Displaying 20 results from an estimated 20000 matches similar to: "invalid TCP port/service `ssh'' specified"
2004 Dec 08
9
Kernel/iptables question
As suggested here:
http://lists.shorewall.net/pipermail/shorewall-users/2004-October/015097.html
I''ve run:
adam@shrike:~$ /sbin/iptables -m policy --help
iptables v1.2.11
Usage: iptables -[AD] chain rule-specification [options]
iptables -[RI] chain rulenum rule-specification [options]
iptables -D chain rulenum [options]
--snip--
And:
adam@shrike:~$ sudo
2005 May 24
6
RPM install issues
I am making a new box to test with and was trying to install shorewall
via rpm. So I download the shorewall 2.2.5 rpm and issue a rpm -ivh
shorewall-2.2.5-1.noarch.rpm. I then get an error:
error: Failed dependencies:
which is needed by shorewall-2.2.5-1.noarch
So as you can see there are no dependency issues. I thought I saw this
on the mailing list a while ago but I just searched for it I did
2005 Jun 15
3
Fatal error ?
As I recall, Sunday the 12th, I used YaST2 to update the Kernel. Today I
upgraded and existing shorewall to 2.4.0
In my syslog I get:
Jun 15 14:27:14 mymachine modprobe: FATAL: Could not load
/lib/modules/2.6.8-24.14-default/modules.dep: No such file or directory
On the terminal when restarting I get:
FATAL: Could not load /lib/modules/2.6.8-24.14-default/modules.dep: No
such file or
2006 Apr 26
2
How can set ORIGINAL DEST in rules?
I want smtp requests from the internet to address 202.1.2.3 are to be forwarded to 192.168.1.109, so I set ORIGINAL DEST is 202.1.2.3 but when I restart it show error:
iptables v1.2.11: invalid TCP port/service `210.0.214.212'' specified
Try `iptables -h'' or ''iptables --help'' for more information.
ERROR: Command "/sbin/iptables -A net2loc -p tcp
2006 Aug 04
7
Transparent Proxy problem
Now I step by step to configure Shorewall to match my school environment,
the following error when I restart the Shorewall.
..End Macro
iptables v1.2.11: Unknown arg `--sports''
Try `iptables -h'' or ''iptables --help'' for more information.
ERROR: Command "/sbin/iptables -t nat -A loc_dnat -p tcp --sports !
2005 Feb 02
1
Masq errors?
Hi all,
I have a problem with a new Shorewall box I''m trying to migrate from
iptables rules to shorewall 2.2.0.
I have a 3 interfaces setup:
- eth0 ---> internet (ip address)
- eth1 ---> remote office (10.0.0.0/8)
- eth2 ---> lan (192.168.16.0/24)
I''m using a very simple and common setup, with just a few DNAT rules in
my /etc/shorewall/rules file, and about twenty
2005 Apr 20
4
Linux Kernel 2.6, Ipsec, ADSL (dynamic addresses)
Hi,
I successfully connected quite a few servers with their associated networks
using Suse 9.1/9.2 (Kernel 2.6.x) and IPSEC tunnels. But now I have to add
another server that has a ADSL connection to the internet, that means it has a
dynamic IP address which is likely to change every few hours, since the provider
disconnects from time to time.
I found a way to restart the IPSEC connection when
2005 Jan 11
5
Problem starting Shorewall using Bridge configuration
Hi
I have recently reconfigured my system to a Bridge based architecture on the
basis that I have an ADSL Modem/Router with a Public address on the Wan side
and a Private address on the Lan side.
I am running a Debian based system kernel 2.6.7 and the Bridging software is
installed and working correctly, including startup etc.
The problem that I have is in "shorewall start"
The
2006 Jul 20
2
GRE over IPsec Cisco<-> Linux
Hello Lartc Mailing List:
Been working on something the last week and a half and ALMOST have it
working.., just need a few pointers from the wizards on this mailing list to
nail it.
Ok, my setup is a hub and spoke arrangement, hub is Cisco 2821 with IOS 12.4.
Spokes are ruggencom RX1000 routers, Debian based with the following versions
installed:
rx1000test:~# uname -a
Linux rx1000test
2005 Mar 27
2
Can''t get shorewall to start...
And it looks like there''s a bug.
I have a "firewall" with a single ethernet interface that splits into a
network zone and a local zone and as a consequence I have a hosts file
with the following in it:
net eth0:!192.168.0.0/24
loc eth0:192.168.0.0/24
When I run shorewall start, I get an error, running in debug mode and
capturing the output give me:
+ run_iptables -A
2005 May 12
2
Shorewall 2.2.4 problem with SuSe 9.2.
Hello all,
I''ve recently upgraded a Suse 9.1 box to Suse 9.2 (reinstall
actually). This is mainly a test server that I use for testing our
device with nat/snat etc. I just got around to reinstalling Shorewall
2.2.4, and I''m having an odd problem at startup I was hoping someone
could perhaps shed some light on.
I''ve created a very basic setup just to get Shorewall
2002 Jan 03
2
error starting shorewall
hi,
i installed and configured the shorewall-2.0.9 for standalone user
interface in fc2,then removed the stop ,stopped and the routestopped
files from the /etc/shorewall directory,and run the ''shorewall start''
command,at boot time the messages showing that it is not started,this is
the /var/log/messages output fore shorewall:
Jan 3 04:13:27 localhost netfs: Mounting other
2010 Mar 29
1
dovecot: auth(default): Fatal: Unknown database driver 'mysql'
I just tried upgrading from 1.1.rc6 to v1.2.11, and am getting the
following error:
dovecot: auth(default): Fatal: Unknown database driver 'mysql'.
If I change the respective line in dovecot-sql.conf from driver = mysql to
driver = pgsql the error message changes accordingly:
dovecot: auth(default): Fatal: Unknown database driver 'pgsql'.
I quit using 1.1.rc6 because it started
2006 Nov 03
2
DROP MSN MESSENGER by IPTABLES- CENTOS 4
Dear Friends,
I installed CENTOS 4.4 on server.
I need DROP MSN Messenger using IPTABLES, I created the rule below.
$IPTABLES -A INPUT -p tcp -m string --string "x-msn-messenger" -j DROP
But, When I run IPTABLES, I have received follow error:
DROP -> MSN Messenger
iptables v1.2.11: Couldn't load match
`string':/lib/iptables/libipt_string.so: cannot open shared object
2009 Feb 10
3
mirroring centos servers
Dear All,
I have 2 server with almost identical configuration nd would like to
mirror them
bascillay i would like to use it as a firewall.
i was thinking of linux HA but could not really find clear examples if it
could achive my purpose
apprecite if someone can help me of any site with examples on how to
mirror 2 centos servers so i one fails the other works perfect
thanks and really
2010 May 06
3
Dovecot Won't start on SLITAZ Linux
Hi
I've just compiled dovecot under Slitaz, but I can't get it to run...
It always die with this message in log :
2010-05-06 12:35:12 dovecot: Info: Dovecot v1.2.11 starting up
2010-05-06 12:35:12 dovecot: Fatal: setrlimit(RLIMIT_DATA, 256): Operation
not permitted
2010-05-06 12:35:12 dovecot: Error: child 1455 (auth) returned error 89
(Fatal failure)
2010-05-06 12:35:12 dovecot: Fatal:
2005 Nov 25
1
2 WAN links and DNAT
Hi
Here is a short description of my network:
ppp0 (adsl) ppp1 (adsl)
| |
| |
---------------------
| Router |
| Firewall |
| MASQUERAD |
| DNAT |
| |
| eth0 |
---------------------
|
|
|
----------------------
|
2005 Apr 24
6
redirect: net to fw
I have router/server that I would like to ssh to from the net. In
order to discourage brute force attacks I would like to redirect all
connections on a non-standard port to port 22 on the router/server.
If notice that setting up a rule
REDIRECT net 22 tcp 4104
causes the firewall to open both ports 4104 and 22 to connections from
the net. Is it possible to only redirect 4104 to the
2005 Jun 12
8
proxy_arp: Permission denied
Dear All,
I have a problem to start Shorewall on a Debian 1.3 Linux box. Here is
some info:
Output of ''/sbin/shorewall trace start 2> /tmp/trace'' is in the attachment.
Shorewall version: 2.2.3
Output of ''ip addr show'':
1: lo: <LOOPBACK,UP> mtu 16436 qdisc noqueue
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
2: bond0:
2010 May 04
2
Corrupted index cache file and Maildir filename has wrong W value
kmail stopped working and when I check the dovecot log file I see:
May 4 11:40:38 f12barry dovecot: IMAP(bscott): Corrupted index cache file /home/bscott/Maildir/._NewMail-com/dovecot.index.cache: Corrupted virtual size for uid=234: 633278 != 633251
May 4 11:40:38 f12barry dovecot: IMAP(bscott): Corrupted index cache file /home/bscott/Maildir/._NewMail-com/dovecot.index.cache: Corrupted virtual