Re: [Firestarter-user] problems using firestarter
Brought to you by:
majix
From: Mike P. <la...@do...> - 2006-08-21 22:46:16
|
aviv wrote: > > Hmm. Ok- I've set up ppp0 as the "Internet connected network device", and > populated the non-routables file with the data as you suggesetd (it was empty > for some reason afer a fresh apt-get install of firestarter). > I still get the same issues... > Only now, pinging a host returns a different error message- > "ping: sendmsg: Network is unreachable" (before, when I've set eth0 as the > internet-connected-network-device, I got: > "ping: sendmsg: Operation not permitted" > > As a "bonus" (:)), this time when I start the firewall the connection to the > internet doesn't even return when I stop the firewall, and I have to set up the > ppp0 connection again... > > I've also enabled ICMP logging and pinged a address, and here's the output from > /var/log/messages - I hope it means something good now which is meaningful to > you :-) > > Aug 21 22:31:08 localhost kernel: [4295361.583000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=120 TOS=0x00 PREC=0x00 TTL=64 ID=58695 > DF PROTO=47 > Aug 21 22:31:08 localhost pppd[7017]: Connection terminated. > Aug 21 22:31:08 localhost kernel: [4295361.586000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2518 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH URGP=0 > Aug 21 22:31:08 localhost kernel: [4295361.586000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2519 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > Aug 21 22:31:08 localhost kernel: [4295361.796000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2520 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > Aug 21 22:31:08 localhost kernel: [4295362.216000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2521 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > Aug 21 22:31:09 localhost pppd[7017]: Exit. > Aug 21 22:31:09 localhost kernel: [4295363.056000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2522 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > Aug 21 22:31:10 localhost kernel: [4295363.920000] Unknown InputIN=eth1 OUT= > MAC=00:01:2e:0c:c2:a7:00:0f:34:7b:c8:95:08:00 SRC=212.143.206.1 > DST=172.27.100.248 LEN=100 TOS=0x00 PREC=0x00 TTL=249 ID=18441 PROTO=47 > Aug 21 22:31:11 localhost kernel: [4295364.736000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2523 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > Aug 21 22:31:14 localhost kernel: [4295368.096000] Unknown OutputIN= OUT=eth1 > SRC=172.27.100.248 DST=212.143.206.1 LEN=56 TOS=0x00 PREC=0x00 TTL=64 ID=2524 DF > PROTO=TCP SPT=44426 DPT=1723 WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > This may very well be beyond what firestarter is capable of dealing with normally. Seems like you have two internet facing devices, an eth1 and a ppp0 which have different characteristics and settings. FS doesn't deal with multiple interfaces well. There might be a way around it though. After you start your ppp connection, what does the output of ifconfig look like? Are the ppp0 and eth0 and eth1 devices listed? What does it say? -Mike |