Return to BSD News archive
Path: euryale.cc.adfa.oz.au!newshost.anu.edu.au!harbinger.cc.monash.edu.au!news.mel.connect.com.au!munnari.OZ.AU!news.hawaii.edu!ames!usenet.kornet.nm.kr!usenet.etri.re.kr!news.kreonet.re.kr!news.dacom.co.kr!arclight.uoregon.edu!enews.sgi.com!sgigate.sgi.com!esiee.fr!jussieu.fr!math.ohio-state.edu!usc!usenet From: Aaron Ryan <aaronr@ccweb.com> Newsgroups: comp.unix.bsd.freebsd.misc,comp.os.linux.development.system Subject: problem w/ Linux as Firewall, Will freeBSD work any better? Date: Thu, 16 May 1996 17:27:53 +0800 Organization: Cybercom Lines: 33 Sender: aaronr@res-0031.usc.edu Message-ID: <319AF519.66F5@ccweb.com> NNTP-Posting-Host: res-0031.usc.edu Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-Mailer: Mozilla 3.0b3Gold (Win95; I) Xref: euryale.cc.adfa.oz.au comp.unix.bsd.freebsd.misc:19539 comp.os.linux.development.system:24037 I have spent the last few nights setting up Linux (I've tried 1.2.8 and 1.3.91), to be a firewall using the SOCKS server. I was able to get it to work but have run into a problem which I have not figured out. I installed Socks v.4 from nec.com and used diald as a PPP on Demand daemon. I had a hard time figuring out how to get pppd to work with PAP authentification using the diald server put was able to get it to work. I'm using the Hummingbird 32-bit Winsock SOCKS aware DLL to allow the intranets Win95 machines to have access the internet through the SOCKS server. The system works fine for a while, then the SOCKS server becomes inaccessible from any of the computers on the intranet. The Linux machine stays-up and I can still us the Linux machine from the console. but I cannot open a net connection from any other machine to this Linux machine. However if I KILL the diald daemon and start it up again, all is well for a period of time. I'm wondering if this is a problem with diald, inetd, sockd, pppd, or just linux (internal bug) My real point here is, has anyone setup a SOCKS firewall in FreeBSD using PPP on demand over ISDN using PAP authentification? If so, I'm moving over to FreeBSD, Linux is just too experimental. Aaron Ryan System Administrator Cybercom Web Solutions aaronr@ccweb.com