similar to: Layer 7 Filtering

Displaying 20 results from an estimated 1100 matches similar to: "Layer 7 Filtering"

2005 Jun 24
7
tcp redirect questions
Hi there. Currently, our network design has two ISP lines and 3 subnets for LAN. Below are some details :- eth0 - isp1 eth1 - isp2 eth2 - subnet1 eth3 - subnet2 eth4 - subnet3 What i wanted to do is to assign incoming port 80 to our local squid server running on the firewall itself and assigned it to eth0(ISP1). I think it shouldnt be a problem as /etc/shorewall/rules provides a sample of the
2003 Dec 22
4
MSN to GS - Call drops in 10 secs
Hi All, i dont what changes i made recently but i am unable to hold the call for more 10 secs between MSN and GS. PSTN to MSN and PSTN to GS and vice versa works fine. i am not behind NAT.Also MSN to MSN works fine too. my SIP details [general] port = 5060 bindaddr = 0.0.0.0 context = bogon-calls ;context = default disallow=all allow=ulaw allow=alaw allow=ilbc allow=gsm ;My SIP phone - GS
2005 Feb 02
1
PRIO / CBQ / HTB queue drop algorithm
Hello all. I''ve been struggling to QoS VoIP at our site and have a successful implementation at this point. Basically I had to set aside enough bandwidth for VoIP by placing all other traffic behind an HTB (multiple classes and queues behind it). Everything is fine. Here''s the diagram: ------- | eth | ------- | --------
2004 Sep 01
8
Rules by Mac Address
Hi, I am using Shorewall in Adamantix. At the moment everything flow fine, my question is that how can I filter the access by computer mac address, I had read the documentation maybe I am ''stupid enough to spot the guide, if so please show me''. What is the rules line if I want to 1. limit ~01-01-01-01-01-01,~02-02-02-02-02-02,~03-03-03-03-03-03-03 to access 202.202.202.202
2005 Mar 10
8
rules - access by mac address
Hi, At the moment I am controlling my LAN client access to the Inet by their MAC address. Currently I am putting their MAC address in the rules file - now the number of the PC that I want to manage is getting more and more and it is not practicle to do this way anymore. My question is, how can I have their MAC address in other separate file? Regards http://www.debian.org/consultants/#Malaysia
2004 Sep 09
4
Allow Microsoft Activation & Updates
Hi, I had set rules so that my client can only visit few sites instead of the whole net. My question is, how can I allow my client to activate it''s product key and also to run windows update? One more thing is, can I use domain name in the rule config? if yes, can I put just microsoft.com to refer to aaa.microsoft.com bbb.microsoft.com? Please advice
2005 Aug 19
3
Sending digits from SIP to Asterisk's VoiceMailMain
Hi, I am using Asterisk cmd VoiceMailMain to manage voice mail. Problem is, voice mail box can't read password sent from SIP phone, but I don't have any problem to read password from the handset attached to my asterisk box. Your help will be greatly appreciated. Thanks,
2005 Mar 23
6
clarification: Port Forward
I am missing a tiny detail on understanding a simple port forward: I want to forward just like the FAQ listed, via #ACTION SOURCE DEST PROTO DEST PORT DNAT net loc:192.168.1.3:22 tcp 1022 Which works just fine. Now I also tried this following type of rule, which I thought would work, but it did not. #ACTION SOURCE DEST PROTO DEST-PORT
2005 Mar 10
1
farpd with shorewall
Hi, Currently I am looking for possibility to have a no-config network enviroment, where in this local area network, we don''t need to set any ip to a computer, it doesn''t matter the computer already have a fixed ip/sm/gw (even doesn''t belong to the enviroment). When ever a browser is ''clicked'', the computer will able to get connected to the internet.
2005 Mar 23
1
GUI
Hi! Maybe I miss some info, in the previous threads, besides than webmin - shorewall, I was made to known that there is another web-gui to manage shorewall. Where can I find it? Thanks http://www.debian.org/consultants/#Malaysia --------------------------------- Do you Yahoo!? Yahoo! Mail - Helps protect you from nasty viruses.
2004 Aug 26
1
Problem : 5 Public IP Address
Hi, I am having problem in getting my fw to connect to the net, I had set allow fw net in the policy. I suspect maybe shorewall having problem because I have 5 public IP alias to my fw, which is eth0, eth0:1-eth0:4. Because before I add more ip to this interface my fw able to connect to the net. How can I set one IP to be bind to this fw, or I had to change the rules from fw to fw:w.x.y.z? One
2005 Sep 19
0
Round-robin with Queue
List, Okay, here's one that has me stumped, and it might just be something simple. Currently, we are setup so that when someone calls in and tries to reach the operator / front desk, it rings several different phones in sequence. (i.e. it rings the front desk for 15 seconds, then a guy down the hall from it for 15 seconds, then my desk for 15 seconds, and as a last resort, my cordless
2004 Aug 03
0
Confusing permission issues...
Trying to install samba 3.0.3 on my Linux server, to serve 4 PCs, all in my house, serving my family. Each of 4 users will have a home directory, plus I'll have at least 2 read-only shares. I have basic connectivity, but can't get some of the clients to behave the way I want them to. Specifically, I want to have full admin access for myself for all directories. Everyone else
2009 Jun 06
0
loglikelihood and AIC
Hi,  I tried fitting loglinear model using the glm(catspec). The data used is FHtab. . An independence model was fitted. Here summary() and fitmacro( ) give different values for AIC.   I understand that fitmacro( ) takes the likelilhood ratio L2(deviance) to calculate AIC and uses the formula AIC= L2- d.f(deviance)*2 and this AIC is used for comparison of nested models. (Am I right?)   The value
2005 Sep 19
1
Silence suppression /RTP VAD and Asterisk? Dropped calls on IP-500
Hello, I run Asterisk in a 100% VOIP installation with the Polycom IP-500 phones. Every once and a while I have problems with either dropped calls between Asterisk and my provider, or invalid RTP audio streams with phones behind NAT. I have had a few Asterisk developers look into my installation and even my provider check my setup but still am having problems. They tell me that I need to
2004 Nov 16
4
Block Windows Messenger
Hi, I''m trying to block Windows Messenger by Shorewall 1.4.10b, but I]m don´t have success. If the rules below, all access are blocked /etc/shorewall/rules # Windows Messenger Rules REJECT:info loc net tcp 1863 REJECT:info fw net tcp 1863 But if use the rules below, any access are allowed, why ???? /etc/shorewall/rules # Windows
2005 Sep 16
4
Caller Name: Asterisk reading too fast
I asked my telco to release caller name on the PRI. Earlier they were releasing only the phone number. I still did not see the name, but only the number in caller id. Actually I now see number twice. When I inquired with them this is the response I got: "I ran a trace on your TG. I see that your switch is picking up the call so fast that it is not able to pick up the name. The
2006 Jan 31
24
Need help and advised
Hi folks Im currently doin firewall project.. the scenario is like this.. my application server open port number 3079 the server ip is 202.188.0.132. and now the port can be accessed from everywhere. Now i want to block all the everywhere accessed. But my problem is, the application will be accessed by few locations that doing transaction with the application server. and the said locations are
2020 Apr 02
0
Stacktrace from 5.4.26 kernel.
On Thu, 2020-04-02 at 17:35 +0200, jesper at krogh.cc wrote: > Kernel. 5.4.26 and Ceph Luminous > > Seem to be working still but I got this after putting load on it. > > [ 785.581198] kworker/3:2: page allocation failure: order:0, > mode:0xa20(GFP_ATOMIC), nodemask=(null),cpuset=/,mems_allowed=0 (cc'ing virtualization mailing list) Basically, looks like the kernel needed
2005 Aug 16
2
All Page ??
Does anyone know of any plans to add an intercom/all-page feature in *? The few SIP phones that have auto-answer capability would be better if Asterisk could broadcast one leg of a channel to many legs at one time. Thank you, Steve Maroney