All of lore.kernel.org
 help / color / mirror / Atom feed
From: Harald Welte <laforge@gnumonks.org>
To: Joshua Jackson <jjackson@vortech.net>
Cc: Netfilter Development Mailinglist <netfilter-devel@lists.netfilter.org>
Subject: Re: PPTP connection tracker
Date: Sat, 26 Jul 2003 00:40:10 +0200	[thread overview]
Message-ID: <20030725224010.GG14321@naboo> (raw)
In-Reply-To: <200307211915.23035.jjackson@vortech.net>

[-- Attachment #1: Type: text/plain, Size: 1546 bytes --]

On Mon, Jul 21, 2003 at 07:15:23PM -0400, Joshua Jackson wrote:
> Greetings,
> 
> Just curious if you have had any feedback on the PPTP connection
> tracking code in the 20030107 patch-o-matic.  I implemented it in a
> firewall product of mine for a while and had numerous complaints that
> all PPTP connectivity through the firewall was broken.

without a verbose description about the exact problem, I cannot debug
the problem.  I need to know

- client and server OS/version
- information about the network
- configuration of the PPTP-related ruleset
- log of erroneously dropped packets (if any)
- behaviour of expectations and GRE entries in /proc/net/ip_conntrack
  while session was established
- probably also packet dumps/traces (tcpdump, ethereal) needed.

> I have removed the code from the kernel for now, but still get a lot of 
> complaints about only being able to use a single PPTP session.

of course, since you cannot support more than one session without the
PPTP helper.

> If there have been any updates to this code, is there a place I can download 
> it?

yes, check out patch-o-matic from CVS, or go to
http://netfilter.org/documentation/pomlist/pom-extra.html#pptp-conntrack-nat


> Joshua Jackson
> Vortech Consulting
> http://www.vortech.net

-- 
- Harald Welte <laforge@gnumonks.org>               http://www.gnumonks.org/
============================================================================
Programming is like sex: One mistake and you have to support it your lifetime

[-- Attachment #2: Type: application/pgp-signature, Size: 189 bytes --]

       reply	other threads:[~2003-07-25 22:40 UTC|newest]

Thread overview: 2+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
     [not found] <200307211915.23035.jjackson@vortech.net>
2003-07-25 22:40 ` Harald Welte [this message]
     [not found]   ` <200307251959.28157.jjackson@vortech.net>
2003-07-26 16:37     ` PPTP connection tracker Harald Welte

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20030725224010.GG14321@naboo \
    --to=laforge@gnumonks.org \
    --cc=jjackson@vortech.net \
    --cc=netfilter-devel@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.