public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: Mick <michaelkintzios@gmail.com>
To: gentoo-user@lists.gentoo.org
Subject: Re: [gentoo-user]  Curious ping problem with no FW
Date: Sun, 20 Jul 2008 16:58:20 +0100	[thread overview]
Message-ID: <200807201658.29960.michaelkintzios@gmail.com> (raw)
In-Reply-To: <87lk044bki.fsf@newsguy.com>

[-- Attachment #1: Type: text/plain, Size: 1596 bytes --]

On Monday 14 July 2008, Harry Putnam wrote:
> I've had a problem with being able to ping out to the internet from my
> gentoo box, while at the same time I'm able to ping outbound from
> several windows boxes on same home lan.
>
> I don't run a firewall at all from linux but do have a Netgear
> switch/router/Firewall upstream between me and the internet cable
> modem.
[snip..]

> My router/fw can be set to deny specific machines outbound traffic but
> that is not done in this case.  So the solution must reside somewhere
> in my gentoo install.

It may be worth checking your router's firewall rules once more.  Is the 
gentoo box connected to the router in the same fashion as the MSWindows 
boxen, or is it in some funny DMZ set up?

What do the firewall logs show?

> What things should I be checking.

If as you say you have no firewall on the Gentoo box then you ought to have a 
quick look at your kernel.  Use sysclt:

/sbin/sysctl -a

and look at your settings probably for net.ipv4.icmp_* or your specific NIC.

> A ping attempt like this:
>
>   ping ftp.ucsb.edu
>   PING ftp.ucsb.edu (128.111.24.43) 56(84) bytes of data.
>
> Just never moves any further, but you can see it has resolved the
> alpha address to numeric forum so must have contacted and received
> info from the nameserver.

Or from your router if it acts as a caching DNS resolver?

Unless you have configured your Gentoo kernel in a way that I am not sure is 
possible, my money would go on something being amiss with the router firewall 
settings.
-- 
Regards,
Mick

[-- Attachment #2: This is a digitally signed message part. --]
[-- Type: application/pgp-signature, Size: 197 bytes --]

  parent reply	other threads:[~2008-07-20 15:58 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-07-14 17:31 [gentoo-user] Curious ping problem with no FW Harry Putnam
2008-07-19 19:16 ` [gentoo-user] " Miernik
2008-07-20 15:58 ` Mick [this message]
2008-07-22 15:16   ` Harry Putnam
2008-07-23 21:14     ` Mick

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200807201658.29960.michaelkintzios@gmail.com \
    --to=michaelkintzios@gmail.com \
    --cc=gentoo-user@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox