer rates of around 600 kB/s are
experienced when moving a file from a SUNS machine to a subnet S machine.
BUT, the ftp transfer rate is only around 2 kB/s when moving a file from a
subnet S maching to a SUNS machine.

Again, rebooting clears up the problem.

Now, has anybody else experienced this?
And, any suggestions?

We have noticed nothing unusual on the PC.

Any help would be greatly appreciated.

thanks,
--tom


============= Posted via Deja News, The Discussion Network ============
http://www.dejanews.com/       Search, Read, Discuss, or Start Your Own    

------------------------------

From: Heinz-Detlev Koch <[EMAIL PROTECTED]>
Crossposted-To: 
de.alt.comm.isdn4linux,de.comm.isdn.computer,de.comp.os.linux,de.comp.os.unix.linux.hardware,fido.ger.linux,linux.act.net,linux.dev.diald,linux.dev.isdn,linux.dev.net,linux.dev.ppp,list.linux-activists.net,list.linux-a
Subject: Re: Q: ELSA QUICKSTEP 1000PRO-PCI  &  SuSE LINUX 6.0 ?
Date: Thu, 11 Feb 1999 18:25:32 +0100

Thorsten Joehnk wrote:
> 
> Hi!
> 
> I would like to install the ISDN Adapter "ELSA QUICKSTEP 1000PRO-PCI" under
> SuSE LINUX 6.0.
> Could somebody please confirm that it is  properly working?
> SuSE�s compatibility database is not very clear about this point.
> 

Confirmed. At least, it is working for me.
I'm using it at home in a linux box that acts as a gateway (ip
masquerading) for some other machines. I upgraded to SuSE linux 6.0 two
weeks ago and had no problems.

Best regards, 
Heinz-Detlev Koch

------------------------------

From: [EMAIL PROTECTED] (Clifford Kite)
Subject: Re: PPP problems under 2.2.1
Date: 12 Feb 1999 13:02:58 -0600

Cord Seele ([EMAIL PROTECTED]) wrote:

: I am sorry to tell you, but I had a similar problem that got cured when 
: using xonxoff instead of crtscts!

: I had been upgrading a SuSE 5.3 distribution to 6.0 which comes with a 2.0.36
: kernel and pppd 2.3.5. I have a noname modem and an AMD K6-200 on a gigabyte TX3 mb.

: To me, this supports the idea of a pppd-2.3.5 bug...

Not so, there are many people that use the crtscts option without this
problem - including me.  Otherwise the bug would have surfaced in the
newsgroups long before now.  Pppd doesn't distinguish between brands.

--
Clifford Kite <[EMAIL PROTECTED]>                       Not a guru. (tm)
/* Governments should be changed like diapers - often and for the
 * same reason. */

------------------------------

From: [EMAIL PROTECTED] (RLopez6836)
Subject: ppp help please
Date: 12 Feb 1999 19:50:04 GMT

I decided to put sound on the back burner and hook up my modem for ppp
(something easy right?). PPP files are all over my drive. When I run /sbin/pppd
i get the message "kernel not compiled for ppp, or modules not loaded". When i
compiled my kernel i checked network support built in not modular. Do i have to
use modules for ppp. If so how do i do it? All the help files say go to some
directory which i go to and run ./configure then make, etc. I do and bash says
no such command. I reinstalled ppp.rpm from my cd but still have the same
problem. Any ideas? 


------------------------------

From: mark ross <[EMAIL PROTECTED]>
Subject: Re: Problem: Linksys Fast 10/100 with tulip.c v90 driver
Date: Fri, 12 Feb 1999 11:19:56 -0800

HI,
Are you using a 100mb hub/switch ?
After much work (and 4 ethernet cards later) I discovered that my
linksys cards would not work in my windows95 box, UNLESS I forced the
card into 10mbs mode.

I have not tried the linksys under linux, But if it wont work under 95
then I have doubts.

Too bad, I got 10 free cards with my purchase of the Linksys 100mb
switch.

let me know what you find......

Bob Glover wrote:
> 
> I recently installed a pair of LinkSys Fast 10/100 cards.  One in a Linux PC
> (RH 5.1 -- kernel compiled with tulip.c v90) and the other in a Windoze 95
> box.
> 
> I can ping localhost, loopback, and the local IP address on each PC.  But I
> can't ping either machine from the other.  I had this working for a short
> time, but it stopped working when I rebooted (just once, to test my boot
> scripts).
> 
> I'm using the IP addresses in all cases, so name resolution shouldn't be a
> factor.   I have a 4-port hub (LinkSys) and I can clearly see from watching
> the LED's that data is making it from the Windoze PC to the hub.  When I
> ping the Windows PC from Linux, I don't see as much activity as when Windows
> tries to ping the other way.  Sometimes I don't see a noticeable "blip" for
> 10 or 15 seconds, but I do occasionally see something.
> 
> I have the routing set up as explained below.
> 
> Linux IP address: 192.168.0.3
> Here are my Linux network configuration commands:
> 
>     ifconfig eth0 192.168.0.3 netmask 255.255.255.0 up
>     ifconfig lo 127.0.0.0
>     route add -net 192.168.0.0 netmask 255.255.255.0 eth0
>     route add -host 127.0.0.1 lo    # i think this is it.  I can't look
> right now -- loopback works for me though
> 
> # windoze seems to be working
> Windoze (static) IP address:  192.168.0.2
>     Windoze netmask 255.255.255.0
> 
> One more thing that might be important: shortly after running the ifconfig
> for eth0, I get a "transmitter stopped" message on the console.  When I look
> in /var/log/messages I see something about "switching to half-duplex".  Now,
> I know I can't use full duplex with a hub, but how the heck do I keep it
> from doing that in the first place?  And is that my overall problem?
> 
> I read the NET-3-HOWTO.  I read man pages for ifconfig, route, ping, etc.  I
> went to LinkSys.com and got the latest tulip.c driver.  I checked DejaNews
> with every possible permutation of keywords I could think of!  Is there some
> other archive source I should be checking (aside from man pages and HOWTOs)?
> 
> Oh, I also tried cycling the power to the hub in case it was paritioning the
> "LAN".  I thought it might have interpreted the Linux PCs initial attempt at
> full duplex as an error condition worthy of paritioning.  It didn't help,
> but maybe I didn't cycle the power at the right time.
> 
> I'd be grateful if anyone could help me on this.  I've be trying for two
> days now.  Any ideas, especially stupid ones, are appreciated (since it's
> probably a stupid mistake on my part that caused all this).
> 
> Thanks!!

------------------------------

From: Kevin Dick <[EMAIL PROTECTED]>
Subject: Re: IPCHAINS and ip port forwarding
Date: Fri, 12 Feb 1999 14:12:43 -0600



Kevin Dick wrote:

> We're trying to use IP chains with our new 2.2.1 kernel.  Our big
> problem at the moment is that we're unable to figure out from man pages,
> HOWTO docs, news postings, etc. how to for the SMTP port on the external

 .................................... how to forward the SMTP...............
sorry

>
> (Internet) port to our internal (LAN) port.
>
> All outbound ipchains work fine (except ftp-data, we're still wrestling
> with this too).  Does anyone know for SURE if ipchains can do this?   We
> seen some stuff on  ipportfw and ipmasqadm, but these seem like they're
> only good for ipfwadm.
>
> Please help if you can.  If you do, I'll send you a scan of a Dilbert
> cartoon.
>
> Kevin


------------------------------

From: Rick Onanian <[EMAIL PROTECTED]>
Subject: Re: ISPS and modems for LINUX
Date: Fri, 12 Feb 1999 14:23:42 -0500

jamesk wrote:

> I am new to LINUX and just finished installing the Redhat 5.1 version. My
> first success was to get LINUX to boot from a DOS prompt using LOADLIN ( much
> faster than a boot floppy ). I was very encouraged by my small victory until
> I read in a RedHat hardware compatability list that my modem is one of the
> few that won't work out of the box with LINUX. It is a USRobotics 56K
> Sportster. Does anyone know where one might find a driver for this modem? If
> this is not feasible, would someone recommend a decent external modem?  What
> are the requirements of a LINUX-friendly ISP? Any recommendations?  Thanx.

If you have a US Robotics Sportster 56k, than you are compatible...I get the
feeling that you have a US Robotics Sportster Winmodem 56k, in which case you
need to get a modem that supports operating systems other than Windows (a non
plug-and-play modem).  See http://www.o2.net/~gromitkc/winmodem.html for a
semi-complete listing of modems, and information on how and why.

  rick

>
>
> -----------== Posted via Deja News, The Discussion Network ==----------
> http://www.dejanews.com/       Search, Read, Discuss, or Start Your Own


------------------------------

From: "Robert L. Ziegler" <[EMAIL PROTECTED]>
Reply-To: [EMAIL PROTECTED]
Subject: Re: linux firewall and ICQ
Date: Fri, 12 Feb 1999 15:05:48 -0500

[EMAIL PROTECTED] wrote:
> 
> On Thu, 11 Feb 1999 17:27:27 -0500, "Robert L. Ziegler"
> <[EMAIL PROTECTED]> wrote:
> 
> >Gert Wurzer wrote:
> >>
> >> Does anybody know how to get icq working behind a linux
> >> firewall?
> >
> >
> >Try this.  If it doesn't work, please let me know so that I can fix it
> >in the examples.

<snip>

> now try the ipchains equiv...LOL
> I'm trying to migrate to 2.2 but cant figure out the ipchains...
> (not real good with ipfwadm eather)

The firewall design program at http://rlz.ne.mediaone.net/linux/firewall
will custom design either ipfwadm or ipchains firewall scripts for you. 
Your browser will need to support frames and JavaScript.

As for ICQ, the client rules weren't enough for Gert.  (I don't use ICQ.
 I just try to support the firewall rules because other people use it...)

The extra server rules, if needed, would be:

EXTERNAL_INTERFACE="eth0"               # whichever you use
UNPRIVPORTS="1024:65535"
IPADDR= your IP address


��� # ICQ server (4000)
��� # -----------------

��� ipfwadm -I -a accept -P tcp� -W $EXTERNAL_INTERFACE \
����������� -S any/0 $UNPRIVPORTS \
����������� -D $IPADDR 2000:4000

��� ipfwadm -O -a accept -P tcp -k� -W $EXTERNAL_INTERFACE \
����������� -S $IPADDR 2000:4000 \
����������� -D any/0 $UNPRIVPORTS

��� ipfwadm -I -a accept -P udp� -W $EXTERNAL_INTERFACE \
����������� -S any/0 $UNPRIVPORTS \
����������� -D $IPADDR 4000

��� ipfwadm -O -a accept -P udp� -W $EXTERNAL_INTERFACE \
����������� -S $IPADDR 4000 \
����������� -D any/0 $UNPRIVPORTS


I found these postings on ICQ from our local newsgroup.  Maybe there's
something helpful in here.  I removed people's personal information.


> Note, in order to use the below you need to build a kernel with
> "experimental software"
> enabled and you must enable ipautofw support. I can't remember where I got
> the
> ipautofw executable from but its somewhere on the net...
>
> From: http://dijon.nais.com/~nevo/masq/chat.html#icq
> ICQ
>��������� Submitted by: many many people.
>
>��������� ipautofw -A -r tcp AAAA BBBB -h www.xxx.yyy.zzz
>
>��������� I have taken some discretion here as we've gotten lots of different
> solutions to this
>��������� program. I will summarize what I have seen as the best
method. I
> would like to
>�������� thank everyone who was contributed in getting this working properly.
> --Lee
>
>��������� First you will need to run the previous ipautofw command for each
> computer that
>��������� will be running ICQ. You want AAAA and BBBB to be at least 11 ports
> apart.
>��������� That is the minimum that ICQ will accept without complaining. Try
> to seperate
>��������� the port ranges so the problems with ipautofw aren't noticed so
> badly (i.e.
>�������� 2000-2010). You want to change www.xxx.yyy.zzz to the ip of the
> machine
>�������� running ICQ.
>
>��������� Then disconnect from the ICQ network. Go into the Preferences
>��������� Folder/Connections tab and select "Permanent LAN" and "I'm
behind a
> proxy
>��������� server/firewall." Then click on "Firewall Settings" and set
ICQ to
> use the range
>��������� of tcp ports from AAAA to BBBB not the default automatic selection
> of ports.
>��������� Finally, reconnect to the ICQ network to apply the new settings.
>
>��������� Brian Manning has suggested adding a forward for port 4000 to allow
> the client
>��������� machines to go through the registration process
>

============================================================================

Subject: Re: Firewall design tool and ICQ
Date: Mon, 25 Jan 1999 19:50:14 GMT

And, for people using or thinking about using the new kernel, ipautofw has
been replaced with ipmasqadm. Which I got from
ftp://rpmfind.net/linux/contrib/libc6/SRPMS/ipmasqadm-0.4.1-2.src.rpm



And if anyone has the definitive answer, please let me know.


Bob

------------------------------

From: grumpy <[EMAIL PROTECTED]>
Subject: Re: Networking 2 win98 boxes and a linux box
Date: Fri, 12 Feb 1999 20:27:32 GMT

Firwall howto for step-by-step instructions
http://metalab.unc.edu/Linux/HOWTO/Firewall-HOWTO.html

------------------------------

From: [EMAIL PROTECTED]
Subject: Re: S.u.S.E. 6:0 + IPX Network
Date: Fri, 12 Feb 1999 20:19:48 GMT

[posted and mailed]
Just add some lines like

ipx_interface --auto_configure=on etc.
to your /etc/rc.c/rc.local script.  This is run every time you start up.
(SUSE may put rc.local somewhere else but it should definitely be under
the /etc/ directory - do 'find | grep -i rc.local ' to find it.)

  [EMAIL PROTECTED] wrote:
> Hallo everybody,
>
> i try to connect my S.u.S.E 6.0 PC to our companies Novell IPX network, my
> problem is that i have no idea to auto_configure and auto_setup the IPX
> protocol on startup.
>
> The solution to type in the ipx_configuration everytime the PC boots up is not
> realy that what i'm trying to solve.

============= Posted via Deja News, The Discussion Network ============
http://www.dejanews.com/       Search, Read, Discuss, or Start Your Own    

------------------------------


** FOR YOUR REFERENCE **

The service address, to which questions about the list itself and requests
to be added to or deleted from it should be directed, is:

    Internet: [EMAIL PROTECTED]

You can send mail to the entire list (and comp.os.linux.networking) via:

    Internet: [EMAIL PROTECTED]

Linux may be obtained via one of these FTP sites:
    ftp.funet.fi                                pub/Linux
    tsx-11.mit.edu                              pub/linux
    sunsite.unc.edu                             pub/Linux

End of Linux-Networking Digest
******************************

Reply via email to