Re: [leaf-user] Dachstein LEAF Firewall ipmasqadm help

2006-05-08 Thread Mike Noyes
On Sat, 2006-05-06 at 06:36, Kevin wrote: > How can I set the following rule to auto load when I have to reboot the > router? ie. where to input in the config files, mostly a newbie to Linux > > > I am using Charles's Dachstein version 1.02 with PPPOE Kevin, Please consider using a newer LEAF

RE: [leaf-user] Dachstein Bin to ISO?

2004-12-19 Thread Mike Noyes
On Fri, 2004-12-17 at 07:14, [EMAIL PROTECTED] wrote: > Charles, I don't mean to be dense (although sometimes I am!) Mike > Noyes posted that Dachstein had been updated to the latest kernel > (2.2.19-3 or something similar) and had a few package improvements. > When I retrieve the image his an

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Mike Noyes
On Fri, 2004-12-17 at 20:55, Ken Gentle wrote: > An updated Dachstein was a lot to hope for... back to collecting modules > for Bering uClib... Ken, Bering uClibc files are located in these locations: https://sourceforge.net/project/showfiles.php?group_id=13751&package_id=67534 http://leaf-proj

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Mike Noyes
On Fri, 2004-12-17 at 08:17, Charles Steinkuehler wrote: > I think the Dachstein announcements are old posts that got relisted somehow > with all the changes to the website lately (Mike Noyes is updating the > dynamic php code that generates the web-pages, and the SourceForge folks > have been d

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Simon Bolduc
Kenneth, If you are pretty sure it's a CD image, you could always burn it to a CDRW - test and see if it actually boots Dachstein, and then make an ISO out of it. That would likely ensure an image that you can work with. Otherwise you could post the link to the bin file on the list and someone w

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: Charles, I don't mean to be dense (although sometimes I am!) Mike Noyes posted that Dachstein had been updated to the latest kernel (2.2.19-3 or something similar) and had a few package improvements. When I retrieve the image his announcement referenced, it was on Sour

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-17 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: Charles, the "new" distribution is a "BIN" instead of an "ISO" ? if it were an ISO I think I know how to attack it. Is there also an ISO for the new distribution? Dachstein is available in both CD-ROM (ISO) and floppy-disk format: http://lrp2.steinkuehler.net/DiskImages/Dac

Re: [leaf-user] Dachstein Bin to ISO?

2004-12-16 Thread Charles Steinkuehler
Ken Gentle wrote: Guys, I know I've seen this on this list and in the documentation, but I can't seem to put my hands on it. I want to take the new Dachstein bin image and make an ISO cd out of it -- would some kind, benevolent soul please point me at the correct FM to RT? You probably want the

Re: [leaf-user] Dachstein reboot

2004-08-28 Thread Tom Eastep
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 GD wrote: | I suspect it might be a hardware problem, | but am not quite sure. What could cause the firewall | reboot itself? Almost certainly a hardware problem -- the last time that it happened to me, incredibly the faulty component was *the monitor*

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-28 Thread Charles Steinkuehler
Craig Johnson wrote: The only documentation I can point you to for the border_router option is the shell-script source that builds the firewall rules. So when you use the border_router option, what is the setting for IPFILTER_SWITCH in network.conf? I beleive it should be set to "router". Look

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Tom Eastep wrote: If you are going to use Bering, I would start with a shorwall.lrp from shorewall.net. Those packages have all NAT turned off by default. The best best document for you to read is http://shorewall.net/shorewall_setup_guide.htm. I meant to say that the best *Shorewall* documen

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Craig Johnson wrote: -Original Message- From: Tom Eastep [mailto:[EMAIL PROTECTED] Sent: Wednesday, 28 April 2004 8:40 To: Craig Johnson Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein as border_router? (public ip addresses etc) So if NAT is turned off and I have straight

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
> -Original Message- > From: Tom Eastep [mailto:[EMAIL PROTECTED] > Sent: Wednesday, 28 April 2004 8:40 > To: Craig Johnson > Cc: [EMAIL PROTECTED] > Subject: Re: [leaf-user] Dachstein as border_router? (public > ip addresses etc) > > So if NAT is turned off

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Tom Eastep
Craig Johnson wrote: So if NAT is turned off and I have straight-forward routing happening, will the shorewall rules mean only what it says will get through? Or will the shorewall just forward packets addressed to the firewall to another server, without interfering with packets addressed to the oth

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
> Date: Tue, 27 Apr 2004 00:23:59 -0400 > From: George Metz <[EMAIL PROTECTED]> > To: [EMAIL PROTECTED] > Subject: Re: [leaf-user] Dachstein as border_router? (public > ip addresses > etc) > > Don't know about shorewall (which you would have to configure

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
> The only documentation I can point you to for the > border_router option > is the shell-script source that builds the firewall rules. So when you use the border_router option, what is the setting for IPFILTER_SWITCH in network.conf? > Hmm...I suspect the ISP will consider anything coming do

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Charles Steinkuehler
Craig Johnson wrote: Thanks for the quick reply! Some more stuff below... > * what is the best way/distro to setup a LEAF box as this kind of border > router? (I noticed references to border_router options on the dachstain > network.conf documentation page, but haven't been able to find any > s

RE: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Craig Johnson
Thanks for the quick reply! Some more stuff below... > > * what is the best way/distro to setup a LEAF box as this > kind of border > > router? (I noticed references to border_router options on > the dachstain > > network.conf documentation page, but haven't been able to find any > > substantial

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-27 Thread Charles Steinkuehler
Craig Johnson wrote: Wondering if I can get some help? I have a static public IP from ISP for an ADSL account (call it addrISP). We also have our own public IP range. I want to setup an LEAF box (eg dachstein), which holds the addrISP on one NIC, and one of our public IP addresses on another NIC.

Re: [leaf-user] Dachstein as border_router? (public ip addresses etc)

2004-04-26 Thread George Metz
Don't know about shorewall (which you would have to configure to allow VPN traffic to pass through to that specific IP address), but what you basically want it to do is substitute for a traditional router. Effectively, you'd simply have to turn off NAT and let DNS and the public IP addresses do

[Fwd: Re: [Fwd: Re: [leaf-user] dachstein & vt100 emulation]]

2004-04-20 Thread Arnold Wiegert
Giovanni Franza wrote: Arnold Wiegert ha scritto: Thanks for the references. I looked them up and it seems Putty is good for telnetting only. Found TeraTerm Pro and have installed it. It works well for serial connections, but the 'page up' key seems to cause text to be deleted; the page down key

Re: [leaf-user] dachstein & vt100 emulation

2004-04-20 Thread Arnold Wiegert
Charles Steinkuehler wrote: Arnold Wiegert wrote: Hi all I'm still running Dachstein, but would like to use a serial line to access the 'box' from a Windows machine. Since I haven't found a good & free VT100 emulation program, I've used and older modem program which does a pretty good job, ex

[Fwd: Re: [leaf-user] dachstein & vt100 emulation]

2004-04-20 Thread Arnold Wiegert
Thanks for the references. I looked them up and it seems Putty is good for telnetting only. Found TeraTerm Pro and have installed it. It works well for serial connections, but the 'page up' key seems to cause text to be deleted; the page down key works as it does at the machine console. I'll inves

Re: [leaf-user] dachstein & vt100 emulation

2004-04-20 Thread Charles Steinkuehler
Arnold Wiegert wrote: Hi all I'm still running Dachstein, but would like to use a serial line to access the 'box' from a Windows machine. Since I haven't found a good & free VT100 emulation program, I've used and older modem program which does a pretty good job, except for the page up and down

Re: [leaf-user] dachstein & vt100 emulation

2004-04-20 Thread Tony
TeraTerm Pro? Putty? Tony - Original Message - From: "Arnold Wiegert" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, April 20, 2004 12:28 PM Subject: [leaf-user] dachstein & vt100 emulation > Hi all > > I'm still running Dachstein, but would like to use a serial line to

Re: [leaf-user] Dachstein routing to squid

2004-03-22 Thread Charles Steinkuehler
LaRoy McCann wrote: I have spent all weekend looking and trying to figure out how to make this work. Now it is time to ask for help. I have Dachstein CD running as a proxy-arp firewall for a system. Is it possible to have the firewall redirect all port 80 requests from the DMZ (eth2) and send

Re: [leaf-user] dachstein : multiple ip addresses on an interface

2004-03-07 Thread Ray Olszewski
At 06:52 PM 3/7/2004 +, Miguel De Avila wrote: I have 4 addresses that I would like to bind to the public interface of my dachstein firewall. The addresses appear to bind ok, but I can't ping the secondary addresses, only the primary address (216.65.38.18). From here, I can ping all 4 addres

Re: [leaf-user] Dachstein-CD and an Internal Modem

2004-02-22 Thread Richard Doyle
If memeory serves, you may need to load the serial.o module; setserial is not needed in for most configurations. -Richard On Sun, 2004-02-22 at 05:23, [EMAIL PROTECTED] wrote: > I have been very happy using the Dachstein-CD. I have configured 1 > for broadband, and also 1 for dialup with an

Fwd: RE: [leaf-user] dachstein mrtg problem

2003-12-10 Thread greg gede
> --- Joey Officer <[EMAIL PROTECTED]> wrote: > > This is in reference to the mrtg program file, the > > line references line > > 1485. There may be a syntax error. no, it's not the mrtg program. because it works just fine if the target is other router. > > > > another way to get what y

RE: [leaf-user] dachstein mrtg problem

2003-12-10 Thread Joey Officer
This is in reference to the mrtg program file, the line references line 1485. There may be a syntax error. another way to get what you want as a test is to perform an snmpget on your selected target. joey -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of gre

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-27 Thread George Metz
Negative, 192.168.0/23 will route 192.168.0.0/24 and 192.168.1.0/24 but ignore 192.168.2.0/24. You'd need to do a /22 to do aggregate routing with the specified /24s, and at that you'd have two /24s floating in limbo. Victor McAllister wrote: Dachstein will not route between interfaces unless y

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-26 Thread Charles Steinkuehler
Mark Bynum wrote: All, It shouldn't be this hard. All I'm trying to do is route between my two internal networks of 192.168.1.0 and 192.168.2.0. Here is what I have: INTERN_NET="192.168.1.0/24 192.168.2.0/24" eth1_ROUTES="192.168.2.0/24_via_192.168.2.254" eth2_ROUTES="192.168.1.0/24_via_192.168.1.

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-26 Thread Victor McAllister
Mark Bynum wrote: Richard, Two questions: 1. What is wrong with Dachstein? Is it insecure? 2. I've tried your suggestions and still I can't ping either internal network from the other. But, I do know have a new route: 192.168.2.0/24 via 192.168.1.254 dev eth1 The other one didn't take. I don

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-25 Thread Mark Bynum
Richard, Two questions: 1. What is wrong with Dachstein? Is it insecure? 2. I've tried your suggestions and still I can't ping either internal network from the other. But, I do know have a new route: 192.168.2.0/24 via 192.168.1.254 dev eth1 The other one didn't take. I don't know why. Any o

Re: [leaf-user] Dachstein, 2 internal nets routing

2003-09-25 Thread Richard Doyle
On Thu, 2003-09-25 at 21:37, Mark Bynum wrote: > All, > > It shouldn't be this hard. All I'm trying to do is route between my two > internal networks of 192.168.1.0 and 192.168.2.0. Here is what I have: > > INTERN_NET="192.168.1.0/24 192.168.2.0/24" > eth1_ROUTES="192.168.2.0/24_via_192.168.2.254

Re: [leaf-user] Dachstein and ssh tunneling

2003-09-17 Thread Charles Steinkuehler
Alex McLintock wrote: Hi folks, I have a Dachstein firewall which I set up over a year ago - it works fine. But I now want to make a couple of linux servers available to the outside world through ssh. I thought about port forwarding - but I guess that wont cut the mustard for ssh. SSH works fi

RE: [leaf-user] Dachstein & lrpkg.cfg - BOOT_IMAGE=linux (nf!)

2003-09-06 Thread Alex Rhomberg
> When I try to use the lrpkg.cfg file to extend the command line length, > as described in various messages on this list and other documentation, > to load more packages from the second floppy. I thought lrpkg.cfg works only with *Bering*, not Dachstein, but I have never used Dachstein, so I can

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Charles Steinkuehler
Kevin wrote: I was curious, so I tried to hit my firewall without making any changes to its current state. I used a program call NetLab 1.4, freeware for windows. It has a time snyc function I use to keep my clocks updated. When I hit the main time server that worked through the firewall - salmon.m

Re: [leaf-user] dachstein NTP Internal Time Server - M$ freeware works

2003-03-17 Thread William Brinkman
Kevin, Thanks for weighing in with your results. I am up and running with a M$ freeware called "Dimension 4" on a 98se box. It uses the SNTP (Simple NTP) and for whatever reason, works well with the Dachstein firewall. It however, does not mention compatability with XP so - your mileage may var

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Kevin
: Mon, 17 Mar 2003 07:00:00 -0600 From: Charles Steinkuehler <[EMAIL PROTECTED]> To: William Brinkman <[EMAIL PROTECTED]> CC: [EMAIL PROTECTED] Subject: Re: [leaf-user] dachstein NTP Internal Time Server - Up and running William Brinkman wrote: > All, > > I put the NTP rpm in

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-17 Thread Charles Steinkuehler
William Brinkman wrote: All, I put the NTP rpm in my mandrake 9.0 linux box. Set the ntp.conf "server" to 192.168.1.254 (firewall address). Inserted a /etc/ntp.drift and put a 1 in the file. Started the ntpd daemon. Tested out the troubleshooting guide and on the mandrake box tried a: # ntpq -p

Re: [leaf-user] dachstein NTP Internal Time Server - Up and running

2003-03-16 Thread William Brinkman
All, I put the NTP rpm in my mandrake 9.0 linux box. Set the ntp.conf "server" to 192.168.1.254 (firewall address). Inserted a /etc/ntp.drift and put a 1 in the file. Started the ntpd daemon. Tested out the troubleshooting guide and on the mandrake box tried a: # ntpq -p 192.168.1.254 The re

Re: [leaf-user] dachstein NTP Internal Time Server - Any Bering Folks using this?

2003-03-16 Thread William Brinkman
Thank you Charles for the expert advice on upd. I did a little more snooping and turns out #netdate command (linux box) is port 37 while ntp is port 123. (I realize I'm beginning to sound like a total moron and should have done the homework and rtfmed). I downloaded a program called automachron

Re: [leaf-user] dachstein NTP Internal Time Server - udp internalport looks open

2003-03-16 Thread Charles Steinkuehler
William Brinkman wrote: Thank you Charles for the excellent lead! I took your advice and did a "#netstat -ldp | more" and got the following lines concerning port 123 (with apologies for the formatting problems): proto recv-Q send-Q local addr foreign addr state PID/Pgrm name udp 0 0 192.168.

Re: [leaf-user] dachstein NTP Internal Time Server - udp internal port looks open

2003-03-16 Thread William Brinkman
Thank you Charles for the excellent lead! I took your advice and did a "#netstat -ldp | more" and got the following lines concerning port 123 (with apologies for the formatting problems): proto recv-Q send-Q local addr foreign addr state PID/Pgrm name udp 0 0 192.168.1.254:123 0.0.0.0:*

Re: [leaf-user] dachstein NTP Internal Time Server - EXTERNAL portsnow open

2003-03-16 Thread Charles Steinkuehler
William Brinkman wrote: My M$ machine still cannot sync with the DS firewall with a "unable to contact server" and a mandrake 9.0 box with "netdate 192.168.1.254" run from root gets "connection refused". Looks like I'm still lost as how to open the internal port 123 for the time server. Port 123

Re: [leaf-user] dachstein NTP Internal Time Server - EXTERNAL ports now open

2003-03-16 Thread William Brinkman
All - A quick update, I inserted into network.conf, down about line 323, the list of servers matching the list from the ntpsimpl conf from the setup package menu. ie: EXTERN_UPD_PORT0="0/0 domain" EXTERN_UDP_PORT1="0/0 bootpc" EXTERN_UDP_PORT2="www.xxx.yyy.zzz/24 ntp" EXTERN_UDP_PORT3="aaa.bbb.c

Re: [leaf-user] dachstein NTP Internal Time Server

2003-03-15 Thread William Brinkman
Erich, Thanks for asking! I should have looked earlier! I examined the denied packets carefully, and yes, the selected internet time servers were getting blocked coming back to the firewall in a rather impressive (in volume of traffic) manner. I disabled the "servers" until I can start to let

Re: [leaf-user] dachstein NTP Internal Time Server

2003-03-15 Thread Erich Titl
William William Brinkman wrote the following at 00:03 16.03.2003: Greetings All- I really don't want to open the "EXTERNAL" upd ports and let my box be the time server to the world. No need... . What about your log files, do they indicate any port 123 traffic to be blocked? Erich THINK

RE: [leaf-user] Dachstein Port Forwarding

2003-03-08 Thread Doug Sampson
Hi all, I am back from vacation! This morning I attempted to remove M$ Proxy Server from the Exchange box and reconfigure TCP/IP settings. The Exchange box is now fully functioning behind the Dachstein router as originally intended. Note: the box had to be rebooted for the gateway address chang

Re: [leaf-user] Dachstein Port Forwarding

2003-02-14 Thread Mike Leone
Doug Sampson ([EMAIL PROTECTED]) had this to say on 02/14/03 at 15:07: > > > > But ... the ONLY change we are suggesting you make is to the Exchange > > server's default gateway. Does that *really* require a reboot > > on Windows? > > (I know the old joke about "You have moved your mouse - pre

RE: [leaf-user] Dachstein Port Forwarding

2003-02-14 Thread Doug Sampson
> > But ... the ONLY change we are suggesting you make is to the Exchange > server's default gateway. Does that *really* require a reboot > on Windows? > (I know the old joke about "You have moved your mouse - press > any key to > reboot", but surely Microsoft has make networking > reconfigu

RE: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Ray Olszewski
At 10:06 AM 2/11/03 -0800, Doug Sampson wrote: Ray/Charles, I was afraid you'd both still point to the TCP/IP settings of the Exchange box as the cause for the failure. I had thought that scanning a range of ports was to check if it was open. But it looks like my assumption was wrong. It checks f

RE: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Doug Sampson
Ray/Charles, I was afraid you'd both still point to the TCP/IP settings of the Exchange box as the cause for the failure. I had thought that scanning a range of ports was to check if it was open. But it looks like my assumption was wrong. It checks for responses and obviously the scanner isn't get

Re: [leaf-user] Dachstein Port Forwarding

2003-02-11 Thread Charles Steinkuehler
Doug Sampson wrote: No, Dachstein isn't replacing anything that used to exist at that address. I am still running a Proxy Server 2.0 at that address and it shows port 25 and 80 being open. Running a port scanner from outside the network against the Dachstein router shows only port 80 (and 22) as b

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Ray Olszewski
At 04:28 PM 2/10/03 -0800, Doug Sampson wrote: Ray, > But with all of that, I cannot connect (using telnet) to your > mail server > from here (though I can ping you and connect to the Web server). You couldn't- all attempts to port 23 are blocked. Of course they are. But I was attempting to te

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Doug Sampson
Ray, > But with all of that, I cannot connect (using telnet) to your > mail server > from here (though I can ping you and connect to the Web server). You couldn't- all attempts to port 23 are blocked. > > So ... how thoroughly have you checked the Exchange server for > configuration problems

Re: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Lynn Avants
On Monday 10 February 2003 04:32 pm, Doug Sampson wrote: >20 800 ACCEPT tcp -- 0xFF 0x00 eth0 > 0.0.0.0/00.0.0.0/0 * -> 25 > 0 0 MASQ tcp -- 0xFF 0x00 * > 192.168.1.4 0.0.0.0/0 25 -> * > :: Port FW :: > > prot l

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Ray Olszewski
OK. Nothing like looking at a real ruleset to sort things out. The input chain appears to be working properly to allow port-25 traffic in, since this rule shows matching packets: 20 800 ACCEPT tcp -- 0xFF 0x00 eth0 0.0.0.0/00.0.0.0/0 * -> 25 Since you a

RE: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Doug Sampson
> OK, are several things that could be going wrong, besides > mis-configuration (it looks like you've got everything setup > properly, > but I can't tell for sure without the full output of "net > ipfilter list"). > > 1) Your ISP is blocking port 25. This is fairly common, and is > typically

Re: [leaf-user] Dachstein Port Forwarding

2003-02-10 Thread Charles Steinkuehler
Doug Sampson wrote: I want to port forward any packets sent to port 25 on the external interface to an internal email server but I seem to be having trouble doing so. I've made the necessary changes to the network config file but the changes aren't taking hold. I've rebooted the server twice to no

Re: [leaf-user] DACHSTEIN VS BERING

2003-02-02 Thread Charles Steinkuehler
[EMAIL PROTECTED] wrote: I have used both Dachstein 1.0.2 and Bering uClib 1.0.1 on a 90mhz pentium box. Both are standard distributions. The only modifications were to the modules section to support my two network cards. I have a cable modem connection. When running the Dachstien distribution

Re: [leaf-user] Dachstein Dead?

2003-01-22 Thread Charles Steinkuehler
Karl Poglitsch wrote: Just wondering, I haven't seen anything lately on any upgrades to Dachstein, just a lot of chatter about Bering etc. Has Dachstein been abandoned? Not dead, really, just kind of in stasis. :) While I have not had the free time lately to do much updating, the existing re

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Erich Titl
Roger I have a bering laptop running with Bering 1.0rc3 I am not using squid thugh but I believe with enough ram this is easily feasible, I started using the stock bering distribution and had to fight a little getting the PCMCIA cards recognised and up. The rest was actually quite easy. My only

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Brad Fritz
Roger, On Mon, 20 Jan 2003 16:26:09 EST Roger E McClurg wrote: > I'm willing to go with Bering, if someone can tell me how to get it up and > running via PCMCIA quickly. I need a firewall doing DHCP on eth0 for it's > IP address, and running DHCPD on eth1. dhcpd is included in the stock Beri

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Roger E McClurg
on Bering? Roger "Todd Pearsall" 01/20/2003 03:55 PM To: Roger E McClurg/CEG/CSC@CSC cc: Subject: Re: [leaf-user] Dachstein 1.02 and PCMCIA I haven't done pcmcia with Dachstein, but I have with Bering. If you don't have to Dachstein, t

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Brad Fritz
Roger, On Mon, 20 Jan 2003 15:10:21 EST Roger E McClurg wrote: > I need to create a LEAF firewall using Dachstein 1.02 on a laptop with 2 > PCMCIA NICs. Do you need to use Dachstein? Bering has much better PCMCIA support. It should be doable under Dachstein, but you will almost certainly sa

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-15 Thread Todd Pearsall
Card. Thanks to all that helped out. - Todd > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED]] On Behalf Of > Greg Morgan > Sent: Wednesday, January 15, 2003 12:36 AM > To: [EMAIL PROTECTED]; Todd Pearsall > Subject: RE: [leaf-user] Dachstein Conf

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap?Approx 2MB dl Limit

2003-01-14 Thread Greg Morgan
Todd Pearsall wrote: Tonight I'll: 1) test the memory Try http://www.memtest86.com/ for testing memory. There is both a diskette and cd-rom test program. Just put it on a disk and reboot. 2) try an alternate driver for the Linksys NICs 3) try different NICs Greg Morgan -

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Brad Fritz
On Tue, 14 Jan 2003 14:34:15 EST Todd Pearsall wrote: > Thanks for the great advice as always Charles and Lynn. > > I hadn't considered the memory or drivers as potential problems. In the > past I've had problems finding the right drivers for the Linksys chipset > du jour, but when I got one th

RE: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Todd Pearsall
test the memory 2) try an alternate driver for the Linksys NICs 3) try different NICs Thanks again. - Todd > -Original Message- > From: Charles Steinkuehler [mailto:[EMAIL PROTECTED]] > Sent: Tuesday, January 14, 2003 10:56 AM > To: Todd Pearsall > Cc: [EMAIL PROTEC

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap? Approx 2MB dl Limit

2003-01-14 Thread Lynn Avants
On Tuesday 14 January 2003 08:40 am, Todd Pearsall wrote: > I did a HW swat for that firewall because I needed the space for 3 NICs > in the office so I swapped in a different PC. The new box has different > NICs in it (2 Linksys 100TX vs. the 2 ISA 3COM NICs in the old one) and > the new one can

Re: [leaf-user] Dachstein Config, HW Issue or Comcast Download Cap?Approx 2MB dl Limit

2003-01-14 Thread Charles Steinkuehler
Todd Pearsall wrote: Now for the problem, for the week or 2 (approx. the same time as the HW swap) I can't download files greater than about 2MB. It 1st appeared because some antivirus downloads were failing and later I noticed that any somewhat large file would just hand during download. When i

Re: [leaf-user] Dachstein CD with Realtek 8139 NICs

2003-01-10 Thread Lynn Avants
On Wednesday 08 January 2003 05:08 pm, Chris Low wrote: > The disk that came with the NICs wanted me to compile a driver from the > source code rtl8139.c, then copy it to /lib/modules/2.2.14-5.0/pcmcia then > edit the /etc/pcmcia/config file and the linuxconf. How do I do this? or, > is there an e

Re: [leaf-user] Dachstein CD Question

2003-01-08 Thread Chris Low
Charles, This typically happens if the booting process doesn't load the etc package (etc.lrp). There are many reasons for why this can happen, but I think the most likely would be the system is not finding the CD-ROM drive. You were right, it found the CD drive fine, but the drive didn't supp

Re: [leaf-user] Dachstein CD Question

2003-01-07 Thread Charles Steinkuehler
Chris wrote: My system doesn't allow booting from a CD so I'm booting with a floppy and that seems to work fine, however after loading I don't get a login prompt. Instead it asks me to "Enter runlevel" I've tried putting in 1, 2, 3, and 5 but each returns the same message: "no more proccesses a

Re: [leaf-user] Dachstein Help....

2002-12-22 Thread Michael McClure
Thanks all for your quick response I'm using a LEAF type of distro because I'm using old small hardware and don't want to do anything but do hard disk sharing and ssh/ftp out. I don't know enough about linux and all the processes and what not that I can turn off to minimize memory/cpu usag

Re: [leaf-user] Dachstein Help....

2002-12-22 Thread Charles Steinkuehler
Michael McClure wrote: I want to have only 1 card (eth0) in my Dachstein box and have it connect to my internal network (which, as a side note, has an eigerstein firewall w/eth1=192.168.1.254). I've commented out the eth1 entries and set my IF_AUTO to eth0. I've put 192.168.1.100 into my eth0

Re: [leaf-user] Dachstein Help....

2002-12-22 Thread Ray Olszewski
Though I mean no disrespect fot Charles or Dachstein ... given what you want this host to do (as you describe it in the last paragraph), why run Dachstein on it at all? For the mix of stuff you are looking for, I'd lean toward using a full-size Debian (or Red Hat or Mandrake or Slackware or ...

RE: [leaf-user] Dachstein firewall monitor

2002-12-10 Thread Doug Sampson
n Hejl [mailto:[EMAIL PROTECTED]] > Sent: Monday, December 09, 2002 11:15 AM > To: '[EMAIL PROTECTED]' > Subject: Re: [leaf-user] Dachstein firewall monitor > > > Wrigglesworth, Colin wrote: > > Do you really mean it was working now has stopped? I > haven't

Re: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Lynn Avants
> Since Weblet ran "out of the box" on the images I tried, I tend to agree > with you that it indeed is a Java related problem on your browser - but > lacking any info what it is (or isn't) doing, I could only speculate on > what's happening. Well, the only reasons I've ever seen for failure is co

Re: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Martin Hejl
Wrigglesworth, Colin wrote: Do you really mean it was working now has stopped? I haven't seen it work yet on my Dachstein CD 1.0.2 so would be interested to know if you have had it working. I thought my problem was Java related but maybe not. well, I've seen it working on plenty of Dachtstein bo

Re: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Martin Hejl
Hi Doug, The firewall monitor running on top of the weblet has stopped functioning. It does not display anything in the window when I double-click on the firewall monitor link in the weblet page. I've issued a "killall -HUP inetd" to no avail. I would rather not restart the router if at all. Wha

RE: [leaf-user] Dachstein firewall monitor

2002-12-09 Thread Wrigglesworth, Colin
Do you really mean it was working now has stopped? I haven't seen it work yet on my Dachstein CD 1.0.2 so would be interested to know if you have had it working. I thought my problem was Java related but maybe not. Colin -Original Message- From: Doug Sampson [SMTP:[EMA

Re: [leaf-user] Dachstein FreeS/WAN IPSec update re:bugtraq id 6011?

2002-12-05 Thread Charles Steinkuehler
Duncan Napier wrote: Hi, I was wondering if Dachstein is still being maintained, and if so whether there are any plans to update the IPSec components to something newer than FreeS/WAN 1.9.6? Essentially, the issue is that certain types of malformed IPSec packets can cause kernel panics in v

RE: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-28 Thread Wrigglesworth, Colin
Charles, You hit the problem right on the head, then I guess you would. I ended up modifying the qmail init script to create the 'missing' directories because it was simple and the qmail298 script takes care of any permissions problems I might have got wrong. I didn't quite follow how to

Re: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-26 Thread Charles Steinkuehler
Wrigglesworth, Colin wrote: I am encountering a problem with adding the qmail.lrp package to my Dachstein-CD setup. I have tried both loading the package by floppy and by adding it to a custom copy of the CD. The problem manifests itself only on rebooting the router after adding qmail to the lrpkg

Re: [leaf-user] Dachstein-CD 1.0.2 + Qmail 1.03a Runaway condition

2002-11-26 Thread Joey Officer
although i have no expierence setting up qmail, its possible it could be a couple of different problems, check the load order, you said in your email that you load qmail manually, if this is the case, make sure the qmail package is the last one loaded, just in case. if that doesn't work, load it m

RE: [leaf-user] Dachstein DNS Config - HELP!

2002-11-15 Thread Wrigglesworth, Colin
Spot on. I had bash.lrp loaded! So this leads me on to asking if you could add an entry for bash on you packages page at http://lrp.steinkuehler.net/Packages.htm stating that installing the bash package, therefore changing the default she

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-14 Thread Charles Steinkuehler
Wrigglesworth, Colin wrote: Didn't take me log to find out what the brain dead problem istinydns isn't running. Why?...well I don't actually know but I'm sure this has got something to do with it: # /etc/init.d/tinydns start /etc/init.d/tinydns start: UID: readonly variable # So what is caus

RE: [leaf-user] Dachstein DNS Config - HELP!

2002-11-14 Thread Wrigglesworth, Colin
Didn't take me log to find out what the brain dead problem istinydns isn't running. Why?...well I don't actually know but I'm sure this has got something to do with it: # /etc/init.d/tinydns start /etc/init.d/tinydns start: UID: readonly variable # So what is causing this? It is tinydns 1.0.5

RE: [leaf-user] Dachstein DNS Config - HELP!

2002-11-14 Thread Wrigglesworth, Colin
Brad & Ray, Thanks for your help and now I have managed to access Jacques Nilo's LEAF website I'm in a much better position to work out what's happening. We had a major failure yesterday which took the whole network down and when it came back up dnscache was running! I must have changed som

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Brad Fritz
Good catch, Ray. As usual, you were spot on. Details below... On Tue, 12 Nov 2002 12:30:19 PST Ray Olszewski wrote: > At 02:44 PM 11/12/02 -0500, Brad Fritz wrote: > > >A small addition to Ray's already comprehensive analysis... > [...] > >3. You have dnscache listening on port 193.37.83.1:53

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Ray Olszewski
At 02:44 PM 11/12/02 -0500, Brad Fritz wrote: A small addition to Ray's already comprehensive analysis... [...] 3. You have dnscache listening on port 193.37.83.1:53 and traffic is allowed to it through the packet filter, but /etc/dnscache/env/IPQUERY does not include a line that allows

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Brad Fritz
A small addition to Ray's already comprehensive analysis... On Tue, 12 Nov 2002 10:53:38 PST Ray O. wrote: > Now, the tcpdump traffic you report is -- > > 17:07:30.870333 pingu-serv.farside.net.vfo > > 193.37.83.1.domain: 58405+ > PTR? 81.83.37.193.in-addr.arpa. (43) (DF) >

Re: [leaf-user] Dachstein DNS Config - HELP!

2002-11-12 Thread Ray Olszewski
A preliminary comment -- please be more careful about use of upper and lower case in your reporting. I'm inclined to believe that your interface variables really are eth0 and eth1, not (as you report them) Eth0 and Eth1, and I doubt your LAN-side SuSE server is named both pingu-serv and Pingu-s

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-24 Thread Kevin
To: Kevin; [EMAIL PROTECTED] Cc: Richard Doyle Subject: Re: [leaf-user] Dachstein work laptop on home network using WinXP > Any help is most welcome on how to get the work DNS from populating while at > home, so I can use the laptop on the internet. Well, I haven't made the leap to XP yet,

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Steven Peck
et] > Sent: Wednesday, October 23, 2002 7:25 PM > To: [EMAIL PROTECTED] > Cc: Richard Doyle > Subject: RE: [leaf-user] Dachstein work laptop on home > network using WinXP > > > OK _ I think I started something here.I am using the alternate IP > address in WinXP a

Re: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Charles Steinkuehler
> Any help is most welcome on how to get the work DNS from populating while at > home, so I can use the laptop on the internet. Well, I haven't made the leap to XP yet, but earlier versions of 'doze had the ability to manually enter DNS servers, or to get them via DHCP. In Win2K, this is in networ

RE: [leaf-user] Dachstein work laptop on home network using WinXP

2002-10-23 Thread Kevin
while at home, so I can use the laptop on the internet. Thanks -Original Message- From: Richard Doyle [mailto:rdoyle@;islandnetworks.com] Sent: Wednesday, October 23, 2002 6:00 PM To: Kevin Cc: [EMAIL PROTECTED] Subject: Re: [leaf-user] Dachstein work laptop on home network using WinXP On

  1   2   3   4   5   6   >