* Re: [Fwd: PPTP in 2.4.20]
[not found] <1072058922.1641.29.camel@hermes>
@ 2003-12-22 10:49 ` Harald Welte
2003-12-22 12:52 ` Gary Thomas
2003-12-22 12:52 ` PPTP and NAT Jan Kaastrup
0 siblings, 2 replies; 3+ messages in thread
From: Harald Welte @ 2003-12-22 10:49 UTC (permalink / raw)
To: Gary Thomas; +Cc: Netfilter Mailinglist
[-- Attachment #1: Type: text/plain, Size: 2618 bytes --]
On Sun, Dec 21, 2003 at 07:08:43PM -0700, Gary Thomas wrote:
> Harald,
>
> I'm in a bit of a pickle here & need to get this working. The
> mailing list has not come up with any ideas, so if you have any,
> I'd sure appreciate them.
Sorry, we've never ever had a single report about this error message.
It basically means that somebody else has already registered for the
SO_GET_ORIGDST socket option. I have no idea who else could be the
culprit. Maybe you have loaded (or statically linked into the kernel)
one of the backwards compatibility modules for ipchains or ipfwadm?
Also, please make sure that the kernel and the modules are out of the
same build, otherwise you might experience all kinds of inconsistencies
> Thanks.
> --
> Gary Thomas <gary@chez-thomas.org>
Content-Description: Forwarded message - PPTP in 2.4.20
> Subject: PPTP in 2.4.20
> From: Gary Thomas <gary@chez-thomas.org>
> To: netfilter@lists.netfilter.org
> Organization:
> X-Spam-Score: -8.1 (--------)
> List-Archive: <https://lists.netfilter.org/pipermail/netfilter/>
> Date: 20 Dec 2003 08:32:45 -0700
> X-Spam-Status: No, hits=-6.2 required=5.0
> tests=AWL,BAYES_01,KNOWN_MAILING_LIST,USER_AGENT_XIMIAN version=2.55
> X-Spam-Level:
> X-Spam-Checker-Version: SpamAssassin 2.55 (1.174.2.19-2003-05-19-exp)
>
> I've tried to build kernel 2.4.20, using the patches applied
> via patch-o-matic (thanks, Harald!) However, I can't get the
> PPTP modules to load. In particular, when I try to load
> 'ip_conntrack', I get these messages:
>
> [root@hermes gthomas]# insmod ip_conntrack
> Using /lib/modules/2.4.20-TEST/kernel/net/ipv4/netfilter/ip_conntrack.o
> /lib/modules/2.4.20-TEST/kernel/net/ipv4/netfilter/ip_conntrack.o: init_module: Device or resource busy
> [root@hermes gthomas]# tail /var/log/messages
> Dec 20 07:34:31 hermes kernel: ip_conntrack version 2.1 (4094 buckets, 32752 max) - 312 bytes per conntrack
> Dec 20 07:34:31 hermes kernel: Unable to register netfilter socket option
>
> Of course, without this module loaded, I can't load any of the
> other [important for PPTP] ones.
>
> Any help or ideas greatly appreciated.
>
> --
> Gary Thomas <gary@chez-thomas.org>
>
--
- Harald Welte <laforge@netfilter.org> http://www.netfilter.org/
============================================================================
"Fragmentation is like classful addressing -- an interesting early
architectural error that shows how much experimentation was going
on while IP was being designed." -- Paul Vixie
[-- Attachment #2: Type: application/pgp-signature, Size: 189 bytes --]
^ permalink raw reply [flat|nested] 3+ messages in thread
* Re: [Fwd: PPTP in 2.4.20]
2003-12-22 10:49 ` [Fwd: PPTP in 2.4.20] Harald Welte
@ 2003-12-22 12:52 ` Gary Thomas
2003-12-22 12:52 ` PPTP and NAT Jan Kaastrup
1 sibling, 0 replies; 3+ messages in thread
From: Gary Thomas @ 2003-12-22 12:52 UTC (permalink / raw)
To: Harald Welte; +Cc: Netfilter Mailinglist
On Mon, 2003-12-22 at 03:49, Harald Welte wrote:
> On Sun, Dec 21, 2003 at 07:08:43PM -0700, Gary Thomas wrote:
> > Harald,
> >
> > I'm in a bit of a pickle here & need to get this working. The
> > mailing list has not come up with any ideas, so if you have any,
> > I'd sure appreciate them.
>
> Sorry, we've never ever had a single report about this error message.
>
> It basically means that somebody else has already registered for the
> SO_GET_ORIGDST socket option. I have no idea who else could be the
> culprit. Maybe you have loaded (or statically linked into the kernel)
> one of the backwards compatibility modules for ipchains or ipfwadm?
>
So, these modules are incompatible with "ipchains"? I'm currently
using a homebrew firewall based on ipchains, but if I have/need to,
I'll upgrade to one using iptables.
> Also, please make sure that the kernel and the modules are out of the
> same build, otherwise you might experience all kinds of inconsistencies
>
> > Thanks.
>
> > --
> > Gary Thomas <gary@chez-thomas.org>
>
> Content-Description: Forwarded message - PPTP in 2.4.20
> > Subject: PPTP in 2.4.20
> > From: Gary Thomas <gary@chez-thomas.org>
> > To: netfilter@lists.netfilter.org
> > Organization:
> > X-Spam-Score: -8.1 (--------)
> > List-Archive: <https://lists.netfilter.org/pipermail/netfilter/>
> > Date: 20 Dec 2003 08:32:45 -0700
> > X-Spam-Status: No, hits=-6.2 required=5.0
> > tests=AWL,BAYES_01,KNOWN_MAILING_LIST,USER_AGENT_XIMIAN version=2.55
> > X-Spam-Level:
> > X-Spam-Checker-Version: SpamAssassin 2.55 (1.174.2.19-2003-05-19-exp)
> >
> > I've tried to build kernel 2.4.20, using the patches applied
> > via patch-o-matic (thanks, Harald!) However, I can't get the
> > PPTP modules to load. In particular, when I try to load
> > 'ip_conntrack', I get these messages:
> >
> > [root@hermes gthomas]# insmod ip_conntrack
> > Using /lib/modules/2.4.20-TEST/kernel/net/ipv4/netfilter/ip_conntrack.o
> > /lib/modules/2.4.20-TEST/kernel/net/ipv4/netfilter/ip_conntrack.o: init_module: Device or resource busy
> > [root@hermes gthomas]# tail /var/log/messages
> > Dec 20 07:34:31 hermes kernel: ip_conntrack version 2.1 (4094 buckets, 32752 max) - 312 bytes per conntrack
> > Dec 20 07:34:31 hermes kernel: Unable to register netfilter socket option
> >
> > Of course, without this module loaded, I can't load any of the
> > other [important for PPTP] ones.
> >
> > Any help or ideas greatly appreciated.
> >
> > --
> > Gary Thomas <gary@chez-thomas.org>
> >
--
Gary Thomas <gary@chez-thomas.org>
^ permalink raw reply [flat|nested] 3+ messages in thread
* PPTP and NAT
2003-12-22 10:49 ` [Fwd: PPTP in 2.4.20] Harald Welte
2003-12-22 12:52 ` Gary Thomas
@ 2003-12-22 12:52 ` Jan Kaastrup
1 sibling, 0 replies; 3+ messages in thread
From: Jan Kaastrup @ 2003-12-22 12:52 UTC (permalink / raw)
To: 'Netfilter Mailinglist'
Hi
Are there anybody who has tried to connect with more than one client to
a poptop VPN server, where the clients come from the same global
ipadress? (doing SNAT)
There seems to be a problem when i do that.
I have solved the problem by putting another virtuel Ipaddress on the
Poptop server and then make the client connect to each individuel
Ipaddress, but it would really be nice if i could use the same.
Does anyone now where the problem is - on the poptop servers firewall
running iptables? or on the clients firewall (also running iptables)? .
Maybe it is the protocol that doesn't allow it, but I am not sure?
Thanks a lot
Regards
Jan K
^ permalink raw reply [flat|nested] 3+ messages in thread
end of thread, other threads:[~2003-12-22 12:52 UTC | newest]
Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
[not found] <1072058922.1641.29.camel@hermes>
2003-12-22 10:49 ` [Fwd: PPTP in 2.4.20] Harald Welte
2003-12-22 12:52 ` Gary Thomas
2003-12-22 12:52 ` PPTP and NAT Jan Kaastrup
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox