public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-server] Interesting Iptables issue.
@ 2008-01-09  4:50 Nestor Camacho III
  2008-01-09  5:12 ` Andrew Cowie
                   ` (2 more replies)
  0 siblings, 3 replies; 10+ messages in thread
From: Nestor Camacho III @ 2008-01-09  4:50 UTC (permalink / raw
  To: gentoo-server

I am wondering if anyone has come into this really unique problem...

Short story...

I had a gateway box on different hardware, that finally kicked the
bucket. I purchased new hardware rebuilt gentoo on it and I was  able to
get on the internet as I used to with the old box....however... with one
issue that has gotten the best of me... I have spent hours recompiling
kernel options and iptables. Google'ing and reading as much as I can on
the issue. I have sniffed the traffic both on the gateway server and on
the laptop(s) that I have experienced the issue on.

Now, what the problem is...I vpn (over ssl, to a Juniper device) to my
job. What I am seeing is when I finally connect I can ping hosts
internal to my work network, but when I try to initiate a connection
(ssh, http, rdp, etc) I get no where. It just hangs on trying to
establish the connections.

Upon sniffing the traffic I see that I start to generate duplicate
acks/packets and the connection fails.

I have tried already enableing and disabling things with ethtool to no
avail.

Now the kicker! I boot up on the same computer using Ubuntu live cd and
import the same firewall rules and everything works as it should!

It is an elusive issue and I know that I am not doing it justice in the
email but any nod in the right direction would be greatly appreciated.

Nes++
-- 
gentoo-server@lists.gentoo.org mailing list



^ permalink raw reply	[flat|nested] 10+ messages in thread

end of thread, other threads:[~2008-01-19  2:19 UTC | newest]

Thread overview: 10+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2008-01-09  4:50 [gentoo-server] Interesting Iptables issue Nestor Camacho III
2008-01-09  5:12 ` Andrew Cowie
2008-01-09 14:48   ` Nestor Camacho III
2008-01-09  6:16 ` Lindsay Haisley
2008-01-09 14:49   ` Nestor Camacho III
2008-01-19  2:18   ` Nestor Camacho III
2008-01-09 19:00 ` Oliver Schad
2008-01-09 19:25   ` Lindsay Haisley
2008-01-09 19:29     ` Oliver Schad
2008-01-10 10:16     ` Oliver Schad

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox