Displaying 20 results from an estimated 5000 matches similar to: "Few questions"
2005 Feb 05
13
Problem while trying to set up an ipsec vpn
Hi,
I''m asking my question here, because I could not find any answer to my
problem, but I''m affraid shorewall is not the one to blame.
First of all I''m using shorewall version 2.0.15 on two linux box.
I set up an ipsec tunnel beetween those 2 boxes to be ables to connect
2 not routable subnetworks.
Here is my network topology:
10.66.17.0/24 - 10.66.17.1 = eth0
2002 Dec 22
2
maclist option -> sorry good ver.
Setting up MAC Verification on eth0...
Error: Interface eth0 must be up before Shorewall can start
my :
/etc/shorewall/shorewall.conf:
MACLIST_DISPOSITION=REJECT
MACLIST_LOG_LEVEL=info
interfaces:
#ZONE INTERFACE BROADCAST OPTIONS
net ppp0 217.96.90.242 noping
loc eth0 255.255.255.0 routestopped,maclistmaclist:
maclist:
#INTERFACE MAC IP
2005 Sep 29
20
maclist problem on a firewall/bridge/router system with masquerading
Hy,
sorry for my poor english
i think i''m having a very unusual problem and very dificult to track,
but i''ll try to explain it as best as i can.
here is my scenario:
a firewall/bridge composed of 3 ethernet devices and 1 virtual one.
my bridge (br0 ) is composed of eth0, eth1 and tap0
br0:eth0 is my connection to my router (200.244.92.1)
br0:eth1 is my connection to my
2005 Mar 10
8
rules - access by mac address
Hi,
At the moment I am controlling my LAN client access to
the Inet by their MAC address. Currently I am putting
their MAC address in the rules file - now the number
of the PC that I want to manage is getting more and
more and it is not practicle to do this way anymore.
My question is, how can I have their MAC address in
other separate file?
Regards
http://www.debian.org/consultants/#Malaysia
2002 Dec 12
1
MACLIST -> one more time ... :(
> Yes -- just leave the setting of MACLIST_DISPOSITION=REJECT and any
request
> from interfaces with the ''maclist'' option will be rejected if there isn''t
a
> match found in the maclist file.
I have wrote some IP''s and MAC''s from my network, for example :
#INTERFACE MAC IP ADDRESSES (Optional)
2007 Jul 29
12
Shorewall 4.0.0 + Kernel 2.6.21.5-grsec
Hello,
My hoster updated its kernel packages... It contained some old problems
that should have been fixed. My servers have now a wonderful 2.6.21.5
kernel + grsec running.
Both are running Debian 4.0 (stable release).
mx:/etc/shorewall# iptables --version
iptables v1.3.6
mx:/etc/shorewall# uname -a
Linux mx.network-hosting.com 2.6.21.5-grsec-xxxx-grs-ipv4-32 #1 SMP Fri
Jul 27 17:18:23 CEST
2006 May 29
4
IpSec support with kernel 2.6.16.18
Hi all,
I''m currently using ipsec with Shorewall 3.0.7 on a patched 2.6.10
kernel. Having heard that ipsec support was in the standard kernel
starting from 2.6.16, I tried to upgrade to the last kernel.
My problem is that shorewall won''t start anymore.
I get this output in /var/log/shorewall-init.log:
Starting Shorewall...
Initializing...
Shorewall has detected the
2003 Dec 07
2
Re: [Shorewall-newbies] Re: Shorewall-newbies Digest; Problems with blacklist and nat !
Hello,
I have forwarded this to the shorewall-users list.
You will find better support for this obscure problem there.
Regards,
Alex Martin
http://www.rettc.com
Cristian Valentin Barean wrote:
> Hello !
> My name is Barean Cristian, and I have a network of 35 users, on a
> Linux Mandrake 9.2 server.
> As I was adding more users in my network, I found a problem with
2004 Sep 02
2
Redirect to intranet webserver if not on maclist
First off, I want to say that everyone on this list is great. So heres
what I want to do..I have a maclist setup with all my users (roughly
400). There are constantly people leaving (deleting their accounts
which removes their MAC address) and registering for internet access ( I
have a php webserver that registers them, adds them to the maclist, and
allows them on the net). Is there a way to
2012 Jan 21
9
linux kernel 3.2.x gentoo maclist
how to make this work, its seem to me that netfilter is changed more or
less someplaces that shorewall do not support, using 4.4.27 shorewall
and shorewall6
suggestion welcomed
------------------------------------------------------------------------------
Try before you buy = See our experts in action!
The most comprehensive online learning library for Microsoft developers
is just $99.99!
2005 Mar 24
4
MAC address verification limitation
hi there. There are approx. 400-500 users in our
network and we plan to insert all their MAC addresses
into maclist and bind them together with IP address.
My question is whether shorewall is able to process
that much of MAC addresses without slowing the the
network speed performance? thanks for your time.
__________________________________
Do you Yahoo!?
Yahoo! Small Business - Try our new
2006 Apr 13
5
maclist or rule question
Hi,
I want to automate some of the maclist and rule functionality:
User connects to the network and gets a DHCP address from the shorewall box.
Using squid and redirection, all the user can do is go to a login page
on the firewall
User logs in correctly to the form on the webpage and a process captures
MAC and IP address info from the dhcpd.leases file
Once authenticated, a maclist entry and an
2005 May 29
12
access deny host (ip) to access the Internet
I''m using shorewall 2.0.x at home as an Internet gateway for family.
However my brother always plays online games overnight, so my parents
asked whether I can do something on the gateway to control the time of
accessing the Internet.
I planned to put a script on crontab to schedule which it will execute
say at 12:00 night daily, the script will execute a command will deny
my brother
2009 Nov 14
2
[LLVMdev] Very slow performance of lli on x86
>
> for -O3 results refer attachment.
> time clang (-O0) llvm-gcc(-O0) gcc(-O0)
> real 0m10.247s 0m11.324s 0m10.963s
> user 0m2.644s 0m2.478s 0m2.263s
2013 Sep 12
25
shorewall-lite error at start
Hi,
My main gateway is a router running on OpenWrt Barrier Breaker
r37816/ Kernel Version3.10.4.
I installed shorewall-lite from openwrt''s repo using opkg but while
trying to start shorewall-lite I get the folowing errors:
The first error i got was "scp: /var/lib/shorewall-lite: No such file
or directory" simply resolved by making the folder "shorewall-lite"
2004 Dec 10
9
parallel zone: loc2 is composition of loc1
i have no idea how to definie for a parallel zone the host file if the
second zone (net) should be the composition of the first zone (dmz).
i tried all the following combinations in the interface and host files:
interface:
- eth0 - (variante 1)
- eth0 192.168.0.255,255,255,255,255 (variante 2)
- eth0 192.168.0.255,!192.168.0.255 (variante 3)
2005 May 24
16
dhcp and shorewall
I want to run dhcp and shorewall on the same computer.It is
my gateway and that computer doing NAT for my network.How
can I set up shorewall to let only users that get theire
static ip address via dhcp, not to let users that had
static address.
2003 Dec 25
1
blacklist and not working dhcp
Return-Path: <viuwier@wp.pl>
X-Original-To: shorewall-announce@lists.shorewall.net
Delivered-To: shorewall-announce@lists.shorewall.net
Received: from smtp.wp.pl (smtp.wp.pl [212.77.101.160])
(using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
(No client certificate requested)
by lists.shorewall.net (Postfix) with ESMTP id E3D8F33DB3
for
2009 Nov 14
0
[LLVMdev] Very slow performance of lli on x86
He is probably using the interpreter on a debug build.
Evan
On Nov 14, 2009, at 1:40 PM, Eric Christopher <echristo at apple.com>
wrote:
>>
>> for -O3 results refer attachment.
>> time clang (-
>> O0) llvm-gcc(-O0)
>> gcc(-O0)
>> real
>> 0m10.247s
2002 Dec 12
1
maclist - thank You
It is working very good :) Thank You. I only need to write Interface etho in
maclist file. My MAC addresses don''t neet the ~ in front of. Thanks !
Maciek
--
----
Oferta jakiej jeszcze nie by³o!
Serwer www 60 MB za 99 z³ rocznie
Szczegó³y: www.oferta.alpha.pl
----