|
From: Frischknecht P. <pe...@em...> - 2004-05-01 02:40:48
|
Does anybody have interest in automatic link detection. The idea is to be able to run scripts based on the link state of the = card. This project: http://0pointer.de/lennart/projects/ifplugd/ It was originally designed for laptops, but we could use it as well. I = have already played with it, it works well. =20 Why do I need it? (or want it) Let's say we are perfiorming an upgrade of some kind to the network. = Instead of getting harassing phone calls from users, we simply unplug = the WAN side of the DL router. Ifplugd will fire up a script that = blocks all traffic and redirects WWW to a local web server in the DL box = itself (say on port 8080). Example: iptables -t nat -I PREROUTING -i (LAN interface) -p tcp --dport 80 -j = REDIRECT --to-port 8080. The users will now see a page that says: "Sorry for the trouble...we = will be back up in a little bit. Go watch TV." When we plug the WAN port back in, ifplugd automagically removes the = iptables entries and life is good. Neat? Who is interested? |
|
From: Heiko Z. <he...@zu...> - 2004-05-01 12:26:18
|
Frischknecht Peter wrote: > Does anybody have interest in automatic link detection. > > The idea is to be able to run scripts based on the link state of the card. > > This project: > http://0pointer.de/lennart/projects/ifplugd/ > > It was originally designed for laptops, but we could use it as well. I > have already played with it, it works well. > > Why do I need it? (or want it) > Let's say we are perfiorming an upgrade of some kind to the network. > Instead of getting harassing phone calls from users, we simply unplug > the WAN side of the DL router. Ifplugd will fire up a script that > blocks all traffic and redirects WWW to a local web server in the DL box > itself (say on port 8080). > Example: > iptables -t nat -I PREROUTING -i (LAN interface) -p tcp --dport 80 -j > REDIRECT --to-port 8080. > The users will now see a page that says: "Sorry for the trouble...we > will be back up in a little bit. Go watch TV." > > When we plug the WAN port back in, ifplugd automagically removes the > iptables entries and life is good. > Neat? > > Who is interested? > I think it's a nice feature. I added it to the feature requests, but it won't make it into 1.2 anymore. Heiko |
|
From: Diego T. <dt...@co...> - 2004-05-01 13:00:48
|
On Sat, May 01, 2004 at 08:22:28AM -0400, Heiko Zuerker wrote: > I added it to the feature requests, but it won't make it into 1.2 anymore. it's too late for me to include the arpwatch patches on 1.2? -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dtorres at anthalia dot org - Madrid / España |
|
From: Bruce S. <bw...@ar...> - 2004-05-02 00:50:51
|
> > I added it to the feature requests, but it won't make it into 1.2 anymore. > > it's too late for me to include the arpwatch patches on 1.2? They sound like bug fixes to me, so I recommend we include them. (and it'll allow me to switch my arpwatch server to DL :) - BS |
|
From: Diego T. <dt...@co...> - 2004-05-02 22:25:11
|
On Sat, May 01, 2004 at 08:50:46PM -0400, Bruce Smith wrote: > > it's too late for me to include the arpwatch patches on 1.2? > > They sound like bug fixes to me, so I recommend we include them. > > (and it'll allow me to switch my arpwatch server to DL :) could you please upload http://www.mulliner.org/collin/arpwatch_repscr.patch this file bzip2 to the ftpserver? pd.- heiko, could i have a ftp user for uploading this kind of things? -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dtorres at anthalia dot org - Madrid / España |
|
From: Bruce S. <bw...@ar...> - 2004-05-03 02:07:06
|
> > > it's too late for me to include the arpwatch patches on 1.2? > > > > They sound like bug fixes to me, so I recommend we include them. > > > > (and it'll allow me to switch my arpwatch server to DL :) > > could you please upload > > http://www.mulliner.org/collin/arpwatch_repscr.patch > > this file bzip2 to the ftpserver? I uploaded it to the ftp server. I'm having trouble with CVS right now, so I can't update the md5sum.lst file now. Is anyone else having problems with cvs? I got an error that the "DSA host key for cvs.devil-linux.sourceforge.net has changed". I edited my known_hosts file and let it recreate the key, now I get: # cvs_sf update -d -P Cannot access /cvsroot/devil-linux/CVSROOT No such file or directory - BS |
|
From: Diego T. <dt...@co...> - 2004-05-03 10:59:11
|
On Sun, May 02, 2004 at 10:07:03PM -0400, Bruce Smith wrote: > > > > this file bzip2 to the ftpserver? > > I uploaded it to the ftp server. bruce, could you send me your arpwatch init.d file? i don't use arpwatch, so i don't know which options are usual and which are useless... :) -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dtorres at anthalia dot org - Madrid / España |
|
From: Bruce S. <bw...@ar...> - 2004-05-03 12:28:29
Attachments:
arpwatch
|
> bruce, could you send me your arpwatch init.d file? i don't use > arpwatch, so i don't know which options are usual and which are useless... :) >From a Redhat 8.0 box, init.d/arpwatch is attached. Also, here is /etc/sysconfig/arpwatch (referenced in the script): ############################################################### # -u <username> : defines with what user id arpwatch should run # -e <email> : the <email> where to send the reports # -s <from> : the <from>-address OPTIONS="-u pcap -e root -s 'root (Arpwatch)'" ############################################################### - BS |
|
From: Diego T. <dt...@co...> - 2004-05-03 15:38:28
|
On Mon, May 03, 2004 at 08:28:27AM -0400, Bruce Smith wrote: > >From a Redhat 8.0 box, init.d/arpwatch is attached. > > Also, here is /etc/sysconfig/arpwatch (referenced in the script): you can now use dl as your arpwatch box :)) please, test my changes as i'm not used to work with arpwatch. -- -- gnupg keyfingerprint -- 48AF 5BF9 8F54 2966 64CC 2327 7CD0 DD91 B09D 5799 -- Use of a keyboard or mouse may be linked to serious injuries or disorders. Diego Torres - dtorres at anthalia dot org - Madrid / España |
|
From: Tim T. <t....@co...> - 2004-05-03 02:17:53
|
Bruce Smith wrote: >Is anyone else having problems with cvs? I got an error that the >"DSA host key for cvs.devil-linux.sourceforge.net has changed". >I edited my known_hosts file and let it recreate the key, now I get: > ># cvs_sf update -d -P >Cannot access /cvsroot/devil-linux/CVSROOT >No such file or directory > > - BS > Didn't sf do away with the cvs.projectname.sourceforge.net format as of April 28th? At least for the anon stuff I had to change to point to plain cvs.sourceforge.net. Then of course all the CVS/Root files still had the wrong info. Tim |
|
From: Bruce S. <bw...@ar...> - 2004-05-03 03:08:37
|
> ># cvs_sf update -d -P > >Cannot access /cvsroot/devil-linux/CVSROOT > >No such file or directory > > Didn't sf do away with the cvs.projectname.sourceforge.net format as of > April 28th? Oh yeah, forgot about that. Thanks, it's working now. :-) md5sum.lst change has been committed. - BS |