Djebran Lezzoum
2003-Aug-26 05:00 UTC
[Shorewall-devel] http and smtp connections time out
I am running red hat 9 with shorewall 1.4.6b-1, Have noticed http and smtp connections time out to some hosts I have tried to change tcp_ecn value but without results - the problem persist. I am now forced to use ISP smtp server, and ISP http proxy server to reach some sites. The problem does not exist when I was running win200k with winroute. Thanks to Help L.Djebran
On Tue, 2003-08-26 at 04:56, Djebran Lezzoum wrote:> I am running red hat 9 with shorewall 1.4.6b-1, > Have noticed http and smtp connections time out to some hosts I have > tried > to change tcp_ecn value but without results - the problem persist. > > I am now forced to use ISP smtp server, and ISP http proxy server to > reach some sites.Is your connection to your ISP through some sort of PPP connection (PPTP, PPPoE, etc.)? If so, you apparently overlooked the Setup Guide''s instructions to set CLAMPMSS=Yes in shorewall.conf. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net
Tom Eastep
2003-Aug-26 07:38 UTC
[Shorewall-users] Re: [Shorewall-devel] http and smtp connections time out
On Tue, 2003-08-26 at 07:14, Djebran Lezzoum wrote:> Thanks your reply! > > I am connected to my ISP via ethernet connected to an SHDSL modem > (COMTREND CT-320). > Had becoming crazy and tried anything in the doc also CLAMPMSS > nothing works. >Well, the next thing that I would try is to adjust the MTU of the internet interface downward until it works. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net