Linux-Networking Digest #202, Volume #12         Thu, 12 Aug 99 13:13:38 EDT

Contents:
  Need an IP Chains rule (dmalcolm)
  Re: IP Masquerading -Step by Step using Ipchains (dmalcolm)
  Re: Cloning (John Thompson)
  Re: RCP errors ("Dan Tager")
  IP address attribution ("st�phane d'Acremont")
  Re: symbolic link not work in ftpd (Thorsten Kukuk)
  Re: ipchains Newbie Q (Monte Phillips)
  Can't access samba shares over ppp? (Khurram Farhan Hassan)
  Re: Lag time and Telnet/FTP (M. Rice)
  Re: RCP errors ("Dan Tager")
  Re: RCP errors ("Dan Tager")
  Re: RCP errors ("Dan Tager")
  Re: RCP errors ("Dan Tager")
  Re: RCP errors ("Dan Tager")
  Re: RCP errors ("Dan Tager")
  PPP Errors Messages (Leonard Hardy)
  Re: $15 card or $98 card? (Greg Leblanc)

----------------------------------------------------------------------------

From: dmalcolm <[EMAIL PROTECTED]>
Subject: Need an IP Chains rule
Date: Thu, 12 Aug 1999 09:17:02 -0500

This is a multi-part message in MIME format.
==============51D26F8978116E301FCB1247
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit


I am running Slackware Linux 4.0 and have a masquerading firewall
running and working.  I used Ian Hall-Beyer's script to get everything
running and it seems to be just fine.  I need a rule to allow http
access to out web server that is located inside the firewall.

If that is not possible can I do this with SOCKS or TIS FWTK or can I
use Apache as the proxy? Can I do it on the same machine as the
firewall?  Its a P5-166

Thanks.


Dan Malcolm
[EMAIL PROTECTED]
============================================
Don't you wish life had an UNDO function?

==============51D26F8978116E301FCB1247
Content-Type: text/x-vcard; charset=us-ascii;
 name="dmalcolm.vcf"
Content-Transfer-Encoding: 7bit
Content-Description: Card for dmalcolm
Content-Disposition: attachment;
 filename="dmalcolm.vcf"

begin:vcard 
n:Malcolm;Dan
tel;fax:256-895-9934
tel;home:256-772-3109
tel;work:256-722-2840
x-mozilla-html:FALSE
org:Home
adr:;;1308 Nolan Court;Madison;AL;35758;
version:2.1
email;internet:[EMAIL PROTECTED]
title:Software Engineer/SysAdmin
x-mozilla-cpt:;25680
fn:Dan Malcolm
end:vcard

==============51D26F8978116E301FCB1247==


------------------------------

From: dmalcolm <[EMAIL PROTECTED]>
Subject: Re: IP Masquerading -Step by Step using Ipchains
Date: Thu, 12 Aug 1999 09:35:33 -0500

This is a multi-part message in MIME format.
==============DE99DC68DDF753939C11701A
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

I just did it in Slackware 4.0 but I am not an expert at it. The new
2.2.x kernel has firewalling built it but a couple pieces are missing.
I read /usr/doc/Linux-HOWTOs/IPCHAINS-HOWTO and
/usr/doc/Linux-HOWTOs/FIREWALL-HOWTO.  You need to enable IP-Forwarding
in the kernel build.  I also used Ian Hall-Beyer's script that I found
at:

http://nerdherd.org/ipchains/

Hope this helps.

Dan Malcolm
[EMAIL PROTECTED]

"Ferdinand V. Mendoza" wrote:

> Hi Folks,
> I need a link that could point me to
> to a good procedure in configuring
> IP masquerading using IP chains
> in Redhat 6.0.
> I will use to this to connect my Win95
> clients to the internet through a Linux
> box with a modem connection.
> Thanks in advance.
>
> Ferdinand

==============DE99DC68DDF753939C11701A
Content-Type: text/x-vcard; charset=us-ascii;
 name="dmalcolm.vcf"
Content-Transfer-Encoding: 7bit
Content-Description: Card for dmalcolm
Content-Disposition: attachment;
 filename="dmalcolm.vcf"

begin:vcard 
n:Malcolm;Dan
tel;fax:256-895-9934
tel;home:256-772-3109
tel;work:256-722-2840
x-mozilla-html:FALSE
org:Home
adr:;;1308 Nolan Court;Madison;AL;35758;
version:2.1
email;internet:[EMAIL PROTECTED]
title:Software Engineer/SysAdmin
x-mozilla-cpt:;25680
fn:Dan Malcolm
end:vcard

==============DE99DC68DDF753939C11701A==


------------------------------

From: John Thompson <[EMAIL PROTECTED]>
Subject: Re: Cloning
Date: Thu, 12 Aug 1999 07:03:36 -0600

tod wrote:
 
> Hi Linux users:
> Please...I would be grateful for an answer to my question about cloning
> an ext2 drive.  After posting this question twice, I have been told;
> "You don't need Ghost or DriveClone" and "Why would you want to do it
> that way?"
> 
> Is it possible to use the above mentioned utilities to clone an ext2
> file system using two IDE hard drives?

Ghost and/or Driveclone should be able to do the job, but
why not use "dd" instead?  It should have come with your
linux distribution and won't cost you anything more.  If you
already have ghost or driveclone you may find the interface
nicer than dd's, but if you haven't bought these yet why not
give dd a try first?

-- 

-John ([EMAIL PROTECTED])

------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "st�phane d'Acremont" <[EMAIL PROTECTED]>
Subject: IP address attribution
Date: Thu, 12 Aug 1999 15:18:34 +0000

Hi,
I'm trying to have two PCs connnected by modem. None of them has a
static IP address. Since I just want the two PCs to get linked without
joining the outside (Internet), I suppose I can give the computers two
'fake' IPs randomly chosen.
I have set up a ppp link between them and the connection is OK. However,
when I run ifconfig, the ppp interface doesn't always appear, and even
when it appears, there's no TCP/IP connexion: from the client I can ping
the IP address of the client but not the server's one.
Does anyone know how to establish a correct TCP/IP link?
And if I can't do so, does it really prevent me from using ftp or Samba
(which both seem to require an IP address)?

Thanks you,
                        Patrick LUCIEN


------------------------------

From: Thorsten Kukuk <[EMAIL PROTECTED]>
Subject: Re: symbolic link not work in ftpd
Date: 12 Aug 1999 15:05:19 GMT


Hi,

ftpd makes a chroot to /home/ftp. So now your links shows to
/home/ftp/mnt/dos which does not exist. Links outside the
ftp home directory does not work with wu-ftpd and bsd ftpd.
I don�t know if there are ftp daemons (like proftpd) which
could handle this.

  Thorsten

Robert_Glover <Please_reply_to@newsgroup> wrote:
> I thought that was a configuration issue.  Check the config file.

> Lindoze 2000 wrote in message <[EMAIL PROTECTED]>...
> I also had that problem and permissions is not the problem.

> Jan-Albert van Ree wrote:
>>
>> Mars schreef:
>> >
>> > I'm running RH 6.0 and I want to make a vfat partition available
> for
>> > ftpd. So I make a symbolic link /mnt/dos to /home/ftp/pub/dos. It
>> > doesn't work while cd to that directory. I also try making a
> symbolic
>> > link /mnt/cdrom to /home/ftp/pub/cdrom and it fails too. It seems
> I
>> > cannot use other filesystem for ftpd. Am I missing anything?
>>
>> Have you checked the permissions for the link and the files?
>> --
>> Jan-Albert "Sliver" van Ree | [EMAIL PROTECTED]
>> 3D Sims Archive maintainer  | http://www.3dgamers.com

> --
> Thank you for your valuable input. Your useful answers will benifit
> other users as well.
> You are Linux!



> ########################################################
> ##                                                    ##
> ## My Experiment                                      ##
> ## http://www.FusionPlant.com                         ##
> ##                                                    ##
> ########################################################


-- 
Thorsten Kukuk       http://www.suse.de/~kukuk/       [EMAIL PROTECTED]
SuSE GmbH            Schanzaeckerstr. 10            90443 Nuernberg
Linux is like a Vorlon.  It is incredibly powerful, gives terse,
cryptic answers and has a lot of things going on in the background.

------------------------------

From: [EMAIL PROTECTED] (Monte Phillips)
Crossposted-To: alt.linux,alt.os.linux
Subject: Re: ipchains Newbie Q
Date: Thu, 12 Aug 1999 14:31:13 GMT

 "David Eno" <[EMAIL PROTECTED]> wrote:
>I want to share a dialup connection (ppp0) on my Mandrake 6.0 machine with a
>Win98 box that's logged in via Samba.
>Do I use ipchains to do this?  Where can I get information supplemental to
>the man pages?

Make sure you have ipchains installed.  Then if the following lines do
not error add them to you /etc/rc.d/rc.local file.

ipchains -P forward DENY
ipchains -A forward -i ppp0 -j MASQ
echo "1" > /proc/sys/net/ipv4/ip_forward

(if you are going to use ftp on net then add this line as well)

insmod ip_masq_ftp


those are the basics and should allow your clients onto your server
modem.   BTW  in Win9x  Internet Explorer  set the options Connection
to internal lan  rather than dialup (this does not affeft your dialup
if you still want to use a winmodem or such on th winbox.

g'luk


------------------------------

From: Khurram Farhan Hassan <[EMAIL PROTECTED]>
Subject: Can't access samba shares over ppp?
Date: Thu, 12 Aug 1999 15:16:28 GMT

Hi,

I have a Linux network running samba on the servers and it works great.
However, when I try to dial into the network from home, I can't access
the samba shares. I use Win98 at home and am authenticated by a radius
server. Any help would be appreciated.

Thanks.

--
Khurram


Sent via Deja.com http://www.deja.com/
Share what you know. Learn what you don't.

------------------------------

From: M. Rice <[EMAIL PROTECTED]>
Subject: Re: Lag time and Telnet/FTP
Date: Thu, 12 Aug 1999 15:49:08 GMT

I think that's probably what it is. The FTP reports connected right
away but the prompts take about the same amount of time it would take
to find no dns. Thanks a lot!

In article <[EMAIL PROTECTED]>,
  Ketil Froyn <[EMAIL PROTECTED]> wrote:

> It could be a DNS lookup problem, ftp and telnet wait for the DNS
> timeout before they give a prompt. Solution is to either set up a DNS,
> or simply put all your machine's addresses in the linuxbox's
> /etc/hosts file, with some nice names.
>
> Ketil Froyn
> --
> The angle of the dangle is proportional to the heat of the meat.
>
> http://www.ifi.uio.no/~ketilf/
> mailto:[EMAIL PROTECTED]
>


Sent via Deja.com http://www.deja.com/
Share what you know. Learn what you don't.

------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: "Dan Tager" <[EMAIL PROTECTED]>
Subject: Re: RCP errors
Date: Thu, 12 Aug 1999 07:46:39 -0400

QuestionExchange wrote in message <[EMAIL PROTECTED]>...
>> Linux box, I intermittently get the following errors...
>> On the local side I get the following console message...
>> remotehost.domain: Connection reset by peer
>> On the remote side I get the following...
>> rshd[20621]: [EMAIL PROTECTED] as user: cmd='rcp -p -t
>> /foo/bar/'
>> Aug 11 12:42:02 host inetd[127]: shell/tcp server failing
>> (looping), service
>> terminated
>> The first 400 or so files get copied just fine.  Any ideas?
>> --Dan
>
>--miked348
>
>--
>  This answer is courtesy of QuestionExchange.com
>
http://www.questionexchange.com/servlet1/showUsenetGuest?ans_id=2616&cus_id=
USENET&qtn_id=1999

OK, that wasn't very helpful.  What is ufsdump?  Is my problem most likely
caused by the large number of files?  If I create a tar file first, will
that solve my problem?

--Dan




------------------------------

From: Leonard Hardy <[EMAIL PROTECTED]>
Subject: PPP Errors Messages
Date: 12 Aug 1999 16:18:05 GMT

I have setup PPP using the Linuxconf facilities.  I dial in and connect,
the negotiation seems to be ok, and my static IP address looks good.  When
I look in the messages file, I see the following errors:

Recieved bad configure - nak/reg: 11 05 00 01 03
CCP: timeout sending Config-Requests


I cannot ping anything, either via ip or name, the connection stays up,
but is inoperable.

What did I do wrong?

-- 
==============================================================================
Len Hardy Bartlett, IL USA

[EMAIL PROTECTED]           --Work :-(
[EMAIL PROTECTED]        --Play ;-)

http://www.xnet.com/~ljhardy/bartll.shtml       Bartlett Little League   
                                                on the web...

------------------------------

From: Greg Leblanc <[EMAIL PROTECTED]>
Subject: Re: $15 card or $98 card?
Date: Thu, 12 Aug 1999 15:56:08 GMT

In article <7otn17$ghf$[EMAIL PROTECTED]>,
  Mark Hahn <[EMAIL PROTECTED]> wrote:
> > that some cards cost as little as $15 and some as hign as $98!
> > what's the difference between them?
>
> marketing.  the 98 is probably some gilded card with "3com" or "intel"
> on it.  the $15 is probably a noname with a ne2k clone or similar.
> in most cases, a $15 card is going to work very nicely for you;
> in some cases, you should trade up to a $25 tulip/tulipclone.
>
> there's _ZERO_ reason to buy an overpriced 3com/etc.

Zero reason unless you care about having a card that was designed within
 the last 10+ years.  And zero reason unless you care about being able
to call the company and get support within 15 minutes, and a replacement
card overnighted if you ask.  And zero reason if you don't care about
your PC going to 15% CPU usage in order to send one packet over
ethernet.
       Greg
>

--
It's pronounced "sexy" not "scuzzy"!


Sent via Deja.com http://www.deja.com/
Share what you know. Learn what you don't.

------------------------------


** FOR YOUR REFERENCE **

The service address, to which questions about the list itself and requests
to be added to or deleted from it should be directed, is:

    Internet: [EMAIL PROTECTED]

You can send mail to the entire list (and comp.os.linux.networking) via:

    Internet: [EMAIL PROTECTED]

Linux may be obtained via one of these FTP sites:
    ftp.funet.fi                                pub/Linux
    tsx-11.mit.edu                              pub/linux
    sunsite.unc.edu                             pub/Linux

End of Linux-Networking Digest
******************************

Reply via email to