You can subscribe to this list here.
| 2001 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
(96) |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2002 |
Jan
(367) |
Feb
(707) |
Mar
(1352) |
Apr
(1146) |
May
(978) |
Jun
(930) |
Jul
(863) |
Aug
(845) |
Sep
(702) |
Oct
(719) |
Nov
(719) |
Dec
(652) |
| 2003 |
Jan
(1163) |
Feb
(991) |
Mar
(1371) |
Apr
(993) |
May
(1476) |
Jun
(1024) |
Jul
(1093) |
Aug
(1724) |
Sep
(1603) |
Oct
(1275) |
Nov
(989) |
Dec
(746) |
| 2004 |
Jan
(998) |
Feb
(1049) |
Mar
(1045) |
Apr
(661) |
May
(692) |
Jun
(609) |
Jul
(497) |
Aug
(516) |
Sep
(749) |
Oct
(973) |
Nov
(697) |
Dec
(766) |
| 2005 |
Jan
(953) |
Feb
(903) |
Mar
(939) |
Apr
(620) |
May
(599) |
Jun
(645) |
Jul
(502) |
Aug
(522) |
Sep
(504) |
Oct
(666) |
Nov
(570) |
Dec
(551) |
| 2006 |
Jan
(641) |
Feb
(478) |
Mar
(635) |
Apr
(472) |
May
(369) |
Jun
(542) |
Jul
(343) |
Aug
(620) |
Sep
(438) |
Oct
(441) |
Nov
(403) |
Dec
(394) |
| 2007 |
Jan
(556) |
Feb
(427) |
Mar
(662) |
Apr
(549) |
May
(463) |
Jun
(405) |
Jul
(320) |
Aug
(332) |
Sep
(541) |
Oct
(433) |
Nov
(319) |
Dec
(386) |
| 2008 |
Jan
(402) |
Feb
(394) |
Mar
(328) |
Apr
(350) |
May
(262) |
Jun
(274) |
Jul
(353) |
Aug
(483) |
Sep
(277) |
Oct
(391) |
Nov
(220) |
Dec
(230) |
| 2009 |
Jan
(270) |
Feb
(166) |
Mar
(175) |
Apr
(204) |
May
(190) |
Jun
(187) |
Jul
(263) |
Aug
(119) |
Sep
(125) |
Oct
(169) |
Nov
(166) |
Dec
(84) |
| 2010 |
Jan
(108) |
Feb
(154) |
Mar
(82) |
Apr
(104) |
May
(69) |
Jun
(125) |
Jul
(70) |
Aug
(108) |
Sep
(72) |
Oct
(65) |
Nov
(85) |
Dec
(57) |
| 2011 |
Jan
(112) |
Feb
(37) |
Mar
(25) |
Apr
(76) |
May
(61) |
Jun
(42) |
Jul
(104) |
Aug
(106) |
Sep
(56) |
Oct
(118) |
Nov
(98) |
Dec
(59) |
| 2012 |
Jan
(96) |
Feb
(84) |
Mar
(66) |
Apr
(69) |
May
(83) |
Jun
(50) |
Jul
(40) |
Aug
(43) |
Sep
(65) |
Oct
(65) |
Nov
(41) |
Dec
(38) |
| 2013 |
Jan
(46) |
Feb
(60) |
Mar
(123) |
Apr
(66) |
May
(42) |
Jun
(22) |
Jul
(8) |
Aug
(11) |
Sep
(50) |
Oct
(16) |
Nov
(3) |
Dec
(20) |
| 2014 |
Jan
(40) |
Feb
(42) |
Mar
(18) |
Apr
(36) |
May
(49) |
Jun
(18) |
Jul
(33) |
Aug
(49) |
Sep
(42) |
Oct
(54) |
Nov
(16) |
Dec
(7) |
| 2015 |
Jan
(21) |
Feb
(75) |
Mar
(46) |
Apr
(11) |
May
(15) |
Jun
(14) |
Jul
(32) |
Aug
(58) |
Sep
(38) |
Oct
(30) |
Nov
(15) |
Dec
(32) |
| 2016 |
Jan
(11) |
Feb
(22) |
Mar
(14) |
Apr
(53) |
May
(17) |
Jun
(14) |
Jul
(18) |
Aug
(25) |
Sep
(4) |
Oct
(11) |
Nov
(17) |
Dec
(7) |
| 2017 |
Jan
(2) |
Feb
(25) |
Mar
(17) |
Apr
(8) |
May
(13) |
Jun
(27) |
Jul
(17) |
Aug
(8) |
Sep
(2) |
Oct
(24) |
Nov
|
Dec
(7) |
| 2018 |
Jan
(15) |
Feb
|
Mar
|
Apr
(4) |
May
(11) |
Jun
|
Jul
(14) |
Aug
(5) |
Sep
(2) |
Oct
|
Nov
|
Dec
|
| S | M | T | W | T | F | S |
|---|---|---|---|---|---|---|
|
|
1
(6) |
2
(9) |
3
(7) |
4
(16) |
5
(9) |
6
(5) |
|
7
|
8
(17) |
9
(26) |
10
(22) |
11
(17) |
12
(12) |
13
(9) |
|
14
(9) |
15
(1) |
16
(13) |
17
(14) |
18
(11) |
19
(17) |
20
(8) |
|
21
(1) |
22
(26) |
23
(12) |
24
(15) |
25
(13) |
26
(5) |
27
(3) |
|
28
(6) |
29
(27) |
30
(11) |
31
(22) |
|
|
|
|
From: Jim T. <ta...@ls...> - 2006-05-31 22:58:20
|
I picked up an IPCOP box from a customer location and want to do some analysis. I pulled the following files. root@ding:~/ip-acct# ls -la total 204 drwxrwxrwx 2 root root 4096 May 31 17:48 . drwxr-xr-x 21 root root 4096 May 31 17:59 .. -rwxrwxrwx 1 root root 175096 May 31 17:48 data.db -rwxrwxrwx 1 root root 3154 May 31 17:48 machine.db -rwxrwxrwx 1 root root 3596 May 31 17:48 rule.db -rwxrwxrwx 1 root root 8715 May 31 17:48 timestamps How might a human read the contents of data.db? Jim Tarvid |
|
From: Ehsan A. <ehs...@gm...> - 2006-05-31 22:42:03
|
Hi all, I'm going to use IPCop as our company's firewall. Our ISP's ADSL works by first getting a 10.5.x.x IP from ADSL router's DHCP server, and then connecting to a VPN network from Windows using PAP authentication with optional encryption. Can you guide me on how I should set up this type of connection on the IPCop machine's RED interface? Thanks a lot! -- Ehsan Akhgari mailto:ehs...@gm... |
|
From: Isal S. <fai...@gm...> - 2006-05-31 22:32:41
|
Btw if I have advproxy, how do I upgrade to the new version? Should I uninstall it first or just overwrite it.. Please help.. On 5/25/06, olaf <co...@ba...> wrote: > William Warren wrote: > |
|
From: olaf <co...@ba...> - 2006-05-31 20:47:46
|
Isal Surisal wrote: > Btw if I have advproxy, how do I upgrade to the new version? By reading the Advanced Proxy manual ? cheers Olaf -- A weizen a day helps keep the doctor away. |
|
From: olaf <co...@ba...> - 2006-05-31 20:46:13
|
Dorian Logan wrote:
> I am happy at the moment to go without DHCP as it stops people
> attempting to plug into the orange lan. But ping and DNS would fantastic
> if we could enable them.
For ping you could put something like this in your rc.firewall.local
===== snip snip =====
#!/bin/sh
# Used for private firewall rules
# See how we were called.
case "$1" in
start)
## add your 'start' rules here
# add ping Orange -> Red
/sbin/iptables -A CUSTOMFORWARD -i eth3 -p icmp -o eth1 -j ACCEPT
;;
stop)
## add your 'stop' rules here
# remove ping Orange -> Red
/sbin/iptables -D CUSTOMFORWARD -i eth3 -p icmp -o eth1 -j ACCEPT
;;
reload)
$0 stop
$0 start
## add your 'reload' rules here
;;
*)
echo "Usage: $0 {start|stop|reload}"
;;
esac
===== snip snip =====
BOT can also do that for you (among many other things)
cheers Olaf
--
A weizen a day helps keep the doctor away.
|
|
From: Marco C. <ma...@fe...> - 2006-05-31 20:02:49
|
Hello, list!
After moving my IPCOP box to a diskless (Compact Flash) setup, I have begun
to experience a strange behavior.
My setup is :
Celeron 500MHz CPU
128 MB RAM
256 MB CF connected to the IDE bus (seen as /dev/hda via a IDE to CF
adapter)
a quad-port Ethernet board
a PCI video card (used only to keep the bios happy)
no HD, no Fd, no CD-ROM
red/green/blue/orange setup (orange presently empty)
The CF image has been created on the same machine (with HD & CD connected)
starting from a fresh 1.4.10 install, using the mkflash script from CVS
There are a few add-on installed (Timelimit, Net-traffic, iptstat, iptraf,
nmap, uptime-record and BlockOutTraffic), and squid is disabled.
The problem:
After roughly 8 to 10 day of normal functioning, I see that for apparently
no reason some services (mostly IDS on some random interface and logging) begin to appear as
stopped in the system status page, and, if i disable and re-enable them
from the corresponding setup page (where they still appear enabled), stay
so for only a few minutes, returning then to the "not running" state.
A simple shutdown/reboot cycle solves this problem (for a few days, anyhow).
In roughly two years of running IPCOP on the same machine with HD connected
I never experienced this problem. Somebody has an idea how to solve this?
Thanks
Marco
|
|
From: Haute S. <sub...@gm...> - 2006-05-31 17:01:03
|
Agreed! That's why it was the last option on the list. :) On 5/31/06, Dorian Logan <do...@br...> wrote: > > Thanks for this - I will take a look at M0n0wall too - it would be a shame > to move from IPCop though as I know my way around it and we have a great > track record with it. > d. > > > > On 31 May 2006, at 17:30, Haute Subzero wrote: > > Sounds like precisely what is being discussed on the developer's list. I > don't that any decisions have been made yet, but that exact conversation has > been going on. > > If you need that functionality now however, I'm thinking that one of the > other add-ons actually does it as a side effect of something else. I think > perhaps it was the BOT one. I'm not at home at the moment to check more > closely, but I suspect someone else can confirm that. > > If that isn't the case, and despite the fact that I prefer IPCop, I would > recommend that you take a look at m0n0wall (http://m0n0.ch/wall) It will > allow you to define interfaces to whatever functionality you like, from 2 up > to 16 NICS by default. It's a bit different concept in some respects, and > it doesn't have some of the features of IPCop, but it may do what you need. > > Melvin > > On 5/31/06, Dorian Logan <do...@br...> wrote: > > > > Hi, > > > > Now you have got me thinking - it would really be fantastic if you > > could add network types depending to the number of network devices > > and your specific needs, for example: > > > > Have a firewall with 5 network cards in it and setup 2 red and 3 > > green - to allow an office network to be segmented - or 1 red 2 blue > > and 2 green. The colours then really describe the services and > > security that are being applied to that device. For us today I would > > love to be able to set up 1 red, 2 blue and 2 green for example! > > > > D. > > > > > > On 31 May 2006, at 15:43, Andrew McGlashan wrote: > > > > > Dorian Logan wrote: > > >> I too would be very interested in being able to enable ping on orange > > >> - we are using orange to segment part of our office lan - ultimately > > >> for QOS rather than security reasons - so being able to make it > > >> behave like a second green network would be fantastic. > > > > > > There once was an addon -- orange as green for a second green network. > > > > > - perhaps it still exists [at least you know it exists...]. > > > > > > Edit: further searching and I can't find it -- perhaps someone on > > > the list is using the addon or has new information. > > > > > > Kind Regards > > > > > > AndrewM > > > > > > Andrew McGlashan > > > Broadband Solutions now including VoIP 1300 85 3804 > > > > > > Mobile: 04 2574 1827 Fax: 03 8790 1224 > > > > > > Affinity Vision Australia Pty Ltd > > > www.affinityvision.com.au > > > www.affinityvision.net/adsl/ > > > > > > In Case of Emergency -- http://www.affinityvision.com.au/ice.html > > > > > > > > > ------------------------------------------------------- > > > All the advantages of Linux Managed Hosting--Without the Cost and > > > Risk! > > > Fully trained technicians. The highest number of Red Hat > > > certifications in > > > the hosting industry. Fanatical Support. Click to learn more > > > http://sel.as-us.falkag.net/sel? > > > cmd=lnk&kid=107521&bid=248729&dat=121642 > > > _______________________________________________ > > > IPCop-user mailing list > > > IPC...@li... > > > https://lists.sourceforge.net/lists/listinfo/ipcop-user > > > > > > > > ------------------------------------------------------- > > All the advantages of Linux Managed Hosting--Without the Cost and Risk! > > Fully trained technicians. The highest number of Red Hat certifications > > in > > the hosting industry. Fanatical Support. Click to learn more > > http://sel.as-us.falkag.net/sel?cmd=lnk&kid=107521&bid=248729&dat=121642 > > > > _______________________________________________ > > IPCop-user mailing list > > IPC...@li... > > https://lists.sourceforge.net/lists/listinfo/ipcop-user > > > > > > -- > -- > "Do the right thing. It will gratify some people and astound the rest." - > Mark Twain > > > -- -- "Do the right thing. It will gratify some people and astound the rest." - Mark Twain |
|
From: Dorian L. <do...@br...> - 2006-05-31 16:57:25
|
Thanks for this - I will take a look at M0n0wall too - it would be a shame to move from IPCop though as I know my way around it and we have a great track record with it. d. On 31 May 2006, at 17:30, Haute Subzero wrote: > Sounds like precisely what is being discussed on the developer's > list. I don't that any decisions have been made yet, but that > exact conversation has been going on. > > If you need that functionality now however, I'm thinking that one > of the other add-ons actually does it as a side effect of something > else. I think perhaps it was the BOT one. I'm not at home at the > moment to check more closely, but I suspect someone else can > confirm that. > > If that isn't the case, and despite the fact that I prefer IPCop, I > would recommend that you take a look at m0n0wall (http://m0n0.ch/ > wall) It will allow you to define interfaces to whatever > functionality you like, from 2 up to 16 NICS by default. It's a > bit different concept in some respects, and it doesn't have some of > the features of IPCop, but it may do what you need. > > Melvin > > On 5/31/06, Dorian Logan <do...@br...> wrote: > Hi, > > Now you have got me thinking - it would really be fantastic if you > could add network types depending to the number of network devices > and your specific needs, for example: > > Have a firewall with 5 network cards in it and setup 2 red and 3 > green - to allow an office network to be segmented - or 1 red 2 blue > and 2 green. The colours then really describe the services and > security that are being applied to that device. For us today I would > love to be able to set up 1 red, 2 blue and 2 green for example! > > D. > > > On 31 May 2006, at 15:43, Andrew McGlashan wrote: > > > Dorian Logan wrote: > >> I too would be very interested in being able to enable ping on > orange > >> - we are using orange to segment part of our office lan - > ultimately > >> for QOS rather than security reasons - so being able to make it > >> behave like a second green network would be fantastic. > > > > There once was an addon -- orange as green for a second green > network. > > - perhaps it still exists [at least you know it exists...]. > > > > Edit: further searching and I can't find it -- perhaps someone on > > the list is using the addon or has new information. > > > > Kind Regards > > > > AndrewM > > > > Andrew McGlashan > > Broadband Solutions now including VoIP 1300 85 3804 > > > > Mobile: 04 2574 1827 Fax: 03 8790 1224 > > > > Affinity Vision Australia Pty Ltd > > www.affinityvision.com.au > > www.affinityvision.net/adsl/ > > > > In Case of Emergency -- http://www.affinityvision.com.au/ice.html > > > > > > ------------------------------------------------------- > > All the advantages of Linux Managed Hosting--Without the Cost and > > Risk! > > Fully trained technicians. The highest number of Red Hat > > certifications in > > the hosting industry. Fanatical Support. Click to learn more > > http://sel.as-us.falkag.net/sel? > > cmd=lnk&kid=107521&bid=248729&dat=121642 > > _______________________________________________ > > IPCop-user mailing list > > IPC...@li... > > https://lists.sourceforge.net/lists/listinfo/ipcop-user > > > > ------------------------------------------------------- > All the advantages of Linux Managed Hosting--Without the Cost and > Risk! > Fully trained technicians. The highest number of Red Hat > certifications in > the hosting industry. Fanatical Support. Click to learn more > http://sel.as-us.falkag.net/sel? > cmd=lnk&kid=107521&bid=248729&dat=121642 > _______________________________________________ > IPCop-user mailing list > IPC...@li... > https://lists.sourceforge.net/lists/listinfo/ipcop-user > > > > -- > -- > "Do the right thing. It will gratify some people and astound the > rest." - Mark Twain |
|
From: Haute S. <sub...@gm...> - 2006-05-31 16:30:42
|
Sounds like precisely what is being discussed on the developer's list. I don't that any decisions have been made yet, but that exact conversation has been going on. If you need that functionality now however, I'm thinking that one of the other add-ons actually does it as a side effect of something else. I think perhaps it was the BOT one. I'm not at home at the moment to check more closely, but I suspect someone else can confirm that. If that isn't the case, and despite the fact that I prefer IPCop, I would recommend that you take a look at m0n0wall (http://m0n0.ch/wall) It will allow you to define interfaces to whatever functionality you like, from 2 up to 16 NICS by default. It's a bit different concept in some respects, and it doesn't have some of the features of IPCop, but it may do what you need. Melvin On 5/31/06, Dorian Logan <do...@br...> wrote: > > Hi, > > Now you have got me thinking - it would really be fantastic if you > could add network types depending to the number of network devices > and your specific needs, for example: > > Have a firewall with 5 network cards in it and setup 2 red and 3 > green - to allow an office network to be segmented - or 1 red 2 blue > and 2 green. The colours then really describe the services and > security that are being applied to that device. For us today I would > love to be able to set up 1 red, 2 blue and 2 green for example! > > D. > > > On 31 May 2006, at 15:43, Andrew McGlashan wrote: > > > Dorian Logan wrote: > >> I too would be very interested in being able to enable ping on orange > >> - we are using orange to segment part of our office lan - ultimately > >> for QOS rather than security reasons - so being able to make it > >> behave like a second green network would be fantastic. > > > > There once was an addon -- orange as green for a second green network. > > - perhaps it still exists [at least you know it exists...]. > > > > Edit: further searching and I can't find it -- perhaps someone on > > the list is using the addon or has new information. > > > > Kind Regards > > > > AndrewM > > > > Andrew McGlashan > > Broadband Solutions now including VoIP 1300 85 3804 > > > > Mobile: 04 2574 1827 Fax: 03 8790 1224 > > > > Affinity Vision Australia Pty Ltd > > www.affinityvision.com.au > > www.affinityvision.net/adsl/ > > > > In Case of Emergency -- http://www.affinityvision.com.au/ice.html > > > > > > ------------------------------------------------------- > > All the advantages of Linux Managed Hosting--Without the Cost and > > Risk! > > Fully trained technicians. The highest number of Red Hat > > certifications in > > the hosting industry. Fanatical Support. Click to learn more > > http://sel.as-us.falkag.net/sel? > > cmd=lnk&kid=107521&bid=248729&dat=121642 > > _______________________________________________ > > IPCop-user mailing list > > IPC...@li... > > https://lists.sourceforge.net/lists/listinfo/ipcop-user > > > > ------------------------------------------------------- > All the advantages of Linux Managed Hosting--Without the Cost and Risk! > Fully trained technicians. The highest number of Red Hat certifications in > the hosting industry. Fanatical Support. Click to learn more > http://sel.as-us.falkag.net/sel?cmd=lnk&kid=107521&bid=248729&dat=121642 > _______________________________________________ > IPCop-user mailing list > IPC...@li... > https://lists.sourceforge.net/lists/listinfo/ipcop-user > -- -- "Do the right thing. It will gratify some people and astound the rest." - Mark Twain |
|
From: Dorian L. <do...@br...> - 2006-05-31 15:19:11
|
Hi, Now you have got me thinking - it would really be fantastic if you could add network types depending to the number of network devices and your specific needs, for example: Have a firewall with 5 network cards in it and setup 2 red and 3 green - to allow an office network to be segmented - or 1 red 2 blue and 2 green. The colours then really describe the services and security that are being applied to that device. For us today I would love to be able to set up 1 red, 2 blue and 2 green for example! D. On 31 May 2006, at 15:43, Andrew McGlashan wrote: > Dorian Logan wrote: >> I too would be very interested in being able to enable ping on orange >> - we are using orange to segment part of our office lan - ultimately >> for QOS rather than security reasons - so being able to make it >> behave like a second green network would be fantastic. > > There once was an addon -- orange as green for a second green network. > - perhaps it still exists [at least you know it exists...]. > > Edit: further searching and I can't find it -- perhaps someone on > the list is using the addon or has new information. > > Kind Regards > > AndrewM > > Andrew McGlashan > Broadband Solutions now including VoIP 1300 85 3804 > > Mobile: 04 2574 1827 Fax: 03 8790 1224 > > Affinity Vision Australia Pty Ltd > www.affinityvision.com.au > www.affinityvision.net/adsl/ > > In Case of Emergency -- http://www.affinityvision.com.au/ice.html > > > ------------------------------------------------------- > All the advantages of Linux Managed Hosting--Without the Cost and > Risk! > Fully trained technicians. The highest number of Red Hat > certifications in > the hosting industry. Fanatical Support. Click to learn more > http://sel.as-us.falkag.net/sel? > cmd=lnk&kid=107521&bid=248729&dat=121642 > _______________________________________________ > IPCop-user mailing list > IPC...@li... > https://lists.sourceforge.net/lists/listinfo/ipcop-user |
|
From: Andrew M. <and...@af...> - 2006-05-31 14:43:28
|
Dorian Logan wrote: > I too would be very interested in being able to enable ping on orange > - we are using orange to segment part of our office lan - ultimately > for QOS rather than security reasons - so being able to make it > behave like a second green network would be fantastic. There once was an addon -- orange as green for a second green network. - perhaps it still exists [at least you know it exists...]. Edit: further searching and I can't find it -- perhaps someone on the list is using the addon or has new information. Kind Regards AndrewM Andrew McGlashan Broadband Solutions now including VoIP 1300 85 3804 Mobile: 04 2574 1827 Fax: 03 8790 1224 Affinity Vision Australia Pty Ltd www.affinityvision.com.au www.affinityvision.net/adsl/ In Case of Emergency -- http://www.affinityvision.com.au/ice.html |
|
From: <jor...@ya...> - 2006-05-31 14:35:26
|
First Sorry for my english. I have a PC with Ipcop 1.4.10 and Url Filter 1.6.0. (I already tried with UrlFilter 1.7.0) I need to configure the option of Set to user quota of the URL Filter but when entering usuary (directions IP or MAC Address) it does not make quota of time for user, and disable the url filter, since it does not make any filtrate. Any suggestion, thanks for the attention Jorge Torres --------------------------------- Do You Yahoo!? La mejor conexión a Internet y 2GB extra a tu correo por $100 al mes. http://net.yahoo.com.mx |
|
From: Dorian L. <do...@br...> - 2006-05-31 14:24:38
|
I too would be very interested in being able to enable ping on orange - we are using orange to segment part of our office lan - ultimately for QOS rather than security reasons - so being able to make it behave like a second green network would be fantastic. I am happy at the moment to go without DHCP as it stops people attempting to plug into the orange lan. But ping and DNS would fantastic if we could enable them. d. On 31 May 2006, at 14:02, Andrew McGlashan wrote: > hen no you can't and y |
|
From: <ok...@gm...> - 2006-05-31 13:20:03
|
I have been searching for a long time but i have not found any plugin or an external program that does waht i want. I need to generate reports and statistics about the usage and traffic that the users of the intranet do. I need the traffic separated by protocols, by users (IPs) and the use of each protocol by each user. It should generate the reports in real time (or inserting the data into a database) in PDF or HTML (a php script or servlet would be the best). Any idea? Thanks. |
|
From: Andrew M. <and...@af...> - 2006-05-31 13:02:25
|
Darren wrote: > For some reason I can't seem to ping the internet from my orange > network. I was pretty sure I could before. Unless things have changed, then no you can't and you couldn't have -- this is by design. Kind Regards AndrewM Andrew McGlashan Broadband Solutions now including VoIP 1300 85 3804 Mobile: 04 2574 1827 Fax: 03 8790 1224 Affinity Vision Australia Pty Ltd www.affinityvision.com.au www.affinityvision.net/adsl/ In Case of Emergency -- http://www.affinityvision.com.au/ice.html |
|
From: Administrator <ad...@di...> - 2006-05-31 12:49:12
|
> > the first ipcop firewall green network 192.168.1.0/24 then a > 2km ptp wireless link to a different office as blue network > 192.168.2.0/24, intially i hoped for a green network, but > settle for blue with DMZ Pinholes. > > second Ipcop firewall linked via IPSec VPN -> green 192.168.3.0/24 > > Now the problem is I can't access 192.168.3.0/24 from the > blue network of the first IPCop Firewall > > Also I cant access the IPSec VPN from OpenVPN (192.168.10.x) > This kind of requirement seems to be common (access through the VPN from blue1 -> green2 or green1 -> orange2) and seems to be blocked by the IPSec security. My reading leads me to believe the way round is to add DNAT & SNAT rules into the iptables setup to NAT the traffic into the green1 ¡ê green2 ip range. Does anybody know the details of how this is done? Can anybody provide some code to enable this, which could be added to the ipcop core? Thanks David |
|
From: Keith <pd...@pd...> - 2006-05-31 12:37:05
|
Try running Memtest86 (http://www.memtest86.com/). I had some problems installing and booting on the last IPCop machine I made. Ran that and found the memory was bad. Replaced and all worked fine. Keith On 5/31/06, Robert Bezerra <rob...@ho...> wrote: > > Hi, > > I have just tried to install IPCOP V 1.4.10 onto an old > machine. Everything > was going great. IPCOP auto detected both my nics (tulip and realtec). > However, the system halts after the first reboot. > > I got errors 0X04 and 0X53 while installing it on a 10Gb drive but got no > errors when I installed on a 20Gb drive. > > The system always freezes after: > > Freeing unused kernel memory: 98Kb freed > > Can some one help? Thanks in advance... > > Bob > > > > > ------------------------------------------------------- > All the advantages of Linux Managed Hosting--Without the Cost and Risk! > Fully trained technicians. The highest number of Red Hat certifications in > the hosting industry. Fanatical Support. Click to learn more > http://sel.as-us.falkag.net/sel?cmd=lnk&kid=107521&bid=248729&dat=121642 > _______________________________________________ > IPCop-user mailing list > IPC...@li... > https://lists.sourceforge.net/lists/listinfo/ipcop-user > |
|
From: Darren <ip...@ba...> - 2006-05-31 12:22:17
|
For some reason I can't seem to ping the internet from my orange network. I was pretty sure I could before. Traceroute still works on orange and ping works on all other interfaces. Any idea where the problem might be and what I can do to allow Orange to ping again. This is what ipcop reports when I try and ping from orange. May 31 21:52:50 cerberus kernel: OUTPUT IN=eth2 OUT=ppp0 SRC=192.168.2.2 DST=211.31.137.132 LEN=84 TOS=0x00 PREC=0x00 TTL=63 ID=0 DF PROTO=ICMP TYPE=8 CODE=0 ID=39740 SEQ=1 |
|
From: Robert B. <rob...@ho...> - 2006-05-31 09:13:16
|
Hi,
I have just tried to install IPCOP V 1.4.10 onto an old machine. Everything
was going great. IPCOP auto detected both my nics (tulip and realtec).
However, the system halts after the first reboot.
I got errors 0X04 and 0X53 while installing it on a 10Gb drive but got no
errors when I installed on a 20Gb drive.
The system always freezes after:
Freeing unused kernel memory: 98Kb freed
Can some one help? Thanks in advance...
Bob
|
|
From: Wisu <bi...@bi...> - 2006-05-31 08:52:55
|
Hi, I have a few networks, the first ipcop firewall green network 192.168.1.0/24 then a 2km ptp wireless link to a different office as blue network 192.168.2.0/24, intially i hoped for a green network, but settle for blue with DMZ Pinholes. second Ipcop firewall linked via IPSec VPN -> green 192.168.3.0/24 Now the problem is I can't access 192.168.3.0/24 from the blue network of the first IPCop Firewall Also I cant access the IPSec VPN from OpenVPN (192.168.10.x) please advise -- Wisu on amd64 kubuntu! |
|
From: <bjo...@gm...> - 2006-05-31 08:12:18
|
On 29/05/06, Franck Horlaville <fh....@qu...> wrote: > Hi all ! > > Could anyone invent a plugin that would talk to network cards and > have them do something with their lights to identify them ? I'm sure > that would be loved by anyone fumbling with 4 identical cards ! I'm running an IPcop with 4 identical NICs. When I set it up I had the same need to identify them, but solved it in a completely different way. Perhaps my experience can be of help for somebody else... Before starting installation I used one NIC and a Knoppix live CD to find out what end of the PCI bus had the lowest HW address. That took two boots and a quick move of the NIC between them. Turned out the lowest HW adress was in the slot closest to the floor on this particular machine. So I put the NICs in the four lowest slots and installed IPcop. Now the cards were detected in rising (sic!) order, and I never had to doubt the colour of the four cards. Could not have been easier. Regards, Bj=F8rn Ingmar Berg |
|
From: Ben T. <be...@ti...> - 2006-05-31 04:48:19
|
st...@wo... wrote: > > that would be passwd admin (note case) > > And even that wont work becauase OP wants to change the web access > not a unix logon. > Indeed. And, being unsure of the relationship between the web admin user & the UNIX admin user (which already existed on the box) I'd already tried that several times before posting here... > But running setup will work. Yes it did, Cheers! Thanks all. -- Ben Tisdall |
|
From: Renaud (R. O. <re...@ol...> - 2006-05-30 23:46:31
|
On Tuesday 30 May 2006 16:54, my mailbox was graced by a missive
from Franck Horlaville <fh....@qu...> who wrote:
> but on a live installation in a super-crowded rack with all the
> labels obsolete and the cables difficult to follow this suggestion is
> what I needed:
>
> ethtool -p ethN where N=3D0,1,2 etc.
>
> It works beautifully indeed and it reports when the card doesn't
> support the function.
>
> so for now I guess I don't need anything more :-D
>
> it also has the advantage to work 1000 km away by telephone "look at
> the network cards, I'm going to make one blink - that's the one you
> want to blabla"
[root@ron images]# ethtool -p eth1
Cannot identify NIC: Operation not supported
Does not help.
So we'll go back to another method I used this afternoon after=20
re-motherboarding my firewall:
Configures green, orange and red as 192.168.1.254, 192.168.2.254 and=20
192.168.3.254.
=46rom the neighbouring box (195.168.1.1) I tried the various outlets and p=
inged=20
the firtst IP until I found which one it was.
Changed neighbouring box IP to 192.168.2.1 and found the second socket, and=
=20
assigning the third was trivial.
=20
Cheers,
=20
Ron.
=2D-
Hindsight is an exact science.
=20
-- http://www.olgiati-in-paraguay.org --
|
|
From: David M. <dm...@nb...> - 2006-05-30 21:31:58
|
Just wondering if there is anyone knows of an easy way to identify and log or block webcam traffic? (1.4.10, cop+, copfilter) What about a way to set up a "hotspot" with auto or semi-auto authentication by username and password on blue. Something like nocat or chilidog?? Something that will allow us to link the DansGuardian, snort, etc logs to the individual users should that be necessary to follow up. (There is something called ident mentioned, but I don't want something they can spoof or forget to log into, and I don't want something that has to be added to 100 student computers.) ----- David Meed <dm...@nb...> http://www3.nbnet.nb.ca/dmeed (Sony LANC, DMX-512, Panasonic Control M) http://www.nbbi.ca |
|
From: Franck H. <fh....@qu...> - 2006-05-30 20:55:13
|
Thanks to all who answered ! I'll give a special note to the following ideas: - plug in ethernet cable and look at /var/log/messages to see who came up - note the mac addresses before installing the cards but on a live installation in a super-crowded rack with all the labels obsolete and the cables difficult to follow this suggestion is what I needed: ethtool -p ethN where N=0,1,2 etc. It works beautifully indeed and it reports when the card doesn't support the function. so for now I guess I don't need anything more :-D it also has the advantage to work 1000 km away by telephone "look at the network cards, I'm going to make one blink - that's the one you want to blabla" Thanks ! On 30 mai 06, at 06:50, st...@wo... wrote: > On 29/05/06 15:13:13, Franck Horlaville wrote: >> Hi all ! >> Could anyone invent a plugin that would talk to network cards and >> have them do something with their lights to identify them ? I'm >> sure that would be loved by anyone fumbling with 4 identical cards ! >> Interface through the GUI - light up GREEN would either light it >> up solid or make it blink in an identifiable way, then light up >> RED etc. I'm pretty sure I read those features existed in some >> network cards ... >> > > ethtool -p > > -- > 'ooroo > > stinga...(:)-) > --------------------------------------------------- > Email: st...@wo... o > You need only two tools. o ///// > A hammer and duct tape. If it /@ `\ /) ~ > doesn't move and it should, > (O) X< ~ Fish!! > use the hammer. If it moves and `\___/' \) ~ > shouldn't, use the tape. \\\ > --------------------------------------------------- > > > ------------------------------------------------------- > All the advantages of Linux Managed Hosting--Without the Cost and > Risk! > Fully trained technicians. The highest number of Red Hat > certifications in > the hosting industry. Fanatical Support. Click to learn more > http://sel.as-us.falkag.net/sel? > cmd=lnk&kid=107521&bid=248729&dat=121642 > _______________________________________________ > IPCop-user mailing list > IPC...@li... > https://lists.sourceforge.net/lists/listinfo/ipcop-user Franck Horlaville IT Manager Qualitech |