Displaying 20 results from an estimated 300 matches similar to: "params file"
2003 Jan 03
6
RFC1918_LOG_LEVEL
I have tried (RH7.3/shorewall-1.3.12-1) both of the following in
shorewall.conf to eliminate ''rfc1918'' logging into /var/log/messages:
RFC1918_LOG_LEVEL=debug
RFC1918_LOG_LEVEL=notice
Neither appear to eliminate the logging.
Here''s what the ''logdrop'' chain shows:
1 229 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix \
2005 Mar 07
7
Webmin Module
I have registered a project with Sourceforge to produced a Webmin module for
Shorewall.
http://sourceforge.net/projects/webmin-shorewal/
Anyone interested in participating please email me at
enemyofthestate at users.sourceforge.net
I am still learning the interface but I think I need your Sourceforge Nym to
add you as a developer.
--
Stephen Carville
Unix and Network Adminstrator
2003 Jan 26
2
SMTP - Allowing All, Logging Some
Here''s what I want to do ... (single interface config):
I want to allow incoming mail from the entire Internet. However,
I would like to write a log message for those SMTP connections
originating off-campus. Mail coming in from campus
(152.10.0.0/16) should arrive silently.
After trying to understand how I might do this by reading the
documentation, I was ready to
2005 Mar 09
13
Ways to get around DNS names in rules
I''m re-reading the section on dns names in the shorewall docs:
"I personally recommend strongly against using DNS names in
Shorewall configuration files. If you use DNS names and you
are called out of bed at 2:00AM because Shorewall won''t start
as a result of DNS problems then don''t say that you were not
forewarned."
Having been stung by this a few times
2004 Oct 17
10
Transparent Squid in DMZ
Hi,
I want forward port 21 and 443 to my squid. A simply rule (dnat) didnt
help me.
My http - port (only 80) will forwarded to my squid. It runs
fine. Here I have used the HowTo from Tom and the hints from
http://lartc.org/.
I want to do the same with port 21 as port 80.
My network:
Shorewall:
eth0 net (192.168.108.1)
eth1 dmz (192.168.109.1)
eth2 loc (192.168.110.1)
eth3 loc1
2006 May 31
8
shorewall and squid
What speaks for it and which speaks against it that Firewall and
squid run on the same machine?
Regards Menki
-------------------------------------------------------
All the advantages of Linux Managed Hosting--Without the Cost and Risk!
Fully trained technicians. The highest number of Red Hat certifications in
the hosting industry. Fanatical Support. Click to learn more
2004 Oct 17
4
"shorewall status" hangs
Hi,
I''ve a big problem. Everytime if I used "shorewall" with option status
the Server hangs up completly. The way to solve the problem: switch
off the computer. Nothing is makeable.
The server is in a productiv enviroment and so I can''t test it all the
days.
Is here anyone who knows this problem !
Mit freundlichen GrĂ¼ssen
Michael Menkhoff
========================
2004 Nov 17
6
Problems with routing
Hi,
here my system on shorewall:
eth0 192.168.108.1 net
eth1 192.168.109.1 dmz
eth2 192.168.110.1 loc_110
eth3 192.168.111.1 loc
I haven''t access from or to server in loc_110 through shorewall. I can
use ssh or other types from loc to dmz or from loc to fw, but I can''t use connections
to loc_110.
I can also use ssh - connection from fw to loc_110 or redirectly.
Where is the
2004 Nov 09
9
Dyndns
Hi,
I''ve a little problem, I hope so..
First a hint, I haven''t a static IP - Adress and so I used a dyndns
Provider.
In DMZ runs a sftp server. It should accessible from net. My router is
forwarding the traffic from port 22 to the machine in DMZ. Now, in
basic installation I have rfc1918-dropping configured by net
interface.
My problem:
If rfc1918 dropping is on I
2005 Aug 09
4
Too slow computer?
Hello! I''ve put some questions on this list some weeks
ago and I''ve got good answers. Thank you!
Now I''ve finished my (beautyful) script and I ran it
on my router...
About my script:
It routes packages based on their destination on the
Internet. I have about 1650 preffered destination
networks listed in some file. The script read this
file and marks every package for
2005 Mar 04
7
Stutter Tone
I think I have something misconfigured regarding voicemails. They work
great, I have this setup:
Sip.conf
[ext1]
Context=phones
Mailbox=201
Voicemail.conf
[home]
201,password,name,email@mail
Voicemail delivery and all works great but when I check sip extension ext1
(analog phone using a Granstream ATA 286), the stutter tone signaling
message waiting does not work.
Anything wrong with
2005 Mar 09
4
Broadvoice Multiple "lines"
I configured this once now I forgot what I did.
Two Broadvoice accounts.
Incoming is simple - just use the phone numbers.
Outgoing:
Dial out on a specific line
and/or
set up the groups and select the other "line" if the first one is busy?
--
James Taylor
MetroTel
3505 Summerihll Road
Suite 11
Texarkana, Texas 75503
903-793-1956
2006 Jan 24
3
Is local originated traffic affected?
Hi!
I built some rules to shape traffic from my linux router in both
dirrections: to the Internet and to the LAN.
When i apply the rules my computer cannot acces the Internet or the LAN.
Is this behavior normal? Do I need to write some rules for local IPs of
my router? (I have sevaral, both on the internal and the external NICs.)
Thank you for any advice!
Sorin.
2004 Nov 24
2
printing between two networks
Hi,
in my network are two locally subnets.
Now I want to print from one subnet (loc_110) to the other subnet
(loc) where a printer server (192.168.111.5) is working.
My printer server is from the d-link company.
First in "/var/log/messages" was an entry that there was dropped
traffic from source 192.168.110.x port 721 to 192.168.111.5 port 515.
Ok, now I''ve created a rule,
2010 Apr 22
2
Unable to make bitmapdll files on windows 7 64 bit machine
I am trying to build a windows 32 bit version of R 2.11.0 from source on a machine running
windows 7 - 64 bit while running as the machine's administrator.
I am able to run "make all recommended"...However, once I attempt to build the bitmap files I get the following:
C:\Rsource\R-2.11.0\src\gnuwin32>make bitmapdll
make -C bitmap
make[1]: Entering directory
2003 May 10
1
Call forwarding questions
Is there any way to have users be able to turn on or off call forwarding
at the asterisk server, so they can configure their own forwarding
number and enable/disable it?
Hopefully, with the added benefit that it will remain on between server
reloads and restarts?
I have written a hack -- a AGI script to do various checking, and if
the destination is "ok" set a database variable
2007 Dec 20
1
IPFW: Blocking me out. How to debug?
Dear W.D.
Do you understand that by adding the rules into kernel space numbered from zero to sixty five thousand five hundred thirty four
you may alter the behavior of the rule number sixty five thousand five hundred thirty five
can you please define and list the goals you are trying to achieve by altering default rule in the terms you can both explain and understand.
----- Original Message
2015 Aug 13
2
sieve-filter failure problems
I use sieve-filter for postprocessing misclassified mail.
For false positives I use the following script:
require [ "variables", "include", "fileinto" ];
global [ "FORCENOSPAM", "ext", "ext1" ];
set "FORCENOSPAM" "YES";
fileinto "JUNK-PRENOUCE";
if header :matches "Delivered-To"
2006 Jan 28
3
Multiple Subscriptions to SIP accounts at Same Domain
Sorry not to have observed etiquet and lurked here for a bit before
wading in with a question but I have an issue that may well be because
I dont know enough about what asterisk is actually doing under the hood
to understand why I cant do what I want with asterisk.
Im hoping that someone can point me in the right direction :-)
This is what I have:
Mandrake 2006 running Asterisk 1.2.3 - no
2006 Feb 06
1
Will not authenticate incoming VOIP provider calls
I running Asterisk 1.1 on Mandriva 2006.
Everything works fine, can connect with softphone, send outgoing calls to VOIP
provider.
The only (and big) problem is that Asterisk refuses to authenticate incoming
calls with the message (in the log):
Failed to authenticate user "XXXXXXXXXX" <sip:XXXXXXXXXX@209.17.160.129>
From what I've read in the various docs I could access, I