*BSD News Article 68727


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.anu.edu.au!harbinger.cc.monash.edu.au!news.mel.connect.com.au!munnari.OZ.AU!news.hawaii.edu!ames!usenet.kornet.nm.kr!usenet.etri.re.kr!news.kreonet.re.kr!news.dacom.co.kr!arclight.uoregon.edu!enews.sgi.com!sgigate.sgi.com!esiee.fr!jussieu.fr!math.ohio-state.edu!usc!usenet
From: Aaron Ryan <aaronr@ccweb.com>
Newsgroups: comp.unix.bsd.freebsd.misc,comp.os.linux.development.system
Subject: problem w/ Linux as Firewall, Will freeBSD work any better?
Date: Thu, 16 May 1996 17:27:53 +0800
Organization: Cybercom
Lines: 33
Sender: aaronr@res-0031.usc.edu
Message-ID: <319AF519.66F5@ccweb.com>
NNTP-Posting-Host: res-0031.usc.edu
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
X-Mailer: Mozilla 3.0b3Gold (Win95; I)
Xref: euryale.cc.adfa.oz.au comp.unix.bsd.freebsd.misc:19539 comp.os.linux.development.system:24037

I have spent the last few nights setting up Linux (I've tried 1.2.8 and 
1.3.91), to be a firewall using the SOCKS server.   I was able to get it 
to work but have run into a problem which I have not figured out.

I installed Socks v.4 from nec.com and used diald as a PPP on Demand 
daemon.  I had a hard time figuring out how to get pppd to work with PAP 
authentification using the diald server put was able to get it to work.

I'm using the Hummingbird 32-bit Winsock SOCKS aware DLL to allow the 
intranets Win95 machines to have access the internet through the SOCKS 
server.

The system works fine for a while, then the SOCKS server becomes 
inaccessible from any of the computers on the intranet.  The Linux 
machine stays-up and I can still us the Linux machine from the console.
but I cannot open a net connection from any other machine to this Linux 
machine.  However if I KILL the diald daemon and start it up again, all 
is well for a period of time.   

I'm wondering if this is a problem with diald, inetd, sockd, pppd, or 
just 
linux (internal bug)

My real point here is, has anyone setup a SOCKS firewall in FreeBSD 
using PPP on demand over ISDN using PAP authentification?

If so, I'm moving over to FreeBSD, Linux is just too experimental.


Aaron Ryan
System Administrator
Cybercom Web Solutions
aaronr@ccweb.com