www.hostmaster.gr & masquarade

Filippos Slavik fsla at forthnet.gr
Mon Jan 21 15:09:01 EET 2002


At 11:06 ðì 21/1/2002 +0200, you wrote:
>On Sun, Jan 20, 2002 at 08:12:40PM +0200, Giorgos Pallas wrote:
> >
> > Ama deis ston hop 7 (139.91.34.82) den yparxei dns kataxwrisi.[akribws
> > ekei pou sou kollaei ]
> > Mipws auto ftaiei? (to pws mporei na ftaiei pantws, nten kserei...)
>
>
>Den mou kollaei, to akribws proigoumeno hop mou apantaei 'network unreachable'
>
>Kanas allos na to kanei confirm apo mixanima pisw apo linux me masquarade ?
>Egw to exw diapistwsei se 3 egkatastaseis mexri twra, me to firewall
>na exei 2.2.x kai ipchains, kai se mia me 2.4.x me iptables
>
>roryt

Ta mhxanimata twn hostmaster

1) den exoun reverse dns entry (auto profanws den se peirazei)
2) To ITE (FORTH) exei "sklhro" security policy - Px, exoun kopsei pantelos 
ta ICMP apo ton eksw kosmo (oute auto den "eprepe" na se peirazei)

Pantws, kata thn proswpikh mou apopsei, tha se kobei kapoio routeraki tou 
ITE, giati pithanon to masquarating na bazei kapoio tag/mark sta outgoing 
paketa (to opoio xrisimopoiei later gia na kanei re-assemble to respone sto 
paketo auto kai na to steilh pisw sto node tou eswterikou sou dyktiou) to 
opoio na "trelainei' to routeraki :) Anyway, den eimai kai poly sigouros 
gia'uto pou grafw (den ksairw kai toso kala thn eswterikh domh tou SNAT kai 
pws ginetai to implementation), logika den tha eprepe na exeis problima ...

PS: Den exw kapoia sxesh me to dyktio tou ITE :) Aplws kanw eikasies

Slavikos


>--
>linux-greek-users mailing list -- http://lists.hellug.gr


################################################################
Filippos Slavik
FORTHnet R&D, Heraklion, Greece
e-mail : fsla at forthnet.gr
phone : (+3) 081 391230
################################################################

"The software said 'runs on Win95 or better,' so I installed it
on Linux..."





More information about the Linux-greek-users mailing list