Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Meir
Thanks for your answer, Ira Abramov wrote: On Thu, 15 Jun 2000, Meir wrote: I have a curious problem. My box (linux) is trying to send mail to a target. Between my box and the target there is a linux box 2.2.12 with 4 NICs but (for now) _without_ any filtering rules at all (all

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Meir
Mike Almogy wrote: Hi. did you configured the kernel with IPCHAINS as needed ? You can read the IP-MASQUERADING HOWTO , there is a detailed examples how to do it. you need some rules in order to let Linux know that it supposed to do the masquerading from one net to the other. Thanks for

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Mike Almogy
You MUST use masquerading, else ware it will not work. I have the same configuration as you shown at my home. Mike --- Mofet Institute - Computer Dpt. +972-3-6901415 ~ - Original Message - From: "Meir" [EMAIL

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Meir
Mike Almogy wrote: You MUST use masquerading, else ware it will not work. I have the same configuration as you shown at my home. Mike Ok, let me precise: the addresses (192.168.x.x) I gave on the figure don't try to reach the Internet. I just use these addresses for testing in a lab.

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Meir
Thanks for your answer, Omer, Omer Mussaev wrote: when you sniff the SYN/ACK, what do IP/TCP header contain? try to use ethereal, can help you visualize your problem. I use tcpdump and the TCP/IP header contains what I expect them to contain: source-ip:port dest-ip:port -- Meir --

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Alon Oz
Meir wrote: Thanks for your answer, Omer, Omer Mussaev wrote: when you sniff the SYN/ACK, what do IP/TCP header contain? try to use ethereal, can help you visualize your problem. I use tcpdump and the TCP/IP header contains what I expect them to contain: source-ip:port dest-ip:port

Re: SYN/ACK not forwarded to 2nd NIC

2000-06-15 Thread Meir
Mike Almogy wrote: please understand, as far as i know you cannot use linux as a router without some basic access rules. the basic rule set can be found at the ip-masquerading HOWTO. I read the HOWTO. And as far as I know there is _no_ need for any ipchains rules, but _only_ a proper

Re: The Myth of Open Source Security

2000-06-15 Thread Adam Morrison
AM Because they fixed so MANY holes, it isn't practical. What isn't practical, sending CC of CVS diff fixing the hole to maintainer of the tool? Or to bugtrack? Or publishing it on some page? If you seriously think that, then you don't have a clue as to the extent of the work the OpenBSD

Re: linux crashed

2000-06-15 Thread Ilya Konstantinov
On Mon, Jun 12, 2000 at 10:22:47AM +0300, Ben-Nes Michael wrote: Hi All One of my machines has crashed and output the following line: Jun 12 02:55:23 rs kernel: Unable to handle kernel NULL pointer dereference at virtual address 0002 Jun 12 02:55:23 rs kernel: current-tss.cr3 =

No Subject

2000-06-15 Thread Mike Almogy
who linux-il = To unsubscribe, send mail to [EMAIL PROTECTED] with the word "unsubscribe" in the message body, e.g., run the command echo unsubscribe | mail [EMAIL PROTECTED]

Re: OFF TOPIC OFF TOPIC OFF TOPIC OFF TOPIC

2000-06-15 Thread Gaal Yahas
Mike, On Thu, Jun 15, 2000 at 11:29:17PM +0200, Mike Almogy wrote: I just opened a mailing list for PERL at : [EMAIL PROTECTED] Feel free to subscribe. Is there a charter available for this list? How is it to be any different from the existing Israel.pm ( http://israel.pm.org/ )? Gaal (All

EH.

2000-06-15 Thread crisk
http://support.microsoft.com/support/kb/articles/Q261/1/86.ASP -- crisk ._ [EMAIL PROTECTED] ._/-==\\\ _ |_.-`---^-._ Instructions for life: 33. Be gentle