From owner-fwtk-users@ex.tis.com Sat Jan  1 02:00 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA01934
	Sat, 1 Jan 2000 02:00:02 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA29499;
	Fri, 31 Dec 1999 23:03:08 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 31 Dec 1999 22:38:31 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA27311
	for fwtk-users-outgoing; Fri, 31 Dec 1999 22:38:30 -0800 (PST)
Message-Id: <01BF5450.BE03CC20.sayeejs@future.futsoft.com>
From: Sayee Prakash J S <sayeejs@future.futsoft.com>
Reply-To: "sayeejs@future.futsoft.com" <sayeejs@future.futsoft.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Wish You very happy new Year 2000.
Date: Sat, 1 Jan 2000 12:07:14 +0530
Organization: Future Software
X-Mailer: Microsoft Internet E-mail/MAPI - 8.0.0.4211
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 688

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Best Wishes for the new Millenium to all of you ... I would also like to 
share this message with you all .....
A Millennium Message?
If you welcome every morning and the special chance it brings
To try new paths,
to open some new door?
To look a little deeper
and to reach a little further,
to aim a little higher than before..
If you strive to fill each moment with some beauty and some purpose, to 
seek out joys that mean the most to you?  Then you will greet each evening? 
 one day closer in contentment, one day closer to the dreams that you 
pursue.


From owner-fwtk-users@ex.tis.com Sat Jan  1 03:22 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA02018
	Sat, 1 Jan 2000 03:22:28 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA02639;
	Sat, 1 Jan 2000 00:25:39 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 1 Jan 2000 00:08:59 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA01651
	for fwtk-users-outgoing; Sat, 1 Jan 2000 00:08:58 -0800 (PST)
From: dreamwvr <dreamwvr@dreamwvr.com>
Reply-To: dreamwvr@dreamwvr.com
Organization: dreamwvr.com
To: <fwtk-users@ex.tis.com>
Subject: Re: Wish You very happy new Year 2000.
Date: Sat, 1 Jan 2000 01:11:09 -0700
X-Mailer: KMail [version 1.0.28]
References: <01BF5450.BE03CC20.sayeejs@future.futsoft.com>
In-Reply-To: <01BF5450.BE03CC20.sayeejs@future.futsoft.com>
MIME-Version: 1.0
Message-Id: <00010101113411.01264@loki.dyn.ez-ip.net>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 911

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

HAPPY NEW YEAR!
_______________________________________________________________________

************** DREAMWVR.COM - TOTAL INTERNET SERVICES ****************
TOTAL DESIGN - DEVELOPMENT - INTEGRATION - SECURITY - Click Here..
<http://www.dreamwvr.com/services/MAX_SEC.html>
DREAMWVR.COM - The Console of Many... 90 Topics Covered
<http://www.dreamwvr.com/dynamicduo.html> <mailto:dreamwvr@dreamwvr.com>
->> LINUX-MANDRAKE Solution Provider and North American Distributor <<-
PRODUCT OF THE YEAR!
<http://www.dreamwvr.com/mandrake/mandrake-main.html>
"===0 PGP Key Available 
*************** "As Unique as the Company You Keep." *****************
"If anyone speaks from DREAMWVR.COM its certainly not me:-)"
________________________________________________________________________


From owner-fwtk-users@ex.tis.com Sun Jan  2 22:13 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA04633
	Sun, 2 Jan 2000 22:13:27 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA19511;
	Sun, 2 Jan 2000 19:16:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 2 Jan 2000 19:04:52 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA16673
	for fwtk-users-outgoing; Sun, 2 Jan 2000 19:04:50 -0800 (PST)
Message-Id: <200001032102.LAA01056@server.qdhaixin.com.cn>
X-Authentication-Warning: server.qdhaixin.com.cn: jiang set sender to <liujianwei@hisense.qd.sd.cn> using -f
Date: Mon, 3 Jan 2000 10:58:4 +0800
From: liujianwei <liujianwei@hisense.qd.sd.cn>
Reply-To: liujianwei@hisense.qd.sd.cn
To: "fwtk-users@lists.nai.com" <fwtk-users@lists.nai.com>
Subject: DMZ problem!
X-mailer: FoxMail 3.0 beta 2 [cn]
Mime-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 657

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi, dear fwtk users:

Happy new millenium to you!!

I want to discuss the DMZ problems with you. If you have free time ( I know you are on holliday), please give me a reply as soon as possible. Thank you very much.

The problems are:

1. Can FWTK supports DMZ function?
2. If yes, how can I setup the 3rd NIC for the firewall?
3. Must the 3rd-NIC IP address be a static Internet IP address?
4. How can a internet user route to the DMZ?

Thank you for your help.

            Liu Jianwei
            liujianwei@hisense.qd.sd.cn


From owner-fwtk-users@ex.tis.com Sun Jan  2 22:49 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA04646
	Sun, 2 Jan 2000 22:49:10 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA25653;
	Sun, 2 Jan 2000 19:52:23 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 2 Jan 2000 19:47:19 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA24799
	for fwtk-users-outgoing; Sun, 2 Jan 2000 19:47:18 -0800 (PST)
Date: Sun, 2 Jan 2000 22:46:24 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: liujianwei <liujianwei@hisense.qd.sd.cn>
cc: "fwtk-users@lists.nai.com" <fwtk-users@lists.nai.com>
Subject: Re: DMZ problem!
In-Reply-To: <200001032102.LAA01056@server.qdhaixin.com.cn>
Message-ID: <Pine.GSO.4.10.10001022240290.287-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1918

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Liu,

Happy New Millenium to you also.

Yes, the fwtk can support a dmz.

Install your third nic card and define it to your Operating System per
your OS normal processes.  This may require installing a drivers....
Consult your local OS for details.

Once installed, define an address to this card.  It can be private address
space - so long as you don't have the same private address space on your
internal network.  Again, this may be somewhat OS dependent.  Minimally,
you will have to define it in your /etc/hosts table - and tie it to your
third interface.

Reboot your equipment - and verify that you can ping the interface.
Routing to local machines on this interface should be automatic.  Verify
that you can ping them also.

Set up your netperm-table to allow the appropriate connections.  Note,
external connections to the DMZ will use your external IP address.
Likewise, internal connections to your DNZ will use your internal IP
address.  The DNZ machines will see the DNZ address of your firewall.

That should about do it!

ted keller


On Mon, 3 Jan 2000, liujianwei wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi, dear fwtk users:
> 
> Happy new millenium to you!!
> 
> I want to discuss the DMZ problems with you. If you have free time ( I know you are on holliday), please give me a reply as soon as possible. Thank you very much.
> 
> The problems are:
> 
> 1. Can FWTK supports DMZ function?
> 2. If yes, how can I setup the 3rd NIC for the firewall?
> 3. Must the 3rd-NIC IP address be a static Internet IP address?
> 4. How can a internet user route to the DMZ?
> 
> Thank you for your help.
> 
>             Liu Jianwei
>             liujianwei@hisense.qd.sd.cn
> 


From owner-fwtk-users@ex.tis.com Mon Jan  3 01:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id BAA04811
	Mon, 3 Jan 2000 01:12:19 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id WAA29410;
	Sun, 2 Jan 2000 22:15:32 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 2 Jan 2000 22:11:21 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA28650
	for fwtk-users-outgoing; Sun, 2 Jan 2000 22:11:20 -0800 (PST)
From: yshuang@mitac.com.tw
X-Lotus-FromDomain: MITAC
To: fwtk-users@lists.nai.com
Message-ID: <4825685B.0021FE7B.00@ms8.mitac.com.tw>
Date: Mon, 3 Jan 2000 14:12:14 +0800
Subject: question about fwtk toolkit
Mime-Version: 1.0
Content-Disposition: inline
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 457

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



Hi,

1.Is there any product in FWTK to setup pop3 proxy service?

 that means my client inside Firewall can receive any
 pop3 server mail he want .

2.Does anybody used to setup FWTK in Digital Server?

  Does any one know if I can set NAT (like checkpoint)
  in FWTK under digital server 4.0D OS enviroment?

Vincent Huang



From owner-fwtk-users@ex.tis.com Mon Jan  3 09:24 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA06394
	Mon, 3 Jan 2000 09:24:28 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16777;
	Mon, 3 Jan 2000 06:27:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 3 Jan 2000 06:21:09 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA15549
	for fwtk-users-outgoing; Mon, 3 Jan 2000 06:21:07 -0800 (PST)
Date: Mon, 3 Jan 2000 09:15:33 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: yshuang@mitac.com.tw
cc: fwtk-users@lists.nai.com
Subject: Re: question about fwtk toolkit
In-Reply-To: <4825685B.0021FE7B.00@ms8.mitac.com.tw>
Message-ID: <Pine.GSO.4.10.10001030911250.4321-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1336

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Vincent,

You can use plug-gw for your pop mail services.  There is also a pop-gw
proxy available at www.fwtk.org.   Either should work well.

To connect to multiple pop servers, you must allocate a different port to
each pop server.  For example

4119 - pop server a
4219 - pop server b
4319 - pop server c

Your clients then connect to the pop server of choice by always conneting
to your firewall - then specifying the appropriate port to connect to the
remote pop server.

No - the firewall does not do NAT.  However, all accesses to the internet
appear to come from the external IP address of the firewall.  The internal
machines are hidden.


ted keller

On Mon, 3 Jan 2000 yshuang@mitac.com.tw wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> 
> Hi,
> 
> 1.Is there any product in FWTK to setup pop3 proxy service?
> 
>  that means my client inside Firewall can receive any
>  pop3 server mail he want .
> 
> 2.Does anybody used to setup FWTK in Digital Server?
> 
>   Does any one know if I can set NAT (like checkpoint)
>   in FWTK under digital server 4.0D OS enviroment?
> 
> Vincent Huang
> 
> 


From owner-fwtk-users@ex.tis.com Mon Jan  3 18:06 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA07735
	Mon, 3 Jan 2000 18:06:33 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA14473;
	Mon, 3 Jan 2000 15:09:44 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 3 Jan 2000 15:04:58 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA13677
	for fwtk-users-outgoing; Mon, 3 Jan 2000 15:04:57 -0800 (PST)
Date: Mon, 3 Jan 2000 16:46:53 -0500
From: Tim Sailer <sailer@sailer.itd.bnl.gov>
To: fwtk-users@ex.tis.com
Subject: Radius
Message-ID: <20000103164653.A2670@sailer.itd.bnl.gov>
Mime-Version: 1.0
User-Agent: Mutt/1.0i
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 726

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Has anyone gotten the fwtk to talk to a radius server for authentication
instead of the authserv? I'm trying to get the CryptoCards to work with
the proxies, and I don't want to have to maintain 2 user databases, and
I can't seem to link in the crypto stuff in a way that will work and talk
to the remote auth server.

Thanks,
Tim

-- 
 (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
		 "The squeaky wheel gets the grease,
  but gets changed at the next opportunity if it squeaks habitually."
** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**

From owner-fwtk-users@ex.tis.com Mon Jan  3 22:29 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA08236
	Mon, 3 Jan 2000 22:29:53 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA22099;
	Mon, 3 Jan 2000 19:32:59 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 3 Jan 2000 19:26:06 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA21260
	for fwtk-users-outgoing; Mon, 3 Jan 2000 19:26:00 -0800 (PST)
Message-ID: <001201bf56c8$02008660$fc00a8c0@k6-2-350>
Reply-To: "Larry Jackson" <LarryJackson@iName.com>
From: "Larry Jackson" <lrj@blazenet.net>
To: "Ted Keller" <keller@bfg.com>, <yshuang@mitac.com.tw>
Cc: <fwtk-users@lists.nai.com>
Subject: Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
Date: Tue, 4 Jan 2000 10:25:59 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 4.72.3155.0
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.3155.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2349

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I didn't really like that approach, so I used the pop3gwd proxy
 (available at  http://caristudenti.cs.unibo.it/~borgia/ ) instead.

Instead of having each pop server on a seperate port,
which is hard to remember and modify pop assignments.
Pop3gwd lets you put the pop server on the end of pop username.
IE popuser#pop.earthlink.net
  or
    popuser#mail.mitac.com.tw
 to switch pop servers.

I had to use the other plug-gw approach for my smtp pass-through proxy to my
PC.
I am looking for a SMTP proxy that works like the pop3gwd proxy.
So if anyone knows of one let me know or I might modify pop3gwd
into a smtp proxy that works in the same way.

Larry Jackson
LarryJackson at iname dot com
Falun Technical Services, Inc.

-----Original Message-----
From: Ted Keller <keller@bfg.com>
To: yshuang@mitac.com.tw <yshuang@mitac.com.tw>
Cc: fwtk-users@lists.nai.com <fwtk-users@lists.nai.com>
Date: Monday, January 03, 2000 9:27 AM
Subject: Re: question about fwtk toolkit


>Vincent,
>
>You can use plug-gw for your pop mail services.  There is also a pop-gw
>proxy available at www.fwtk.org.   Either should work well.
>
>To connect to multiple pop servers, you must allocate a different port to
>each pop server.  For example
>
>4119 - pop server a
>4219 - pop server b
>4319 - pop server c
>
>Your clients then connect to the pop server of choice by always conneting
>to your firewall - then specifying the appropriate port to connect to the
>remote pop server.
>
>No - the firewall does not do NAT.  However, all accesses to the internet
>appear to come from the external IP address of the firewall.  The internal
>machines are hidden.
>
>
>ted keller
>
>On Mon, 3 Jan 2000 yshuang@mitac.com.tw wrote:
>
>> [To be removed from this list send the message "unsubscribe fwtk-users"
in the
>> BODY of a mail message to majordomo@ex.tis.com.]
>>
>>
>>
>> Hi,
>>
>> 1.Is there any product in FWTK to setup pop3 proxy service?
>>
>>  that means my client inside Firewall can receive any
>>  pop3 server mail he want .
>>
>> 2.Does anybody used to setup FWTK in Digital Server?
>>
>>   Does any one know if I can set NAT (like checkpoint)
>>   in FWTK under digital server 4.0D OS enviroment?
>>
>> Vincent Huang
>>
>>
>
>


From owner-fwtk-users@ex.tis.com Tue Jan  4 00:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA08367
	Tue, 4 Jan 2000 00:34:35 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA25738;
	Mon, 3 Jan 2000 21:37:48 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 3 Jan 2000 21:33:57 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA24920
	for fwtk-users-outgoing; Mon, 3 Jan 2000 21:33:56 -0800 (PST)
From: yshuang@mitac.com.tw
X-Lotus-FromDomain: MITAC
To: fwtk-users@lists.nai.com
Message-ID: <4825685C.001E8EEE.00@ms8.mitac.com.tw>
Date: Tue, 4 Jan 2000 13:34:39 +0800
Subject: ICQ
Mime-Version: 1.0
Content-Disposition: inline
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 220

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



Hi,

Did anybody know how to setup ICQ gateway
in FWTK toolkit?

Thanks

Vincent Huang



From owner-fwtk-users@ex.tis.com Tue Jan  4 08:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09469
	Tue, 4 Jan 2000 08:50:05 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA20757;
	Tue, 4 Jan 2000 05:53:19 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:46:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA17721
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:46:28 -0800 (PST)
From: Penty Wenngren <penty.wenngren@norstedtstryckeri.se>
Date: Tue, 04 Jan 2000 11:46:51 GMT
Message-ID: <20000104.11465100@babben.norstedtstryckeri.se>
Subject: Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
To: fwtk-users@lists.nai.com
In-Reply-To: <001201bf56c8$02008660$fc00a8c0@k6-2-350>
References: <001201bf56c8$02008660$fc00a8c0@k6-2-350>
X-Mailer: Mozilla/3.0 (compatible; StarOffice/5.1; Linux)
X-Priority: 3 (Normal)
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by relay2.nai.com id DAA12014
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=ISO-8859-1
Content-Length: 1123

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

> [To be removed from this list send the message "unsubscribe 
fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]

> I didn't really like that approach, so I used the pop3gwd proxy
>  (available at  http://caristudenti.cs.unibo.it/~borgia/ ) instead.

> Instead of having each pop server on a seperate port,
> which is hard to remember and modify pop assignments.
> Pop3gwd lets you put the pop server on the end of pop username.
> IE popuser#pop.earthlink.net
>   or
>     popuser#mail.mitac.com.tw
>  to switch pop servers.

> I had to use the other plug-gw approach for my smtp pass-through proxy 
to my
> PC.
> I am looking for a SMTP proxy that works like the pop3gwd proxy.
> So if anyone knows of one let me know or I might modify pop3gwd
> into a smtp proxy that works in the same way.


There are some transparency patches at http://www.fwtk.org that might 
do the trick. I haven't tested myself though. If you do get them to 
work, please let me know.

// Penty




From owner-fwtk-users@ex.tis.com Tue Jan  4 08:52 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09485
	Tue, 4 Jan 2000 08:52:00 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA21720;
	Tue, 4 Jan 2000 05:55:14 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:47:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18008
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:47:31 -0800 (PST)
Message-ID: <387C1931.43781D92@phonewave.net>
Date: Tue, 11 Jan 2000 22:03:30 -0800
From: "Kent L. McKinstry" <lzeasy@phonewave.net>
Reply-To: lzeasy@phonewave.net
Organization: lzeasy
X-Mailer: Mozilla 4.07 [en] (Win98; I)
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: I am computer illiterate ((((help))))))
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/alternative; boundary="------------3B274267385DDC8300F3AFAD"
Content-Length: 1086

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


--------------3B274267385DDC8300F3AFAD
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Can you help me, I have been hacked  15 times in 2 months by a bunch of
hackers, they use a black server box, and crash my hard drive, I have a
notebook, its a 400MHZ, 6 Gig HD 1200 series Pro Star Note book, so
thats all I know can you help? dragonht@phonewave.net
Thank You K.L. Mckinstry

--------------3B274267385DDC8300F3AFAD
Content-Type: text/html; charset=us-ascii
Content-Transfer-Encoding: 7bit

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML>
<B>Can you help me, I have been hacked&nbsp; 15 times in 2 months by a
bunch of hackers, they use a black server box, and crash my hard drive,
I have a notebook, its a 400MHZ, 6 Gig HD 1200 series Pro Star Note book,
so thats all I know can you help? dragonht@phonewave.net</B>
<BR><B>Thank You K.L. Mckinstry</B></HTML>

--------------3B274267385DDC8300F3AFAD--



From owner-fwtk-users@ex.tis.com Tue Jan  4 08:52 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09493
	Tue, 4 Jan 2000 08:52:44 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA22113;
	Tue, 4 Jan 2000 05:55:58 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:47:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18007
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:47:30 -0800 (PST)
Message-ID: <3870BE2D.D0A94DF0@bajasystems.com>
Date: Mon, 03 Jan 2000 10:20:13 -0500
From: "Jonathan B. Smith" <jsmith@bajasystems.com>
X-Mailer: Mozilla 4.7 [en] (X11; I; Linux 2.2.5-15 i586)
X-Accept-Language: zh-TW, zh-CN, zh, en
MIME-Version: 1.0
To: Ted Keller <keller@bfg.com>
CC: yshuang@mitac.com.tw, fwtk-users@lists.nai.com
Subject: Re: question about fwtk toolkit
References: <Pine.GSO.4.10.10001030911250.4321-100000@ns1.bfg.com>
Content-Transfer-Encoding: 7bit
X-SLUIDL: 1B851DC2-9F0F11D3-A4620050-047807B2
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1859

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I'm not quite sure if pop-gw is the same as plug-gw, in case it isn't plug-gw gives
you the same functionality but with a wider range of uses and it is documented in
the fwtk package.

Ted Keller wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Vincent,
>
> You can use plug-gw for your pop mail services.  There is also a pop-gw
> proxy available at www.fwtk.org.   Either should work well.
>
> To connect to multiple pop servers, you must allocate a different port to
> each pop server.  For example
>
> 4119 - pop server a
> 4219 - pop server b
> 4319 - pop server c
>
> Your clients then connect to the pop server of choice by always conneting
> to your firewall - then specifying the appropriate port to connect to the
> remote pop server.
>
> No - the firewall does not do NAT.  However, all accesses to the internet
> appear to come from the external IP address of the firewall.  The internal
> machines are hidden.
>
> ted keller
>
> On Mon, 3 Jan 2000 yshuang@mitac.com.tw wrote:
>
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> >
> >
> > Hi,
> >
> > 1.Is there any product in FWTK to setup pop3 proxy service?
> >
> >  that means my client inside Firewall can receive any
> >  pop3 server mail he want .
> >
> > 2.Does anybody used to setup FWTK in Digital Server?
> >
> >   Does any one know if I can set NAT (like checkpoint)
> >   in FWTK under digital server 4.0D OS enviroment?
> >
> > Vincent Huang
> >
> >

--
Jonathan B. Smith
Network Administrator
Baja Systems Inc.
507 W Duttons Mill Rd.
Aston, PA 19014
610-471-0200




From owner-fwtk-users@ex.tis.com Tue Jan  4 08:54 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09515
	Tue, 4 Jan 2000 08:54:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA22916;
	Tue, 4 Jan 2000 05:57:39 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:48:38 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18508
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:48:35 -0800 (PST)
X-Authentication-Warning: proxy.tfcc.com: mail set sender to <twilliams@tfcci.com> using -f
From: "Todd Williams" <twilliams@tfcci.com>
To: <fwtk-users@lists.nai.com>
Subject: SMAP/SMAPD and chrooting
Date: Mon, 3 Jan 2000 13:05:32 -0500
Message-ID: <000101bf5615$20ef5140$8702a8c0@twilliams.tfcc.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook 8.5, Build 4.71.2173.0
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.3110.3
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 523

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

For those of you running SMAP and/or SMAPD  chrooted,

(Running FWTK 2.1 on Redhat 5.2.)

What do I need to do to set this up?  The last time I tried it, it didn't
work.  I'm trying to get back to it.
Any configuration examples would be great!  (ie. which files are needed in
the chrooted environment, etc.)

Any and all help would be greatly appreciated!

Thanks in advance,

Todd Williams




From owner-fwtk-users@ex.tis.com Tue Jan  4 08:54 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09521
	Tue, 4 Jan 2000 08:54:42 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA23086;
	Tue, 4 Jan 2000 05:57:56 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:48:37 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18507
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:48:34 -0800 (PST)
Message-ID: <38699AE8.6F6F8F2C@actfs.com.au>
Date: Wed, 29 Dec 1999 16:23:52 +1100
From: Joe Dempsey <joed@actfs.com.au>
Organization: ACT Financial Systems
X-Mailer: Mozilla 4.61 [en] (WinNT; I)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Problem with solaris nfs / TIS v2.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed;
 boundary="------------D5944FBD35887E0FF978044B"
Content-Length: 1406

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This is a multi-part message in MIME format.
--------------D5944FBD35887E0FF978044B
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

I am trying to automount a directory called /var/mail off a remote
server from a server running the TIS firewall product.

It will automount /var/mail off one server (This is a server I wish to
decommision) but not any of my others.

Does anyone know if in the firewall configuration there is a way that an
nfs automount is blocked and only one specific server is allowed?

If there is such a method it may be by IP address or host name the
remote server is allowed to be mounted to. My next question is where
would I find the parameter defigning which server can be automounted to
and if I may ask, how do I change it?

Look forward to any help that can be offered here,

Thanks
Joe Dempsey
Melbourne
Australia

--------------D5944FBD35887E0FF978044B
Content-Type: text/x-vcard; charset=us-ascii;
 name="joed.vcf"
Content-Transfer-Encoding: 7bit
Content-Description: Card for Joe Dempsey
Content-Disposition: attachment;
 filename="joed.vcf"

begin:vcard 
n:Dempsey;Joe
x-mozilla-html:FALSE
adr:;;;;;;
version:2.1
email;internet:joed@actfs.com.au
fn:Joe Dempsey
end:vcard

--------------D5944FBD35887E0FF978044B--



From owner-fwtk-users@ex.tis.com Tue Jan  4 08:56 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA09531
	Tue, 4 Jan 2000 08:56:30 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA23928;
	Tue, 4 Jan 2000 05:59:43 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:49:42 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18969
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:49:40 -0800 (PST)
Message-ID: <XFMail.000104085314.mariusz@nutricia.com.pl>
X-Mailer: XFMail 1.3 [p0] on FreeBSD
X-Priority: 3 (Normal)
Content-Transfer-Encoding: 8bit
MIME-Version: 1.0
In-Reply-To: <4825685C.001E8EEE.00@ms8.mitac.com.tw>
Date: Tue, 04 Jan 2000 08:53:14 +0100 (CET)
Organization: Ovita Nutricia    Poland
From: Mariusz Potocki <mariusz@nutricia.com.pl>
To: yshuang@mitac.com.tw
Subject: RE: ICQ
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-2
Content-Length: 401

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


On 04-Jan-00 yshuang@mitac.com.tw wrote:
> Hi,
> 
> Did anybody know how to setup ICQ gateway
> in FWTK toolkit?
Use UDPrelay

--
Mariusz Potocki

Microsoft: Where do you want to go today?
Linux: Where do you want to go tomorrow?
FreeBSD: Are you guys coming or what?




From owner-fwtk-users@ex.tis.com Tue Jan  4 09:02 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA09583
	Tue, 4 Jan 2000 09:02:04 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA26451;
	Tue, 4 Jan 2000 06:05:10 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 05:54:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA21384
	for fwtk-users-outgoing; Tue, 4 Jan 2000 05:54:31 -0800 (PST)
Message-ID: <001001bf56d4$1be1c6a0$8668210c@cruisenet.net>
From: "Jonathan B. Smith" <jsmith@bajasystems.com>
To: <yshuang@mitac.com.tw>, <fwtk-users@lists.nai.com>
References: <4825685C.001E8EEE.00@ms8.mitac.com.tw>
Subject: Re: ICQ
Date: Tue, 4 Jan 2000 08:52:36 -0800
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
X-SLUIDL: 1B851E4A-9F0F11D3-A4620050-047807B2
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 779

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I've tried two methods, the one that works fully is by using socks.
The other was to use udprelay to the main icq server. This didn't fully work
because for some aspects of ICQ you need a direct tcp/ip connection to the
other users.  In other words, go with SOCKS.

----- Original Message -----
From: <yshuang@mitac.com.tw>
To: <fwtk-users@lists.nai.com>
Sent: Monday, January 03, 2000 9:34 PM
Subject: ICQ


> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
>
>
> Hi,
>
> Did anybody know how to setup ICQ gateway
> in FWTK toolkit?
>
> Thanks
>
> Vincent Huang
>


From owner-fwtk-users@ex.tis.com Tue Jan  4 09:18 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA09621
	Tue, 4 Jan 2000 09:18:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA00616;
	Tue, 4 Jan 2000 06:21:23 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 06:18:28 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA29727
	for fwtk-users-outgoing; Tue, 4 Jan 2000 06:18:27 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <3872011A.EFE8F67C@usrconsult.be>
Date: Tue, 04 Jan 2000 15:18:02 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: lzeasy@phonewave.net
CC: fwtk-users@ex.tis.com
Subject: Re: I am computer illiterate ((((help))))))
References: <387C1931.43781D92@phonewave.net>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1632

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

"Kent L. McKinstry" wrote:
> 
> Can you help me, I have been hacked  15 times in 2 months by a bunch
> of hackers, they use a black server box, and crash my hard drive, I
> have a notebook, its a 400MHZ, 6 Gig HD 1200 series Pro Star Note
> book, so thats all I know can you help? dragonht@phonewave.net
> Thank You K.L. Mckinstry

If you have only the one machine and it is running some version of
Windows,
the FWTK list is certainly not the place where to look.

If you have only the one machine and it is running Linux, the FWTK would
be
no help to you; use ipfwadm, ipchains, or netfilter, depending on your
kernel.
See http://www.linuxdoc.org/HOWTO/Firewall-HOWTO.html

If you have only the one machine and it is running some other 'nix,
again
FWTK would be no help to you. I can only recommend reading a good book
on
UNIX security (well, that is recommended in the other cases too!)

If you can find some old Pentium-90 or even 486-50, with a few hundred
Meg HD
and a NIC, then you can install Linux on it, then install the FWTK. FWTK
plus ipfwadm would give you even stronger security.

To summarize, the 1st question is: what OS do you use? The 2nd is: how
much
effort are you willing to exert in order to stop being illiterate?
Because,
nowadays, whether one uses Windows or Linux, securing one's PC requires
a not inconsiderable amount of technical savvy. Even end-user-oriented
distros of Linux like Mandrake or Caldera or Corel, set up a system with
very poor security.

-- 
Michel Bardiaux

From owner-fwtk-users@ex.tis.com Tue Jan  4 10:35 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA09975
	Tue, 4 Jan 2000 10:35:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA10000;
	Tue, 4 Jan 2000 07:38:22 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 07:34:17 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA08629
	for fwtk-users-outgoing; Tue, 4 Jan 2000 07:34:15 -0800 (PST)
Message-Id: <4.2.2.20000104101203.00b07b60@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Tue, 04 Jan 2000 10:16:46 -0500
To: Joe Dempsey <joed@actfs.com.au>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: Problem with solaris nfs / TIS v2.0
In-Reply-To: <38699AE8.6F6F8F2C@actfs.com.au>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1215

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 04:23 PM 12/29/99 +1100, Joe Dempsey wrote:
>I am trying to automount a directory called /var/mail off a remote
>server from a server running the TIS firewall product.
>
>It will automount /var/mail off one server (This is a server I wish to
>decommision) but not any of my others.

A firewall system shouldn't have NFS in the kernel. What you should be 
doing is having the firewall system hand the mail off to an internal server 
and letting that system mount the shared mail spool. By answering this, I'm 
helping you to aim the gun at your foot prior to you shooting it off :-)

>Does anyone know if in the firewall configuration there is a way that an
>nfs automount is blocked and only one specific server is allowed?

Nothing in the firewall toolkit permits or denies NFS. Your system may have 
other software installed that limits the traffic (ip filtering like ipfw or 
ipfilter or ipchains, for example). Your NFS servers may not be permiting 
the firewall to mount the directory either. Without knowing what errors 
you're getting, we're forced to guess.
         -Rick



From owner-fwtk-users@ex.tis.com Tue Jan  4 10:51 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA10037
	Tue, 4 Jan 2000 10:51:22 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA12913;
	Tue, 4 Jan 2000 07:54:26 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 07:51:18 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA11870
	for fwtk-users-outgoing; Tue, 4 Jan 2000 07:51:17 -0800 (PST)
Date: Tue, 4 Jan 2000 10:50:32 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Todd Williams <twilliams@tfcci.com>
cc: fwtk-users@lists.nai.com
Subject: Re: SMAP/SMAPD and chrooting
In-Reply-To: <000101bf5615$20ef5140$8702a8c0@twilliams.tfcc.com>
Message-ID: <Pine.GSO.4.10.10001041034230.24633-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1299

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Todd,

smapd, in its distributed form, does not run chrooted.  The big issue it
has is calling sendmail from the chrooted environement.  You have to
create everything that sendmail needs.

A second issue is the location of the temporary files that smap creates.
If you use the chrooted envronment of smap, you have to make sure that
smapd directory entry fully qualifies the path that smap is using (they
are operating under different file system roots).

That being said, you should be able to include the 

smap, smapd:	directory	/var/inspool ....

ted keller


On Mon, 3 Jan 2000, Todd Williams wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> For those of you running SMAP and/or SMAPD  chrooted,
> 
> (Running FWTK 2.1 on Redhat 5.2.)
> 
> What do I need to do to set this up?  The last time I tried it, it didn't
> work.  I'm trying to get back to it.
> Any configuration examples would be great!  (ie. which files are needed in
> the chrooted environment, etc.)
> 
> Any and all help would be greatly appreciated!
> 
> Thanks in advance,
> 
> Todd Williams
> 
> 
> 


From owner-fwtk-users@ex.tis.com Tue Jan  4 11:42 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA10174
	Tue, 4 Jan 2000 11:42:47 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA20955;
	Tue, 4 Jan 2000 08:45:53 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 08:41:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA19697
	for fwtk-users-outgoing; Tue, 4 Jan 2000 08:41:39 -0800 (PST)
Date: Tue, 4 Jan 2000 11:41:41 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: liujianwei <liujianwei@hisense.qd.sd.cn>
Cc: "fwtk-users@lists.nai.com" <fwtk-users@lists.nai.com>
Subject: Re: DMZ problem!
Message-Id: <20000104114141.C3457@washingt.cospo.osis.gov>
Mail-Followup-To: liujianwei <liujianwei@hisense.qd.sd.cn>,
	"fwtk-users@lists.nai.com" <fwtk-users@lists.nai.com>
References: <200001032102.LAA01056@server.qdhaixin.com.cn>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <200001032102.LAA01056@server.qdhaixin.com.cn>; from liujianwei@hisense.qd.sd.cn on Mon, Jan 03, 2000 at 10:58:04AM +0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1126

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Mon, Jan 03, 2000 at 10:58:04AM +0800, liujianwei wrote:
> Happy new millenium to you!!

Thank you.  Next year, when the new Millennium starts, I hope to have
one.  ;-)

> I want to discuss the DMZ problems with you. If you have free time ( I know you are on holliday), please give me a reply as soon as possible. Thank you very much.
> 
> The problems are:
> 
> 1. Can FWTK supports DMZ function?

Of course.

> 2. If yes, how can I setup the 3rd NIC for the firewall?

Same way as the others.

> 3. Must the 3rd-NIC IP address be a static Internet IP address?

Can you describe to me how to do it otherwise?  However, it may be a
private internet address (RFC 1918).

> 4. How can a internet user route to the DMZ?

Can't, if FWTK is properly set up.  Uses a proxy.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Tue Jan  4 12:21 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA10337
	Tue, 4 Jan 2000 12:21:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA28273;
	Tue, 4 Jan 2000 09:24:15 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 09:20:25 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA27000
	for fwtk-users-outgoing; Tue, 4 Jan 2000 09:20:23 -0800 (PST)
Date: Tue, 4 Jan 2000 18:23:26 +0100 (CET)
From: Ratkai Peter <rpet@quaestor.hu>
To: fwtk-users@ex.tis.com
Subject: sendmail problem
Message-ID: <Pine.LNX.4.05.10001041808430.4660-100000@mail.quaestor.hu>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1474

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

First I wish u a happy new Millenium!

I have some problem w sendmail on an fwtk box. Mails are recieved and can
be sent. Only forwarding local mail to internal mailserver does not
work well. Split DNS is up, bastion queries internal mailserver, so it
sees the internal mx as well. mailertable is set up like this:

domain.hu     esmtp:[mail.domain.hu]
mail.domain.hu esmtp:[mail.domain.hu] 

gw:/usr/local/etc# mx domain.hu
domain.hu       MX      0 mail.domain.hu 

nslookup mail.domain.hu

Name:    mail.domain.hu
Address:  192.168.6.100  

So it`s the internal mailserver`s address.

The problem is, that a mail comes from the internet, smapd triggers
sendmail, and sendmail believes, that user@domain.hu is a local user, it
wants to perform local delivery, but of course there`s no such user, and
it bounces back with DSN: User Unknown. But sendmail should relay this
message to the internal mailserver. How could I tell sendmail, to forward
these mails to the internal mailhub? I thought mailertable is for that
usage...

There may be one thing that I~m doing wrong, the makemap. I don~t know
exactly the syntax of the command, to make the mailertable.db. Can someone
make me clear, please? Or is there any other configuration
misunderstanding? This is a Debian 2.1 box, with  sendmail 8.9.3-1, fwtk
2.1. 

TIA,
Regards,  

--RP.





From owner-fwtk-users@ex.tis.com Tue Jan  4 13:24 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA10541
	Tue, 4 Jan 2000 13:24:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA11655;
	Tue, 4 Jan 2000 10:27:51 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 10:24:17 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA10497
	for fwtk-users-outgoing; Tue, 4 Jan 2000 10:24:12 -0800 (PST)
Date: Tue, 4 Jan 2000 13:24:13 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: yshuang@mitac.com.tw
Cc: fwtk-users@lists.nai.com
Subject: Re: question about fwtk toolkit
Message-Id: <20000104132413.G3457@washingt.cospo.osis.gov>
Mail-Followup-To: yshuang@mitac.com.tw, fwtk-users@lists.nai.com
References: <4825685B.0021FE7B.00@ms8.mitac.com.tw>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <4825685B.0021FE7B.00@ms8.mitac.com.tw>; from yshuang@mitac.com.tw on Mon, Jan 03, 2000 at 02:12:14PM +0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 889

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Mon, Jan 03, 2000 at 02:12:14PM +0800, yshuang@mitac.com.tw wrote:
> 1.Is there any product in FWTK to setup pop3 proxy service?
> 
>  that means my client inside Firewall can receive any
>  pop3 server mail he want .

There is a pop-gw, you should find a pointer to it on www.fwtk.org.  I
don't know whether it can go to multiple servers.

> 2.Does anybody used to setup FWTK in Digital Server?
> 
>   Does any one know if I can set NAT (like checkpoint)
>   in FWTK under digital server 4.0D OS enviroment?

I don't see why not.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Tue Jan  4 13:39 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA10582
	Tue, 4 Jan 2000 13:39:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA15062;
	Tue, 4 Jan 2000 10:43:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 10:38:58 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA13899
	for fwtk-users-outgoing; Tue, 4 Jan 2000 10:38:56 -0800 (PST)
Date: Tue, 4 Jan 2000 13:39:30 -0500 (EST)
From: "Yakov Kravets" <ygk@nb.com>
To: fwtk-users@lists.nai.com
Subject: SOCKS proxy
Message-ID: <Pine.LNX.4.10.10001041332100.29752-101000@tequila.nb.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: MULTIPART/MIXED; BOUNDARY="497816849-131490204-947011170=:29752"
Content-Length: 6476

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

  This message is in MIME format.  The first part should be readable text,
  while the remaining parts are likely unreadable without MIME-aware tools.
  Send mail to mime@docserver.cac.washington.edu for more info.

--497816849-131490204-947011170=:29752
Content-Type: TEXT/PLAIN; charset=US-ASCII


I have put together a socks-gw proxy. From the name you can tell that it
implements SOCKS protocol. The goal for this project was to integrate
SOCKS proxy into FWTK.
At this time it only implements CONNECT request and I'm working on getting
BIND done.

I thought I'll share my work with the community.
Feadback could be send to ygk@ygk.net.


HNY everybody.

-------------------------------------
Yakov Kravets, CISSP, NeubergerBerman

--497816849-131490204-947011170=:29752
Content-Type: APPLICATION/octet-stream; name="socks-gw.tar.gz"
Content-Transfer-Encoding: BASE64
Content-ID: <Pine.LNX.4.10.10001041339300.29752@tequila.nb.com>
Content-Description: 
Content-Disposition: attachment; filename="socks-gw.tar.gz"

H4sICEQ8cjgAA3NvY2tzLWd3LnRhcgDtGv1X20Yyv0p/xdRJiQ2yLRkDjR24
EnBSrg7kAb1eLsfzk6W1rSBLPkk2Hw3/+83srj5tQ2iT9PXO+wJIuzOzszOz
86WEvnUZVodX9YOf9o/fdLonb5588aEbur693Xyi49gp/KXR0PUn+o6+2Wxu
butNfDYaxs72E9C/PCvzYxpGZgDw5GZ4eS/cQ+t/0YGy16u6UdWbAO/NS38G
PwfmjEUhwEs88o8R+8/Ucc2a169Z/nhPVZV1CKXN1Cwwao0WWC4zPZhOwPFg
bDoeBzrt7B++7SCAoeURjBYcsysYOC6rqeqfff7/9xGrpv7WvGSkk6+wxwP3
32jsbMr739g0Npt0/5ubO6v7/y3GU/UpwIE/uQmc4SiCslUB48WLTQ3OA5QM
s+HIG/jB2Iwc34OzG5wahxpOWn4w8QMTIYjAvusCJxBCwEIWzJhdw3laOmW2
E0aB059yEqZnwzRkYAYMhv6MBR7u0b+BaMQgYsE4BJtFJtqhTd4EZ4mG61jM
QyTbt6Zj5iGbpe7RQef4rFOqIJjlTm2Ev3KikaDj++6lEyEHKv57quxPo5Ef
tOCtGVjTEP5eg1PTm44fPiOd4dQKj+wWlJ79xEybcSriomgzdGab8KJZN4y6
boBhtLa2Ws0tGH8MUAouPCupqmROqdWSC4Z+1Bs4Q1U9eN3df3O2C9WjWg2e
lQ9O3p1XVNV03VbiMFU1fkrnaj4gNdfpD64QtmaqCuIeVJBC9/B1twJVH579
uBQawfZ/+Wf36BVuxf12S1WCMVQHCUYWFbXM6BB4R5AtBX+pijOADwT/rHzY
OTuv1BO8izZJ34N/q4oyns2vFydqvmu3CXrg8DO8q0ARVlWs0di3YWdraw59
FTq+xEj8v4jXX2UP7v+bS/1/o9FI/P+2sb2D8Mb2dmPl/7/FkGka+j84Ozn4
+QyG6NOvzBtA11zTa1tq9YGhqucjJwT8hzmgadtV9KGRD69/Pf+5BkcRWNMg
QJft3oAznriM3Heo8hARQOjYDPyB2LkJk8CPfMt3a3DiIfzByfFx5+CcSCdE
1IQIRhh4dXR8iG4fg0+fQWZFhg4YTKMpOrAymCG6Foo+IRyBxwgignalpr4y
Q8cyibnoOZ4A1yLTcnmUmrjTIbmikWldIkLkDxnSDPBBHZm2y6S8AkyQWRiF
mMsaNYyk4wmmyxRJaurRAG78KVgoGIvPMy4WTbhJWgpH/tS1iXuz71LgUmPA
iIQ6cZjFBWT5NiXLDZSo8MVyh/dI44qTuDIxLKLcpa+m80kh2E7ArMgPbuCK
BYyHVIzREZElbihgoxpClCazTArNiOo63mUoAirBPMeJfmAGKP4I2PUE6YUk
qgkG7GrEWcfN6tMwqLs+irPOIouCus0G5tTFQKxukmgo7E0DyXruFSZmYI4Z
JgAh8eWgEjmPmCW01CpyF7WAfjueAEc7w/VQrWIOUliiGbXadzwM2mTV9BQr
Ccr8DSXr+VHWYCpqFaOyh+cSSPIlxlPVn5Cf59zE2bVJeCCieAszDCAxOBGt
3iQ7DQJ/DIZeWyelGC8aNWP7B3yRDBJoJrQLAtWRj3YkkPiZUzzls7ahhXiD
H/T76UsgJUe5cOywcIod4ubxh4jRYhGrfOSKTZVKTfypoVGt4vq3HEn8T2v0
L76HiP/6kvjf2NQbW3H/p7lDtSBWhHpzFf+/xajn2jnrdaw4InSkFibeZqDw
4ufDBexm6p/6yB+zOoqjPriK5K80izw4y1gSL5EaQD0mrJDqehOMH1oNvbXZ
AMSHzvWE/31WaqMXikull+FN6PrD2mgvOxfZjl+Yugnr0c0EI9fcNC+z5oGd
8YLZkLnokxbM4ylYYZ4FgVfgYnJl5yfQg9n9uSkHf+qOR/PpQmmAoZmXZaNS
IneMfYppWWwSBVOXlSvt7AIXbbMn/fOyxYl7s2gJV0x76cJtuHDpKnCihVyI
lTksPGeKk7OlgCLDhy2jcdHOz1MwXzBPOSLW/cL6YpsqxTAApM4eMoPXN+rR
y9wS8+zCAnFIM/40QqoNWIdtvcCmPc8mYdkU8fIM8qn+dPDB0FPYENWGEZT4
pXP1MC+y6SGPao3t/ARmw/kJTMQCx5Z8qE8xk0ITUkSi3Htzun983jlUXujF
ldf7R11aMFSVOrFl09LMWUUVRtVWOel1c/YBif6mKgeDobJuDSbt5JFfxIGH
RJXuyZve4X7n7cmxqvgT5uGdLEudaLT27ugQVfyUuSFbCvCJ/h4fdrr777Xu
6/0DjuDZzkDlfQRkD/ZQDWtr8B0KzhpPysibcaGVqrbJxr5XqlQA+SQNiJRj
FxCuF/k9eiPgxgXZmYKngypqtE2PM9iQj8KVlLvdzj+00hlZiuMNQdCGsU/V
h8xlvrdLGj1UCM32ewKmHE/dqYrKLae8lhoc39kZlMsoQuTMGgzFFZNCQN53
d6GMkoX1StUQJ8lxRL4TsdCttOD7Guo6xPTS4TxWqWygLJUoymRTJsslLd6A
eCWEsiF4jLmRzGDBUi5Jcy9pyCRy9F3CkS5FO0CE6p4ZDC1alGwu5zO+PmMM
nFgbzUiELM3fNaodGBcnkXU9zmSGSxJl5g6ake/EDMw+6BeZg0wYCzykWtY1
7js07im00Lll/qDMpyqVJVLFiXuliqKBmP4D8sz4Tl1bw4sac4CPf2j/OIdH
OuFnqJUKZrSnZmVtrVyMA49mo2+mRZHofd63PSYJxLDriLJRZPpYNtVt5jlY
G4ucH5MHBWkV7I+vCetr42zWAPn7PGhin8ndV675HSfi14iAiNfwEmKzxbeN
DYIlQ6uv02/0LVcMRlitmjAz3SkTtawJLqqRJPC8+pwgsL4k8ImJB5sEvoU1
Ja1S2UzMAJlHSBB0Nn5XYj+VmOw1eSsqK9FXEYzSR1O5bN8LLguhR2BQJfUI
cHJbBXAJT8dCbVujHAa/WVLeSjb9iP25NdBicccPM3GzM+zcidtNFkP200Pr
4IlIYk2AhiR9mjVCu0Gp3lF7OVIz8BSYKDaIQKxfkMU8/7f+fIGJEwJX1K4w
8Pr3tYYe8naAnOHOHZ8NHQ2LeMx6Er6DFodxbuxA4exzN0KSGXIyTOSysFxU
zkqCzp1mF2pW4sFMw6At4raI1zjVVkWAbhdCOcZyiuQgx8DuhXhRkxEM7LC9
dPX63lVUu52uUgTODqfPL+LSdf+B9evlS2hzA9yZX3xlEjgzGfmRWpxeUfzA
e01xxI8hB/7UsxHMiCcCVkjYFJGsNZqY9zUprSKPAlmXYqbOhDuRciYtyd5D
cVHiHcXfNZFyCC+1sbGA4EKSv8X3VEGvgN55ytrLQO8S0PTO0Z3my3RTMDyg
Y4s3U66r1fYc/F1CvZzwzRMVPcHjmVmW5ncpTcFX6kXWBCDmbLYIyBJMCueT
TMRoY3G3cj5IHAzyqEXMu8S3xBSKkoHE4wk2SfwyDKB29zDLsOIDLM1rREcs
Mi+Z6GQHQ/6pUROpTJrJZFMZwRrnByNF7kSxUxGHQlOcBh634HtPkQaG+YNg
zSAStEdRlJFpKbnGAnLcj3FqXBUEka7zbCAMLN4jtzFG8nNjwYOe/QrMCbo9
0bwmb8ZzAsowq3sD1xyGaGzvOqdve4ed4/eCp3ygmEt70EqJ0V06N+Y9SQ5E
yLG/4NkRdxqUTKAEe+LzQjnj37XYj2hlcgUyvXgpjB7yQ4G8lciULW6ORj7I
zxdxLLAxwRqXsuFEWMe9oWB+0+Tsydyd9EKLCMkaUBjYPGr+BJL1xaFSds6T
Bf6BPpCvuRCXPaImKtQ0ama1pyqvD3v/6pyelNcojGQYw/mzzjll0osXuB6T
xWT1auRgbESYozOBDgIEPn2CZFbgypUFioXyzEeO+5Y/uRGMaWsUIeOEXkTA
yrxyFiFeL0Scw6QIVYtmuG6hdcq6Z36DGGwq4PQFlKgU4b0qaesbYEj25f5k
1JKvNaKH9k1eXc3kgAtoZmTKqS0UXAaeh8uAWTNEQAcXi4B8ncbv1O7CSzU3
cN+D7mmqyXmZFEc4mka2f+XFejbuwUkSuYeI4onSlpUgTKe6xrOQe7yuPEgh
HlLGSzlauoKp0sZuNiFajpLVl7wpj9NZesI/qLfcXXuE7vSvoTf9m+vM+X06
I2u/flhhkLtlQIeDrL7g7dmb3snJq6UhbG5gzHaGnh8wQDTRU8Ksxw941b70
+J+vDJi7RYLr65TXv8R1erR6sof9iir60jrS/zz9fMbVSZ9EyzVu5GccR748
d8LHpjgOvtiAsZj+2LKzuku5/rJ8x+lrfl+LWYEq5BrBMV88BdKzBT6vb4sN
O2pyiC8Bslp12jLfzbUbYQ2z38Sw8LlSSbNxkScvwOEfHGqh4/EueYKen34k
JS6OeUqib3Q/pduQaIl0MSEhs8ciqiq+quDt8iJ/FBZ5pg6Ah6m8FyETssSK
I1lScmklUmOSh2NF5FmYtwldAn2J6yFxs3iK9HSiGiVmJGf36JMycks2aqx2
olbqNMhvN/yZCmleXfEWBL2Q4kVCiVOYzDU+X3FFTPxZDPn5GswpLe8ilpNf
tLDYIO6Xo/xqwoP4rfhYFcYNLpwTPa/bVLjKOn1u4Sui0+NpwJs9ikiEFYU3
thY3i1RF1BK3sMeTYypCk2KFfH9bTMThOp5aksinC2nqLtsryBJ9rxI5O+bq
lJgf/9Ltil8iRZedF7XQ/iF8Qn8p1+idf3wm8M7R8fmpKNtzLSNZhOUlL1jx
eLgSl3qiwS3uu5c0fCbkjz1O4pY+onmFngJiEx9Yfmd4+PXkl+7hqy7WorwG
K3JXmTtSzF2WubsHLUNmFP/jpiEMIrGPb24ayYX/S9mGjC1YhUfBnHHg3Jxx
JLE235rmSqfWWdYXYeSlSmU+H+K9M94VpW8SmeK6CJjIyEERofDo0+rSpAjZ
/eBsbMjAkJulOdordaPWfZfl90kk0xvgPXEhIuCs45+NDXkdikGCb4VxwNEM
odaMChdJLj7RvPjuU7iaKS5kVHIZ3mzeU+THBHlMSLwCQYgHDpX9SkKTXv8m
YuH8N4qPxaYTZs0C9CVRXJTIf+RX2bOzvFUFUsziYmF8lA2aZUYhm64xA3+L
mW7BxwUUeTKwSwcorki0/GKaY8ttBBSX/J/9n9JWYzVWYzVWYzVWYzVWYzVW
YzVWYzVWYzVWYzVWYzVW4w+P/wL7bfjGAFAAAA==
--497816849-131490204-947011170=:29752--

From owner-fwtk-users@ex.tis.com Tue Jan  4 13:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA10600
	Tue, 4 Jan 2000 13:46:30 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA17380;
	Tue, 4 Jan 2000 10:49:45 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 10:44:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA15532
	for fwtk-users-outgoing; Tue, 4 Jan 2000 10:44:45 -0800 (PST)
Date: Tue, 4 Jan 2000 13:44:03 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Ratkai Peter <rpet@quaestor.hu>
cc: fwtk-users@ex.tis.com
Subject: Re: sendmail problem
In-Reply-To: <Pine.LNX.4.05.10001041808430.4660-100000@mail.quaestor.hu>
Message-ID: <Pine.GSO.4.10.10001041335170.3691-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1985

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Peter,

makemap command....

makemap hash mailertable.db < mailertable

Note - this assumes you have built sendmail with the berkeley db routines
- and that you have included mailertable support in your sendmail
configuration file.

ted keller


On Tue, 4 Jan 2000, Ratkai Peter wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi,
> 
> First I wish u a happy new Millenium!
> 
> I have some problem w sendmail on an fwtk box. Mails are recieved and can
> be sent. Only forwarding local mail to internal mailserver does not
> work well. Split DNS is up, bastion queries internal mailserver, so it
> sees the internal mx as well. mailertable is set up like this:
> 
> domain.hu     esmtp:[mail.domain.hu]
> mail.domain.hu esmtp:[mail.domain.hu] 
> 
> gw:/usr/local/etc# mx domain.hu
> domain.hu       MX      0 mail.domain.hu 
> 
> nslookup mail.domain.hu
> 
> Name:    mail.domain.hu
> Address:  192.168.6.100  
> 
> So it`s the internal mailserver`s address.
> 
> The problem is, that a mail comes from the internet, smapd triggers
> sendmail, and sendmail believes, that user@domain.hu is a local user, it
> wants to perform local delivery, but of course there`s no such user, and
> it bounces back with DSN: User Unknown. But sendmail should relay this
> message to the internal mailserver. How could I tell sendmail, to forward
> these mails to the internal mailhub? I thought mailertable is for that
> usage...
> 
> There may be one thing that I~m doing wrong, the makemap. I don~t know
> exactly the syntax of the command, to make the mailertable.db. Can someone
> make me clear, please? Or is there any other configuration
> misunderstanding? This is a Debian 2.1 box, with  sendmail 8.9.3-1, fwtk
> 2.1. 
> 
> TIA,
> Regards,  
> 
> --RP.
> 
> 
> 
> 


From owner-fwtk-users@ex.tis.com Tue Jan  4 14:03 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA10667
	Tue, 4 Jan 2000 14:03:26 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA20693;
	Tue, 4 Jan 2000 11:06:41 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 11:03:08 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA19542
	for fwtk-users-outgoing; Tue, 4 Jan 2000 11:03:06 -0800 (PST)
Date: Tue, 4 Jan 2000 20:06:27 +0100 (CET)
From: Ratkai Peter <rpet@quaestor.hu>
To: Ted Keller <keller@bfg.com>
cc: fwtk-users@ex.tis.com
Subject: Re: sendmail problem
In-Reply-To: <Pine.GSO.4.10.10001041335170.3691-100000@ns1.bfg.com>
Message-ID: <Pine.LNX.4.05.10001042003230.5928-100000@mail.quaestor.hu>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 443

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

HI,

Thanks for your help, i`ve found, that the sendmail.cw file must be emty,
in order to forward the messages to internal mailserver. I think it says
sandmail what domains are considered local, and becouse sendmail cannot
find itself here, it finally looks in the dns, and finds the internal mx.
Great!

--RP.



From owner-fwtk-users@ex.tis.com Wed Jan  5 01:38 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id BAA12877
	Wed, 5 Jan 2000 01:38:50 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id WAA07551;
	Tue, 4 Jan 2000 22:42:03 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 22:35:11 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA06732
	for fwtk-users-outgoing; Tue, 4 Jan 2000 22:35:09 -0800 (PST)
From: yshuang@mitac.com.tw
X-Lotus-FromDomain: MITAC
To: Penty Wenngren <penty.wenngren@norstedtstryckeri.se>
cc: fwtk-users@lists.nai.com
Message-ID: <4825685D.002424C8.00@ms8.mitac.com.tw>
Date: Wed, 5 Jan 2000 14:35:36 +0800
Subject: ¦^«H¡G Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
Mime-Version: 1.0
Content-Disposition: inline
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed; 
	Boundary="0__=pSLscNopKjNBn7bKEfWtqt3DGWtQsQ68Mb7Nogy8BFlqZ36r1x0RbNXC"
Content-Length: 1864

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

--0__=pSLscNopKjNBn7bKEfWtqt3DGWtQsQ68Mb7Nogy8BFlqZ36r1x0RbNXC
Content-type: text/plain; charset=big5
Content-Disposition: inline

|--------+------------------------------------->
|        |          Penty Wenngren             |
|        |          <penty.wenngren@norstedtstr|
|        |          yckeri.se>                 |
|        |                                     |
|        |          2000/01/04 07:46 PM        |
|        |                                     |
|--------+------------------------------------->
  >--------------------------------------------------------|
  |                                                        |
  |       ¦¬¥ó¤H¡G     fwtk-users@lists.nai.com            |
  |       °Æ¥»§Û°e¡G   (°Æ¥»±K°e¡G YSHUANG/MiTAC)          |
  |       ¥D¦®¡G  Re: [fwtk-users] - question about fwtk   |
  |       toolkit (POP Proxy)                              |
  >--------------------------------------------------------|











--0__=pSLscNopKjNBn7bKEfWtqt3DGWtQsQ68Mb7Nogy8BFlqZ36r1x0RbNXC
Content-type: text/plain; charset=us-ascii
Content-Disposition: inline


[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

> [To be removed from this list send the message "unsubscribe
fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]

> I didn't really like that approach, so I used the pop3gwd proxy
>  (available at  http://caristudenti.cs.unibo.it/~borgia/ ) instead.

>

It seemed that pop3gwd is a good stuff, but I cannot compile
it successfully in Digital OS enviroment.
Does anybody let it work in other platform?


Vincent Huang







--0__=pSLscNopKjNBn7bKEfWtqt3DGWtQsQ68Mb7Nogy8BFlqZ36r1x0RbNXC--


From owner-fwtk-users@ex.tis.com Wed Jan  5 02:47 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA12994
	Wed, 5 Jan 2000 02:47:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA12430;
	Tue, 4 Jan 2000 23:50:27 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 4 Jan 2000 23:48:18 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id XAA11569
	for fwtk-users-outgoing; Tue, 4 Jan 2000 23:48:16 -0800 (PST)
Message-ID: <20000105074752.22219.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: yshuang@mitac.com.tw
Cc: fwtk-users@lists.nai.com
Subject: Re: ¦^«H¡G Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
Date: Wed, 05 Jan 2000 13:17:52 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 1972

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

It works well under RH Linux 5.2, Kernel 2.2

N K Narang


----Original Message Follows----
From: yshuang@mitac.com.tw
To: Penty Wenngren <penty.wenngren@norstedtstryckeri.se>
CC: fwtk-users@lists.nai.com
Subject: ¦^«H¡G Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
Date: Wed, 5 Jan 2000 14:35:36 +0800

|--------+------------------------------------->
|        |          Penty Wenngren             |
|        |          <penty.wenngren@norstedtstr|
|        |          yckeri.se>                 |
|        |                                     |
|        |          2000/01/04 07:46 PM        |
|        |                                     |
|--------+------------------------------------->
   >--------------------------------------------------------|
   |                                                        |
   |       ¦¬¥ó¤H¡G     fwtk-users@lists.nai.com            |
   |       °Æ¥»§Û°e¡G   (°Æ¥»±K°e¡G YSHUANG/MiTAC)          |
   |       ¥D¦®¡G  Re: [fwtk-users] - question about fwtk   |
   |       toolkit (POP Proxy)                              |
   >--------------------------------------------------------|











[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

 > [To be removed from this list send the message "unsubscribe
fwtk-users" in the
 > BODY of a mail message to majordomo@ex.tis.com.]

 > I didn't really like that approach, so I used the pop3gwd proxy
 >  (available at  http://caristudenti.cs.unibo.it/~borgia/ ) instead.

 >

It seemed that pop3gwd is a good stuff, but I cannot compile
it successfully in Digital OS enviroment.
Does anybody let it work in other platform?


Vincent Huang







______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Wed Jan  5 10:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA14990
	Wed, 5 Jan 2000 10:46:36 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA16306;
	Wed, 5 Jan 2000 07:49:51 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 07:42:00 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA12722
	for fwtk-users-outgoing; Wed, 5 Jan 2000 07:41:55 -0800 (PST)
From: ark@eltex.ru
Date: Wed, 5 Jan 2000 17:34:23 +0300
Message-Id: <200001051434.RAA06115@paranoid.eltex.spb.ru>
In-Reply-To: <001201bf56c8$02008660$fc00a8c0@k6-2-350> from ""Larry Jackson" <lrj@blazenet.net>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: [fwtk-users] - question about fwtk toolkit (POP Proxy)
To: LarryJackson@iName.com
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1103

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

"Larry Jackson" <lrj@blazenet.net> said :

> I had to use the other plug-gw approach for my smtp pass-through proxy to my
> PC.
> I am looking for a SMTP proxy that works like the pop3gwd proxy.
> So if anyone knows of one let me know or I might modify pop3gwd
> into a smtp proxy that works in the same way.

Which way?! what for?
                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHNWbqH/mIJW9LeBAQEzNAP/RVSb0TpksAsv2jpDO0Zi9uCGog8BLBZd
buVzkwkHCr1siyQP/99sY8kYQmx3H5zKLlqb2rEZLm/PE0w7jQz2ep0FCG7K1N/D
Helx5VORKMjNwvk7milEBEIwdaj15OeyRSLqwEKwAfP760gYGgg3tQJwcwzZJGKV
6UA+JomXwV8=
=nD3b
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Wed Jan  5 10:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA14995
	Wed, 5 Jan 2000 10:46:41 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA16336;
	Wed, 5 Jan 2000 07:49:55 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 07:42:23 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA12819
	for fwtk-users-outgoing; Wed, 5 Jan 2000 07:42:13 -0800 (PST)
From: ark@eltex.ru
Date: Wed, 5 Jan 2000 18:03:43 +0300
Message-Id: <200001051503.SAA06236@paranoid.eltex.spb.ru>
In-Reply-To: <Pine.LNX.4.10.10001041332100.29752-101000@tequila.nb.com> from ""Yakov Kravets" <ygk@nb.com>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: SOCKS proxy
To: ygk@nb.com
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 2146

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

I started hacking the similar thing based on Dante (the only free socks5
implementation i am aware of). Too bad i was too lazy to write it from
the scatch because i realized soon that Dante is _terribly_ ugly^H^H^H^H^H
inflexible by design. The same company seems to do some Cobol programming
and i don't think it is coincidence ;) 

I have hacked serverconfig.c with rulespermit() function that reads 
netperm-table instead of sockd.conf ruleset so far but i don't think it is
way to go. BTW why do you implement socks4, not 5?

Yakov Kravets" <ygk@nb.com> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
>   This message is in MIME format.  The first part should be readable text,
>   while the remaining parts are likely unreadable without MIME-aware tools.
>   Send mail to mime@docserver.cac.washington.edu for more info.
> 
> --497816849-131490204-947011170=:29752
> Content-Type: TEXT/PLAIN; charset=US-ASCII
> 
> 
> I have put together a socks-gw proxy. From the name you can tell that it
> implements SOCKS protocol. The goal for this project was to integrate
> SOCKS proxy into FWTK.
> At this time it only implements CONNECT request and I'm working on getting
> BIND done.
> 
> I thought I'll share my work with the community.
> Feadback could be send to ygk@ygk.net.

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHNdTqH/mIJW9LeBAQGoXgP/ag9Fm3gmqkbMDIdSYGRpGiyY8pglPJSV
R/2FfL6lA6OCcVlLToc1ychrW4VH9atMNcf/yIrNyJjFKwoevqlsP6OswdXPW6pZ
2XW2h9uGTxRewm44AW5CRHc/MV20MZbO0FrGvss7R0V18WOeE5gQrTFSkV+zqI5p
rYw97YBHxOM=
=2w0Z
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Wed Jan  5 10:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA14989
	Wed, 5 Jan 2000 10:46:35 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA16302;
	Wed, 5 Jan 2000 07:49:50 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 07:42:11 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA12756
	for fwtk-users-outgoing; Wed, 5 Jan 2000 07:42:04 -0800 (PST)
From: ark@eltex.ru
Date: Wed, 5 Jan 2000 17:25:29 +0300
Message-Id: <200001051425.RAA06071@paranoid.eltex.spb.ru>
In-Reply-To: <Pine.GSO.4.10.10001030911250.4321-100000@ns1.bfg.com> from "Ted Keller <keller@bfg.com>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: question about fwtk toolkit
To: keller@bfg.com
Cc: yshuang@mitac.com.tw, fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 2371

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

What's wrong with pop3-gw? It does exactly what original poster needs
and does not require playing with port numbers and so on.

Ted Keller <keller@bfg.com> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Vincent,
> 
> You can use plug-gw for your pop mail services.  There is also a pop-gw
> proxy available at www.fwtk.org.   Either should work well.
> 
> To connect to multiple pop servers, you must allocate a different port to
> each pop server.  For example
> 
> 4119 - pop server a
> 4219 - pop server b
> 4319 - pop server c
> 
> Your clients then connect to the pop server of choice by always conneting
> to your firewall - then specifying the appropriate port to connect to the
> remote pop server.
> 
> No - the firewall does not do NAT.  However, all accesses to the internet
> appear to come from the external IP address of the firewall.  The internal
> machines are hidden.
> 
> 
> ted keller
> 
> On Mon, 3 Jan 2000 yshuang@mitac.com.tw wrote:
> 
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > 
> > 
> > Hi,
> > 
> > 1.Is there any product in FWTK to setup pop3 proxy service?
> > 
> >  that means my client inside Firewall can receive any
> >  pop3 server mail he want .
> > 
> > 2.Does anybody used to setup FWTK in Digital Server?
> > 
> >   Does any one know if I can set NAT (like checkpoint)
> >   in FWTK under digital server 4.0D OS enviroment?
> > 
> > Vincent Huang
> > 
> > 
> 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHNUWKH/mIJW9LeBAQGJEwP/YhLZV4w+yoxliZN7s0Pu95OS3402zE6L
lLdCwhhLha5YfvYUqqUmnScESsNOfR654khmgYHOHl0K0+AJKvTfK7Y1/biy3Fdk
1I3X9MUFOwyYsWAW9wDEcYrb6gYjW4+ANgi0zcVRLWZ5OK6wZCLk+ENjf9g1MEeG
tfjJGoDZM2o=
=dc7S
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Wed Jan  5 11:56 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA15200
	Wed, 5 Jan 2000 11:56:45 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA05109;
	Wed, 5 Jan 2000 09:00:00 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 08:54:50 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA03069
	for fwtk-users-outgoing; Wed, 5 Jan 2000 08:54:49 -0800 (PST)
Message-ID: <009a01bf579e$20d0b020$2604738d@irit.fr>
From: "Patrick Lirou" <Patrick.Lirou@irit.fr>
To: "Fwtk-Users@Lists. Nai. Com" <fwtk-users@lists.nai.com>
Subject: x-gw and Solaris 2.6
Date: Wed, 5 Jan 2000 17:58:44 +0100
Organization: IRIT, CNRS/UPS/INPT, TOULOUSE, FRANCE
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2919.6600
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1102

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

    I have installed fwtk 2.1 on a sun server under Solaris 2.5 and it was
working very well.
This server was upgraded in Solaris 2.6, I have reinstalled fwtk 2.1.
When I use x-gw, I obtain the following message :
    X connection to x-server.irit.fr:10.0 broken (explicit kill or server
shutdown).
when I click OK to accept connection on the X server.
At this time, the firewall server write the message :
Dec  7 07:41:33 x-server x-gw[6179]: select: Operation not applicable
in the file /var/log/messages.
Anyone knows hot to resolve this problem?
Thanks in advance.

|------------------------|------------------------------|
| Patrick LIROU          |                         |
| IRIT/UPS/CNRS/INP      |  Tel : +(33) 5 61 55 63 03   |
| 118 Route de Narbonne  |  Fax : +(33) 5 61 55 62 58   |
| F-31062 TOULOUSE CEDEX |  mél : Patrick.Lirou@irit.fr |
| FRANCE                 |                              |
|------------------------|------------------------------|



From owner-fwtk-users@ex.tis.com Wed Jan  5 13:07 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA15557
	Wed, 5 Jan 2000 13:07:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA19257;
	Wed, 5 Jan 2000 10:10:25 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 10:06:39 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA18079
	for fwtk-users-outgoing; Wed, 5 Jan 2000 10:06:32 -0800 (PST)
From: ark@eltex.ru
Date: Wed, 5 Jan 2000 17:45:18 +0300
Message-Id: <200001051445.RAA06162@paranoid.eltex.spb.ru>
In-Reply-To: <001001bf56d4$1be1c6a0$8668210c@cruisenet.net> from ""Jonathan B. Smith" <jsmith@bajasystems.com>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: ICQ
To: jsmith@bajasystems.com
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1524

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

"Jonathan B. Smith" <jsmith@bajasystems.com> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I've tried two methods, the one that works fully is by using socks.
> The other was to use udprelay to the main icq server. This didn't fully work
> because for some aspects of ICQ you need a direct tcp/ip connection to the
> other users.  In other words, go with SOCKS.

No. You don't _need_ direct tcp connection. ICQ will try it, though.
In other words DON'T use socks if you don't understand well how it works
and things you should control. It will probably break your security policy.

UDPrealy is way to go. (i'd say better don't use ICQ at all, but ..)

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHNY/KH/mIJW9LeBAQF+8gP/f4vxYUGSa/qZqTT5QTukBTpUOInseG5U
dhTVUV9wpYajVedImSvdCmqFY97n7ti0Uc8Dv268aWjFEQYAEvyivqMHAftXl5YE
ARETTosMI4x3gr5QaYz428q4y3QZ1yZpkn3ftub37Q6qU7SdSZoPrd6v+zQEycwO
kwEhz6pjmVU=
=C2+D
-----END PGP SIGNATURE-----



From owner-fwtk-users@ex.tis.com Wed Jan  5 13:23 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA15641
	Wed, 5 Jan 2000 13:23:39 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA22492;
	Wed, 5 Jan 2000 10:26:51 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 10:23:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA21451
	for fwtk-users-outgoing; Wed, 5 Jan 2000 10:23:39 -0800 (PST)
Message-ID: <005401bf57a9$f4d6f180$0a00a8c0@witt>
From: "Carsten Witt" <cw-news@gmx.de>
To: "fwtk-mailinglist" <fwtk-users@lists.nai.com>, <ark@eltex.ru>
References: <200001051445.RAA06162@paranoid.eltex.spb.ru>
Subject: Re: ICQ
Date: Wed, 5 Jan 2000 19:23:24 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2014.211
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2014.211
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1975

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi ,

can you say me how i do a udprelay !???

I don't how it works !

Carsten

.
----- Original Message -----
From: <ark@eltex.ru>
To: <jsmith@bajasystems.com>
Cc: <fwtk-users@lists.nai.com>
Sent: Wednesday, January 05, 2000 3:45 PM
Subject: Re: ICQ


> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> -----BEGIN PGP SIGNED MESSAGE-----
>
> nuqneH,
>
> "Jonathan B. Smith" <jsmith@bajasystems.com> said :
>
> > [To be removed from this list send the message "unsubscribe fwtk-users"
in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > I've tried two methods, the one that works fully is by using socks.
> > The other was to use udprelay to the main icq server. This didn't fully
work
> > because for some aspects of ICQ you need a direct tcp/ip connection to
the
> > other users.  In other words, go with SOCKS.
>
> No. You don't _need_ direct tcp connection. ICQ will try it, though.
> In other words DON'T use socks if you don't understand well how it works
> and things you should control. It will probably break your security
policy.
>
> UDPrealy is way to go. (i'd say better don't use ICQ at all, but ..)
>
>                                      _     _  _  _  _      _  _
>  {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_
|_
>  (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o
|_||_||_|
>  [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!
>
> -----BEGIN PGP SIGNATURE-----
> Version: 2.6.3i
> Charset: noconv
>
> iQCVAwUBOHNY/KH/mIJW9LeBAQF+8gP/f4vxYUGSa/qZqTT5QTukBTpUOInseG5U
> dhTVUV9wpYajVedImSvdCmqFY97n7ti0Uc8Dv268aWjFEQYAEvyivqMHAftXl5YE
> ARETTosMI4x3gr5QaYz428q4y3QZ1yZpkn3ftub37Q6qU7SdSZoPrd6v+zQEycwO
> kwEhz6pjmVU=
> =C2+D
> -----END PGP SIGNATURE-----
>
>


From owner-fwtk-users@ex.tis.com Wed Jan  5 13:38 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA15706
	Wed, 5 Jan 2000 13:38:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA26037;
	Wed, 5 Jan 2000 10:42:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 10:38:27 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA24924
	for fwtk-users-outgoing; Wed, 5 Jan 2000 10:38:26 -0800 (PST)
Message-ID: <001501bf57c5$162bb440$8668210c@cruisenet.net>
From: "Jonathan B. Smith" <jsmith@bajasystems.com>
To: <ark@eltex.ru>
Cc: <fwtk-users@lists.nai.com>
References: <200001051445.RAA06162@paranoid.eltex.spb.ru>
Subject: Re: ICQ
Date: Wed, 5 Jan 2000 13:37:37 -0800
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
X-SLUIDL: 1B851F24-9F0F11D3-A4620050-047807B2
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1920

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

ICQ does require tcp/ip connection to other users for icq chat and file
requests. If you're only using udp then you will not be able to use these
functions.

----- Original Message -----
From: <ark@eltex.ru>
To: jsmith <jsmith@bajasystems.com>
Cc: <fwtk-users@lists.nai.com>
Sent: Wednesday, January 05, 2000 6:45 AM
Subject: Re: ICQ


> -----BEGIN PGP SIGNED MESSAGE-----
>
> nuqneH,
>
> "Jonathan B. Smith" <jsmith@bajasystems.com> said :
>
> > [To be removed from this list send the message "unsubscribe fwtk-users"
in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > I've tried two methods, the one that works fully is by using socks.
> > The other was to use udprelay to the main icq server. This didn't fully
work
> > because for some aspects of ICQ you need a direct tcp/ip connection to
the
> > other users.  In other words, go with SOCKS.
>
> No. You don't _need_ direct tcp connection. ICQ will try it, though.
> In other words DON'T use socks if you don't understand well how it works
> and things you should control. It will probably break your security
policy.
>
> UDPrealy is way to go. (i'd say better don't use ICQ at all, but ..)
>
>                                      _     _  _  _  _      _  _
>  {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_
|_
>  (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o
|_||_||_|
>  [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!
>
> -----BEGIN PGP SIGNATURE-----
> Version: 2.6.3i
> Charset: noconv
>
> iQCVAwUBOHNY/KH/mIJW9LeBAQF+8gP/f4vxYUGSa/qZqTT5QTukBTpUOInseG5U
> dhTVUV9wpYajVedImSvdCmqFY97n7ti0Uc8Dv268aWjFEQYAEvyivqMHAftXl5YE
> ARETTosMI4x3gr5QaYz428q4y3QZ1yZpkn3ftub37Q6qU7SdSZoPrd6v+zQEycwO
> kwEhz6pjmVU=
> =C2+D
> -----END PGP SIGNATURE-----


From owner-fwtk-users@ex.tis.com Wed Jan  5 13:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA15744
	Wed, 5 Jan 2000 13:50:13 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA28549;
	Wed, 5 Jan 2000 10:53:22 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 5 Jan 2000 10:50:13 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA27503
	for fwtk-users-outgoing; Wed, 5 Jan 2000 10:50:12 -0800 (PST)
From: ark@eltex.ru
Date: Wed, 5 Jan 2000 21:46:54 +0300
Message-Id: <200001051846.VAA07208@paranoid.eltex.spb.ru>
In-Reply-To: <001501bf57c5$162bb440$8668210c@cruisenet.net> from ""Jonathan B. Smith" <jsmith@bajasystems.com>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: ICQ
To: jsmith@bajasystems.com
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 2789

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

These functions are unsafe, cannot be controlled properly with socks and
should be disabled anyways. If you don't understand that, i don't think
you need fwtk, socks-based firewall-like system should be enough for you.

For those who still can not get the point: if you use those functions,
you _definitely_ allow almost uncontrolled and poorly-logged outbound 
connections (you can make problem less obvious if you restrict some 
destination port numbers, but that does not actually solve it) and maybe
even some inbound ones.

I name socks as one of most dangerous (from "false sense of security" 
POV) pieces of firewall software. Don't use it if you don't understand
remote sockets interface concept and its side effects.


"Jonathan B. Smith" <jsmith@bajasystems.com> said :

> ICQ does require tcp/ip connection to other users for icq chat and file
> requests. If you're only using udp then you will not be able to use these
> functions.
> 
> ----- Original Message -----
> From: <ark@eltex.ru>
> To: jsmith <jsmith@bajasystems.com>
> Cc: <fwtk-users@lists.nai.com>
> Sent: Wednesday, January 05, 2000 6:45 AM
> Subject: Re: ICQ
> 
> 
> > -----BEGIN PGP SIGNED MESSAGE-----
> >
> > nuqneH,
> >
> > "Jonathan B. Smith" <jsmith@bajasystems.com> said :
> >
> > > [To be removed from this list send the message "unsubscribe fwtk-users"
> in the
> > > BODY of a mail message to majordomo@ex.tis.com.]
> > >
> > > I've tried two methods, the one that works fully is by using socks.
> > > The other was to use udprelay to the main icq server. This didn't fully
> work
> > > because for some aspects of ICQ you need a direct tcp/ip connection to
> the
> > > other users.  In other words, go with SOCKS.
> >
> > No. You don't _need_ direct tcp connection. ICQ will try it, though.
> > In other words DON'T use socks if you don't understand well how it works
> > and things you should control. It will probably break your security
> policy.
> >
> > UDPrealy is way to go. (i'd say better don't use ICQ at all, but ..)
> 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHORnqH/mIJW9LeBAQF9PwP+LB8vuQM5Q0qEvUJ9nLLhQVT3rl+3jndy
207xO/K3gKsHYGoSDJ8ocOUGJtQpZ0GMVWrOSFjr1tRYGjS5+qdVC2raF9x4vseF
UA/Vp3JNBnng1UX2vpofK/wzqwntjLm/g2USGQwSjjliNatcVvlAUPbdypQI1ete
D5zE2rVe3tk=
=CaAB
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Thu Jan  6 08:42 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA19052
	Thu, 6 Jan 2000 08:42:04 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA09051;
	Thu, 6 Jan 2000 05:45:20 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 6 Jan 2000 05:36:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA07238
	for fwtk-users-outgoing; Thu, 6 Jan 2000 05:36:20 -0800 (PST)
Message-ID: <A1629ACF6F31D2118D1E0008C74C8052D3C691@chq7mailc.dnr.qld.gov.au>
From: Mann Robert <robert.mann@dnr.qld.gov.au>
To: fwtk-users@ex.tis.com
Subject: tn-gw problem
Date: Thu, 6 Jan 2000 18:18:01 +1000 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 710

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hopefully this isn't user error but...

Using fwtk 2.1 on RedHat 6.

I'm trying to stop internal users from telnetting back into the internal
network via the gateway...eg

tn-gw:	deny-hosts unknown
tn-gw:	permit-hosts *.somewhere.com -dest !*.somewhere.com -dest *

I would have expected this to allow all users in somewhere.com to telnet to
everywhere except back into their domain, but it appears to allow them to go
anywhere.  I've confirmed that if you change the -dest !*.<etc> to any
domain other than the source it behaves correctly.  Any suggestions?

Thanks in advance.



From owner-fwtk-users@ex.tis.com Thu Jan  6 08:42 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA19055
	Thu, 6 Jan 2000 08:42:14 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA09103;
	Thu, 6 Jan 2000 05:45:31 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 6 Jan 2000 05:37:22 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA07371
	for fwtk-users-outgoing; Thu, 6 Jan 2000 05:37:21 -0800 (PST)
Message-ID: <XFMail.20000106094520.gale@syntax.dera.gov.uk>
X-Mailer: XFMail 1.4.4 on Linux
X-Priority: 3 (Normal)
Content-Transfer-Encoding: 8bit
MIME-Version: 1.0
In-Reply-To: <009a01bf579e$20d0b020$2604738d@irit.fr>
Date: Thu, 06 Jan 2000 09:45:20 -0000 (GMT)
From: Tony Gale <gale@syntax.dera.gov.uk>
To: Patrick Lirou <Patrick.Lirou@irit.fr>
Subject: RE: x-gw and Solaris 2.6
Cc: fwtk-users@ex.tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 1248

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


You could start by trying the x-gw patch at

http://www.fwtk.org/fwtk/patches/patches.html#1.6

-tony

On 05-Jan-2000 Patrick Lirou wrote:
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
>     I have installed fwtk 2.1 on a sun server under Solaris 2.5 and
> it was
> working very well.
> This server was upgraded in Solaris 2.6, I have reinstalled fwtk
> 2.1.
> When I use x-gw, I obtain the following message :
>     X connection to x-server.irit.fr:10.0 broken (explicit kill or
> server
> shutdown).
> when I click OK to accept connection on the X server.
> At this time, the firewall server write the message :
> Dec  7 07:41:33 x-server x-gw[6179]: select: Operation not
> applicable
> in the file /var/log/messages.
> Anyone knows hot to resolve this problem?
> Thanks in advance.
> 

---
E-Mail: Tony Gale <gale@syntax.dera.gov.uk>
Kleeneness is next to Godelness.

The views expressed above are entirely those of the writer
and do not represent the views, policy or understanding of
any other person or official body.



From owner-fwtk-users@ex.tis.com Thu Jan  6 11:01 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA19563
	Thu, 6 Jan 2000 11:01:11 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA29996;
	Thu, 6 Jan 2000 08:04:25 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 6 Jan 2000 08:00:04 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA28526
	for fwtk-users-outgoing; Thu, 6 Jan 2000 08:00:01 -0800 (PST)
Message-ID: <002d01bf585f$a3a721c0$2604738d@irit.fr>
From: "Patrick Lirou" <Patrick.Lirou@irit.fr>
To: "Tony Gale" <gale@syntax.dera.gov.uk>
Cc: <fwtk-users@ex.tis.com>
References: <XFMail.20000106094520.gale@syntax.dera.gov.uk>
Subject: Re: x-gw and Solaris 2.6
Date: Thu, 6 Jan 2000 17:03:53 +0100
Organization: IRIT, CNRS/UPS/INPT, TOULOUSE, FRANCE
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2919.6600
X-Mimeole: Produced By Microsoft MimeOLE V5.00.2919.6600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1628

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


----- Original Message ----- 
From: "Tony Gale" <gale@syntax.dera.gov.uk>
To: "Patrick Lirou" <Patrick.Lirou@irit.fr>
Cc: <fwtk-users@ex.tis.com>
Sent: Thursday, January 06, 2000 10:45 AM
Subject: RE: x-gw and Solaris 2.6


> 
> 
> You could start by trying the x-gw patch at
> 
> http://www.fwtk.org/fwtk/patches/patches.html#1.6
> 

Thank you for your response. I apply this patch but nothing change.

> -tony
> 
> On 05-Jan-2000 Patrick Lirou wrote:
> > [To be removed from this list send the message "unsubscribe
> > fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> >     I have installed fwtk 2.1 on a sun server under Solaris 2.5 and
> > it was
> > working very well.
> > This server was upgraded in Solaris 2.6, I have reinstalled fwtk
> > 2.1.
> > When I use x-gw, I obtain the following message :
> >     X connection to x-server.irit.fr:10.0 broken (explicit kill or
> > server
> > shutdown).
> > when I click OK to accept connection on the X server.
> > At this time, the firewall server write the message :
> > Dec  7 07:41:33 x-server x-gw[6179]: select: Operation not
> > applicable
> > in the file /var/log/messages.
> > Anyone knows hot to resolve this problem?
> > Thanks in advance.
> > 
> 
> ---
> E-Mail: Tony Gale <gale@syntax.dera.gov.uk>
> Kleeneness is next to Godelness.
> 
> The views expressed above are entirely those of the writer
> and do not represent the views, policy or understanding of
> any other person or official body.
> 
> 
> 


From owner-fwtk-users@ex.tis.com Thu Jan  6 23:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id XAA22882
	Thu, 6 Jan 2000 23:46:02 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA06981;
	Thu, 6 Jan 2000 20:49:20 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 6 Jan 2000 20:45:59 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id UAA06209
	for fwtk-users-outgoing; Thu, 6 Jan 2000 20:45:58 -0800 (PST)
Message-ID: <38756917.D074B4DA@mahindrabt.com>
Date: Fri, 07 Jan 2000 09:48:31 +0530
From: Rajesh Khanduja <khanduja@mahindrabt.com>
Reply-To: khanduja@mahindrabt.com
Organization: MBT
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.12-20 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: content-filtering...
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 280

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi

I am using fwtk. I would like to implement content-filtering on emails,
http.
Ideas on how to achieve this would be appreciated.

Cheers,
Rajesh



From owner-fwtk-users@ex.tis.com Fri Jan  7 02:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA23262
	Fri, 7 Jan 2000 02:41:23 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA15687;
	Thu, 6 Jan 2000 23:44:37 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 6 Jan 2000 23:41:36 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id XAA14803
	for fwtk-users-outgoing; Thu, 6 Jan 2000 23:41:35 -0800 (PST)
Date: Fri, 7 Jan 2000 08:41:28 +0100 (W. Europe Standard Time)
From: "Carlos A. Ferraro Cavallini" <carlos@spotfire.com>
Reply-To: FWTK Users List <fwtk-users@lists.tislabs.com>
To: FWTK Users List <fwtk-users@ex.tis.com>
Subject: Re: tn-gw problem
In-Reply-To: <A1629ACF6F31D2118D1E0008C74C8052D3C691@chq7mailc.dnr.qld.gov.au>
Message-ID: <Pine.WNT.4.10.10001070838050.119-100000@DIAMOND.spotfire.com>
X-X-Sender: carlos@mail.spotfire.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 651

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Thu, 6 Jan 2000, Mann Robert wrote:

MR> Hopefully this isn't user error but...

...it's a security flaw...


MR> Using fwtk 2.1 on RedHat 6.
MR> 
MR> I'm trying to stop internal users from telnetting back into
MR> the internal network via the gateway...eg

The firewall is no place for a telnet daemon nor client!
Simply remove them and use SSH instead.

Regards,
	/C

_____________________________________________________________
Carlos A. Ferraro Cavallini
R&D Software, Spotfire AB
http://www.spotfire.com/~carlos


From owner-fwtk-users@ex.tis.com Fri Jan  7 09:02 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA24169
	Fri, 7 Jan 2000 09:02:41 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA28770;
	Fri, 7 Jan 2000 06:05:57 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 7 Jan 2000 05:49:00 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA20787
	for fwtk-users-outgoing; Fri, 7 Jan 2000 05:48:58 -0800 (PST)
Message-Id: <38755AB2.3F02D76D@eastfx.com>
Date: Thu, 06 Jan 2000 22:17:06 -0500
From: "Michael B. East" <mbeast@eastfx.com>
X-Mailer: Mozilla 4.7 [en] (WinNT; U)
X-Accept-Language: en
Mime-Version: 1.0
To: fwtk-users@lists.nai.com
Subject: smap/smapd From UID question
References: <200001051445.RAA06162@paranoid.eltex.spb.ru> <001501bf57c5$162bb440$8668210c@cruisenet.net>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 758

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have installed fwtk 2.1 on a Sun Solaris 2.6 server. All is well except that all
mail  to users outside of the firewall that are invalid have the bounces directed
to the mail admin account. I'm using sendmail as the mailer on the server.

i.e. if mbeast emails to a valid user outside, all replies and the From field are
fine - mbeast. if mbeast emails to an invalid user but to a valid domain or to a
totally invalid domain, the bounce from the other system or from the server itself
is directed to eastfx-adm instead of mbeast.

Any ideas? Probably a setuid problem somewhere but I couldn't figure this out.

Michael East




From owner-fwtk-users@ex.tis.com Fri Jan  7 13:39 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA25067
	Fri, 7 Jan 2000 13:39:24 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA18255;
	Fri, 7 Jan 2000 10:42:34 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 7 Jan 2000 10:36:19 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA16778
	for fwtk-users-outgoing; Fri, 7 Jan 2000 10:36:17 -0800 (PST)
Message-Id: <3.0.6.32.20000107173956.00a7b600@itsun1.infotech.de>
X-Sender: weber@itsun1.infotech.de
X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.6 (32)
Date: Fri, 07 Jan 2000 17:39:56 +0100
To: fwtk-users@lists.nai.com
From: Christian Weber <Weber@InfoTech.de>
Subject: plug-gw for SQL*Net (oracle)
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 718

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Dear fwtk users,

i wonder if anyone has put some effort in extending
plug-gw for sqlnet so that it can switch to different 
servers (hosts with listeners) depending on the
SID of the destination database.

Currently we are using one firewall to connect to
databases on one server (with one listener the clients 
connect).

In a fail-over environment it would be very useful to 
switch database services to differnet backup machines,
which could be many.

Is there anyone who did it?

MfG
Christian Weber 
mailto:Weber@InfoTech.de
For information on InfoTech visit http://www.infotech.de


From owner-fwtk-users@ex.tis.com Fri Jan  7 13:59 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA25104
	Fri, 7 Jan 2000 13:59:14 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA21903;
	Fri, 7 Jan 2000 11:02:31 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 7 Jan 2000 10:59:25 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA20974
	for fwtk-users-outgoing; Fri, 7 Jan 2000 10:59:24 -0800 (PST)
Message-ID: <4BEBBAC806C0D311BBAD009027B8D45717A1E1@gemini.xpense.com>
From: Preston Hogue <PrestonH@concur.com>
To: "'fwtk-users@tis.com'" <fwtk-users@tis.com>
Date: Fri, 7 Jan 2000 09:20:38 -0800 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1117

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

    I am currently using a product call Webshield for Solaris (2.6).  When
I purchased this product NAI told me that they created a mail relay that
virus scans.  Well come to find out the mail relay is none other than fwtk's
smap.  So my question is: does Network Associates have a sub-license to use
your product. The main reason I am asking this question is, because NAI is
clueless to how it works.  If it is sub-licensed I am hoping that you guys
can help me.  I have set up a split fire DNS configuration on my network.  I
have the outside DNS MX records pointing to the Webshield box (running smap)
and the Webshield box /etc/resolv.conf file points to my inside DNS box.
The inside DNS MX record points to my Sendmail server.  The problem is that
the Webshield box is not passing it on to the Sendmail box.  It places the
mail on the local box with out any attempt to pass it on.  If you guys can
be of any assistance, I would greatly appreciate it.

Thank you,
Preston Hogue  




From owner-fwtk-users@ex.tis.com Fri Jan  7 22:01 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA26180
	Fri, 7 Jan 2000 22:01:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA07119;
	Fri, 7 Jan 2000 19:04:29 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 7 Jan 2000 19:01:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA06297
	for fwtk-users-outgoing; Fri, 7 Jan 2000 19:01:32 -0800 (PST)
Message-Id: <4.2.2.20000107165853.00b13bd0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Fri, 07 Jan 2000 17:05:04 -0500
To: Preston Hogue <PrestonH@concur.com>,
        "'fwtk-users@tis.com'" <fwtk-users@tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: 
In-Reply-To: <4BEBBAC806C0D311BBAD009027B8D45717A1E1@gemini.xpense.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1579

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 09:20 AM 1/7/00 -0800, Preston Hogue wrote:
>     I am currently using a product call Webshield for Solaris (2.6).  When
>I purchased this product NAI told me that they created a mail relay that
>virus scans.  Well come to find out the mail relay is none other than fwtk's
>smap.  So my question is: does Network Associates have a sub-license to use
>your product.

Network Associates OWNS the firewall toolkit. They can do what they want 
with it :-) (NAI bought TIS).

>  The main reason I am asking this question is, because NAI is
>clueless to how it works.  If it is sub-licensed I am hoping that you guys
>can help me.  I have set up a split fire DNS configuration on my network.  I
>have the outside DNS MX records pointing to the Webshield box (running smap)
>and the Webshield box /etc/resolv.conf file points to my inside DNS box.
>The inside DNS MX record points to my Sendmail server.  The problem is that
>the Webshield box is not passing it on to the Sendmail box.  It places the
>mail on the local box with out any attempt to pass it on.  If you guys can
>be of any assistance, I would greatly appreciate it.

Your sendmail configuration on the firewall is wrong. Normally smap expects 
the sendmail on the firewall to pass all mail destined for your domain to 
an internal mail server. My rule 0 has
R$*<@$*$N>$*    $#smtp $@$R $:$1<@$2$N>$3       our domain

where $N is my domain, $R is the internal mail server.
         -Rick


From owner-fwtk-users@ex.tis.com Mon Jan 10 10:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA12208
	Mon, 10 Jan 2000 10:09:31 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA12625;
	Mon, 10 Jan 2000 07:11:56 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 10 Jan 2000 05:36:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA02407
	for fwtk-users-outgoing; Mon, 10 Jan 2000 05:36:18 -0800 (PST)
From: kan@svmail.svtech.com.sg
Date: Mon, 10 Jan 2000 18:38:26 +0800 (SGT)
To: fwtk-users@ex.tis.com
Subject: Cannot surf the www from the back of firewall (fwd)
Message-ID: <Pine.LNX.4.10.10001101837510.317-100000@svmail.svtech.com.sg>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 714

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



---------- Forwarded message ----------
Date: Mon, 10 Jan 2000 18:12:51 +0800 (SGT)
From: kan@svmail.svtech.com.sg
To: owner-fwtk-users@ex.tis.com
Subject: Cannot surf the www from the back of firewall

To whom it may concern,
  I am not sure is this the e-mail to seek for help on the matter of FWTK.
Presently, I am using fwtk 2.0. I had everything setup, I setup my http-gw
setup and it works fine with the site that is within my country. But it
failed to surf the site out of my country. I had no idea what's wrong with
it. Please give me some advice. I did not bar any site.




From owner-fwtk-users@ex.tis.com Mon Jan 10 10:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA12211
	Mon, 10 Jan 2000 10:09:41 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA12614;
	Mon, 10 Jan 2000 07:11:53 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 10 Jan 2000 05:35:35 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA02306
	for fwtk-users-outgoing; Mon, 10 Jan 2000 05:35:18 -0800 (PST)
Message-ID: <008c01bf5b44$b7f12080$b400000a@k-180.nutricia.com.pl>
From: "Mariusz Potocki" <mariusz@nutricia.com.pl>
To: <fwtk-users@lists.nai.com>, "Christian Weber" <Weber@InfoTech.de>
Subject: Odp: plug-gw for SQL*Net (oracle)
Date: Mon, 10 Jan 2000 09:28:44 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 4.72.2106.4
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.2106.4
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-2"
Content-Length: 975

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

>Dear fwtk users,
>
>i wonder if anyone has put some effort in extending
>plug-gw for sqlnet so that it can switch to different
>servers (hosts with listeners) depending on the
>SID of the destination database.
>
>Currently we are using one firewall to connect to
>databases on one server (with one listener the clients
>connect).
>
>In a fail-over environment it would be very useful to
>switch database services to differnet backup machines,
>which could be many.
>
>Is there anyone who did it?
IMHO it's wrong approach to the problem.
Instead of hacking plug-gw to solve specific problem with Oracle, you should
refine your Oracle configuration.
In case of database failure you can change on-the-fly your tnsnames.ora or
names service to point listener to backup database. Dumb plug-gw and most
dumb users won't see any change in database.




From owner-fwtk-users@ex.tis.com Mon Jan 10 16:47 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA13662
	Mon, 10 Jan 2000 16:47:10 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA22525;
	Mon, 10 Jan 2000 13:49:52 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 10 Jan 2000 12:32:45 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA16362
	for fwtk-users-outgoing; Mon, 10 Jan 2000 12:32:24 -0800 (PST)
Message-ID: <20000110203156.72251.qmail@hotmail.com>
X-Originating-IP: [156.153.255.138]
From: "=?iso-8859-1?B?Sm9z6SBGcmFuY2lzY28gQnJ1c2Nv?=" <j_brusco@hotmail.com>
To: fwtk-users@lists.nai.com
Subject: SSL Connections
Date: Mon, 10 Jan 2000 17:31:55 ART
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1; format=flowed
Content-Length: 711

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi.

I need help, please!

I´m using fwtk version 2.1 running on Redhat Linux 6.0 Server, and MS 
Internet Explorer 4.01 sp2 running on Windows 95 clients.

I need to configure fwtk for ssl port. Some connections work well on port 
80, the default port, (for example MS Hotmail and Amazon.com) but sometimes 
other sites reject the connections (for example: Yahoo.com and Netscape.com 
when i try to enter to my e-mail accounts).

What can i do?

Thanks.

Jose F. Brusco
______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Tue Jan 11 07:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA16448
	Tue, 11 Jan 2000 07:40:36 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA04631;
	Tue, 11 Jan 2000 04:43:15 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 11 Jan 2000 03:22:04 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA00091
	for fwtk-users-outgoing; Tue, 11 Jan 2000 03:21:51 -0800 (PST)
Message-ID: <002f01bf5c8c$11bd03c0$3203a8c0@telekabel.chello.nl>
From: "Jeroen" <jmar@telebyte.nl>
To: <fwtk-users@tis.com>
Subject: Udp relay
Date: Wed, 12 Jan 2000 00:32:04 +0100
MIME-Version: 1.0
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.0810.800
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.0810.800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_002A_01BF5C94.733C9A90"
Content-Length: 2343

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This is a multi-part message in MIME format.

------=_NextPart_000_002A_01BF5C94.733C9A90
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Hi everyone,
=20
Can enyone help me to get a WORKING copy of udp relay for my tis =
firewall ??
Need to have DNS lookups for my exchange server and web server in the =
DMZ=20
I run my firewall on Redhat 6.0
=20
Tanks in advance=20

                                     Jeroen de Bruin.

                                   =20

------=_NextPart_000_002A_01BF5C94.733C9A90
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD W3 HTML//EN">
<HTML><HEAD>
<META content=3Dtext/html;charset=3Diso-8859-1 =
http-equiv=3DContent-Type><!DOCTYPE HTML PUBLIC "-//W3C//DTD W3 =
HTML//EN"><!DOCTYPE HTML PUBLIC "-//W3C//DTD W3 HTML//EN">
<STYLE></STYLE>

<META content=3D'"MSHTML 5.00.0910.1309"' name=3DGENERATOR></HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>Hi everyone,</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Can enyone help me to get a WORKING =
copy of udp=20
relay for my tis firewall ??</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>Need to have DNS lookups for my =
exchange server and=20
web server in the DMZ </FONT></DIV>
<DIV><FONT face=3DArial size=3D2>I run my firewall on Redhat =
6.0</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Tanks in advance </FONT></DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT face=3DArial=20
size=3D2>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=
&nbsp;=20
Jeroen de Bruin.</FONT></DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT face=3DArial=20
size=3D2>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=
=20
</FONT></DIV></BODY></HTML>

------=_NextPart_000_002A_01BF5C94.733C9A90--


From owner-fwtk-users@ex.tis.com Tue Jan 11 10:14 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA17041
	Tue, 11 Jan 2000 10:14:49 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA18355;
	Tue, 11 Jan 2000 07:17:28 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 11 Jan 2000 05:46:50 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA08266
	for fwtk-users-outgoing; Tue, 11 Jan 2000 05:46:31 -0800 (PST)
Date: Tue, 11 Jan 2000 11:17:24 +0200 (EET)
From: Haifeng Lin ~!~ <haifengl@cc.hut.fi>
To: fwtk-users@tis.com
cc: fwtk-support@tis.com
Subject: about fwtk.
Message-ID: <Pine.A41.4.10.10001111105260.19606-100000@vipunen.hut.fi>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 725

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello ,

I am Haifeng Lin. I am studying at HUT in Finland.
I am doing fwtk\smap. I had been download fwtk-2.1.tar.z.
and I had smap directory in my PC. Now, I want to run this smap
programming in PC. I have some question.
Do you mind question?
1. I have arpadate.c , makefile, smap.c in smap directory in my PC.  I
have libwsock32.a in lib directory. And I have Cygnus and egcs-1.1.2
software in my pc.
how can I run this samp.c in PC platform? What can I do the first?

how can I change it to pc code?

Thank for your help. Looking forward to hearing that from you soon.

B.R
Haifeng Lin:))




From owner-fwtk-users@ex.tis.com Tue Jan 11 10:14 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA17044
	Tue, 11 Jan 2000 10:14:57 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA18339;
	Tue, 11 Jan 2000 07:17:20 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 11 Jan 2000 05:46:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA08267
	for fwtk-users-outgoing; Tue, 11 Jan 2000 05:46:31 -0800 (PST)
Message-ID: <00a901bf5c2e$c3c23940$b400000a@k-180.nutricia.com.pl>
From: "Mariusz Potocki" <mariusz@nutricia.com.pl>
To: "Jeroen" <jmar@telebyte.nl>, <fwtk-users@tis.com>
Subject: Re: Udp relay
Date: Tue, 11 Jan 2000 13:24:10 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 4.72.2106.4
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.2106.4
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-2"
Content-Length: 492

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


>Can enyone help me to get a WORKING copy of udp relay for my tis firewall
??
>Need to have DNS lookups for my exchange server and web server in the DMZ
>I run my firewall on Redhat 6.0

I have in internal server named service with option 'forwarders' in
named.conf which pass all queries through DNS located on firewall. In such
case you don't need udprelay.



From owner-fwtk-users@ex.tis.com Tue Jan 11 11:24 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA17283
	Tue, 11 Jan 2000 11:24:39 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA25909;
	Tue, 11 Jan 2000 08:27:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 11 Jan 2000 07:13:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA17625
	for fwtk-users-outgoing; Tue, 11 Jan 2000 07:12:39 -0800 (PST)
From: ark@eltex.ru
Date: Tue, 11 Jan 2000 18:04:33 +0300
Message-Id: <200001111504.SAA32097@paranoid.eltex.spb.ru>
In-Reply-To: <002f01bf5c8c$11bd03c0$3203a8c0@telekabel.chello.nl> from ""Jeroen" <jmar@telebyte.nl>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: Udp relay
To: jmar@telebyte.nl
Cc: fwtk-users@tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1526

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

UDPrelay does not handle heavy load (many active rules) well.
I suggest using a forward-only named (8.x) bound to internal interface.

"Jeroen" <jmar@telebyte.nl> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> This is a multi-part message in MIME format.
> 
> ------=_NextPart_000_002A_01BF5C94.733C9A90
> Content-Type: text/plain;
> 	charset="iso-8859-1"
> Content-Transfer-Encoding: quoted-printable
> 
> Hi everyone,
> =20
> Can enyone help me to get a WORKING copy of udp relay for my tis =
> firewall ??
> Need to have DNS lookups for my exchange server and web server in the =
> DMZ=20
> I run my firewall on Redhat 6.0
> =20
> Tanks in advance=20
 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOHtGgKH/mIJW9LeBAQHB7AQAs3Ccdsk/sj8fo432vrE8deUyX+6Nr9Lk
RzohdujPkAz1AAzzlhtm3XD1QJjdRURUzlw1UfwyuWs5l7Nn2OiQ4PaRwmocXj/1
vSjkb9LRdVCvdv7INOuGcqaH85BgubuSndymiT//Q/CwSS4QJ+obsqjW4HNkmwLQ
fCRA7KNzWgc=
=1X5Y
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Wed Jan 12 06:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA20715
	Wed, 12 Jan 2000 06:50:42 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA18774;
	Wed, 12 Jan 2000 03:53:54 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 12 Jan 2000 03:45:23 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA17674
	for fwtk-users-outgoing; Wed, 12 Jan 2000 03:45:21 -0800 (PST)
Message-ID: <387C6952.49D6AAC3@fadesa.es>
Date: Wed, 12 Jan 2000 12:45:22 +0100
From: "=?iso-8859-1?Q?Jos=E9?= M. =?iso-8859-1?Q?Fandi=F1o?=" 
	<jm.fandino@fadesa.es>
Reply-To: jm.fandino@fadesa.es
Organization: Inmobiliaria FADESA
X-Mailer: Mozilla 4.7 [en] (X11; I; Linux 2.2.13 i686)
X-Accept-Language: es, en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: problem with smap and reverse DNS
X-Priority: 2 (High)
Content-Transfer-Encoding: 7bit
X-Logged: Logged by tierra.fadesa.es as OAA25702 at Wed Jan 12 14:26:45 2000
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1103

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I'm actually  having a problem with a bad inverse referral of my
upstream provider and it is out of my scope.

The error happen one time the bad referral is detected (see log report
below), the smap think what the mail is not local and systematically
deny the incoming mail with a "Mail not local"

Jan 12 01:43:34 fire named[125]: bad referral (140.194.in-addr.arpa !<
64.140.194.in-addr.arpa)
Jan 12 01:43:34 fire smap[13957]: 194.140.64.229 host address lookup
failed
Jan 12 01:43:34 fire smap[13957]: connect host=unknown/194.140.64.229
Jan 12 01:43:34 fire smap[13957]: deny host=unknown/194.140.64.229 use
of gateway
Jan 12 01:43:34 fire smap[13957]: fwtksyserr: Mail not local
<jm.fandino@fadesa.es>   

whatever help/refence will be welcome.

Thx

-- 
-----BEGIN GEEK CODE BLOCK-----
Version: 3.1
GCC d- s+: a- C+>+++ UL++++ P+ L+++ E--- W++ N+ o+ K- w---
O M V- PS PE+ Y PGP+>+++ t+ 5 X+++ R- !tv b+++ DI-- D+++
G e- h++ !r !y+
------END GEEK CODE BLOCK------

From owner-fwtk-users@ex.tis.com Wed Jan 12 09:55 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA21307
	Wed, 12 Jan 2000 09:55:30 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA00342;
	Wed, 12 Jan 2000 06:58:50 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 12 Jan 2000 06:54:55 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA29361
	for fwtk-users-outgoing; Wed, 12 Jan 2000 06:54:54 -0800 (PST)
Mime-Version: 1.0
X-Sender: christianr@ntmail.signalgene.com
Message-Id: <v04210105b4a24575d766@[192.133.40.28]>
Date: Wed, 12 Jan 2000 09:55:49 -0500
To: fwtk-users@ex.tis.com
From: Christian Raymond <craymond@signalgene.com>
Subject: secure connection
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 703

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi all

I'm new to the list. I use FWTK version 1.3. 
Everything is doing great, execpt that we can't connect to secure sites using SSL. Is upgrading to version 2.1 my solution?

Also, I will have to connect to an external server with telnet and SSH. I might be able to do it with plug-GW, but I'm not shure I want to use it. What are my options?

Adv-Thank-ance!

Chris

------------------------------------------------------------
Christian Raymond
System Administrator 
SignalGene Inc.
craymond@signalgene.com
------------------------------------------------------------

From owner-fwtk-users@ex.tis.com Thu Jan 13 12:59 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA26573
	Thu, 13 Jan 2000 12:59:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA28753;
	Thu, 13 Jan 2000 10:02:54 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 09:53:00 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA26875
	for fwtk-users-outgoing; Thu, 13 Jan 2000 09:52:58 -0800 (PST)
Date: Thu, 13 Jan 2000 12:53:09 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Preston Hogue <PrestonH@concur.com>
Cc: "'fwtk-users@tis.com'" <fwtk-users@tis.com>
Subject: Re: your mail [on NAI WebShield and 'smap']
Message-Id: <20000113125309.K3999@washington.cospo.osis.gov>
Mail-Followup-To: Preston Hogue <PrestonH@concur.com>,
	"'fwtk-users@tis.com'" <fwtk-users@tis.com>
References: <4BEBBAC806C0D311BBAD009027B8D45717A1E1@gemini.xpense.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <4BEBBAC806C0D311BBAD009027B8D45717A1E1@gemini.xpense.com>; from PrestonH@concur.com on Fri, Jan 07, 2000 at 09:20:38AM -0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2491

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Fri, Jan 07, 2000 at 09:20:38AM -0800, Preston Hogue wrote:
>     I am currently using a product call Webshield for Solaris (2.6).  When
> I purchased this product NAI told me that they created a mail relay that
> virus scans.  Well come to find out the mail relay is none other than fwtk's
> smap.  So my question is: does Network Associates have a sub-license to use
> your product. The main reason I am asking this question is, because NAI is
> clueless to how it works.  If it is sub-licensed I am hoping that you guys
> can help me.  I have set up a split fire DNS configuration on my network.  I
> have the outside DNS MX records pointing to the Webshield box (running smap)
> and the Webshield box /etc/resolv.conf file points to my inside DNS box.
> The inside DNS MX record points to my Sendmail server.  The problem is that
> the Webshield box is not passing it on to the Sendmail box.  It places the
> mail on the local box with out any attempt to pass it on.  If you guys can
> be of any assistance, I would greatly appreciate it.

I wish your e-mail had a subject line.  I am several days behind on
various "non-critical" e-mail threads, and I have no idea whether
anybody has responded to you.

The FireWall ToolKit [FWTK] was a free toolkit put out by Trusted
Information Systems [TIS] with which knowledgeable netgineers could put
together firewalls like, but not as good as, TIS Gauntlet, which also
uses an enhanced version of 'smap'.

Network Associates, Inc. [NAI] bought TIS a good while ago.

No, NAI does not have a sub-license.  They OWN the bloody thing.
Although they obviously do not own all of the knowledge about it - they
let a lot of it leave, and the rest is clearly not percolating well
into the previously-MSW-oriented base of NAI.

If your WebShield's 'smapd' is configured to pass it to local
'sendmail', then the "sendmail.cf" file must be set up to pass ALL mail
for your internal domain to your internal server.  This is NOT the
default setup for Solaris.  You may want to check out the instructions
for your WebShield, if NAI thought to copy over the instructions that
come with TIS Gauntlet.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Thu Jan 13 13:55 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA26874
	Thu, 13 Jan 2000 13:55:57 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA05857;
	Thu, 13 Jan 2000 10:59:15 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 10:55:16 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA04699
	for fwtk-users-outgoing; Thu, 13 Jan 2000 10:55:14 -0800 (PST)
Date: Thu, 13 Jan 2000 13:55:16 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Preston Hogue <PrestonH@concur.com>
Cc: fwtk-users@lists.nai.com
Subject: Re: your mail [on NAI WebShield and 'smap']
Message-Id: <20000113135516.O3999@washington.cospo.osis.gov>
Mail-Followup-To: Preston Hogue <PrestonH@concur.com>,
	fwtk-users@lists.nai.com
References: <4BEBBAC806C0D311BBAD009027B8D45717A217@gemini.xpense.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <4BEBBAC806C0D311BBAD009027B8D45717A217@gemini.xpense.com>; from PrestonH@concur.com on Thu, Jan 13, 2000 at 10:04:31AM -0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1320

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Thu, Jan 13, 2000 at 10:04:31AM -0800, Preston Hogue wrote:
> TIS was purchased bye NAI. The software is more or less vapor-wear.  There

Actually, it really does exist [unlike "real" vaporware] and works
quite well.  The vapor is in the head of whoever packaged it without
adequate documentation.

> is absolutely no instructions on how the product works, only instructions
> (not very good) on how to configure the product.  I have now configured the
> sendmail.cf file and it works appropriately.  The only problem that I am now
> having is a 10 minute delay between the time I send it and the time the
> final box receives it.  I really am not familiar enough with either smap or
> sendmail (I normally use POSTFIX) to know if I can lessen the queue time.

Purely off the top of my head, I think that 'smapd' is called from cron
every 10-15 minutes, which you can shorten.  I'm sure that if my memory
is failing me, someone else knows the right answer.  ;-)

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Thu Jan 13 14:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA27008
	Thu, 13 Jan 2000 14:27:03 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA09532;
	Thu, 13 Jan 2000 11:30:09 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 11:26:52 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA08579
	for fwtk-users-outgoing; Thu, 13 Jan 2000 11:26:51 -0800 (PST)
Message-ID: <387E258E.A4650817@surfari.com>
Date: Thu, 13 Jan 2000 13:20:46 -0600
From: Jennifer Tippens <jennifer@surfari.com>
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.13 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@tis.com
Subject: RTSP, Realaudio, and fwtk help
References: <4BEBBAC806C0D311BBAD009027B8D45717A1E1@gemini.xpense.com> <20000113125309.K3999@washington.cospo.osis.gov>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1093

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,
We are using the fwtk and I was asked to find a RealAudio proxy for our system.
I downloaded the Real Time Streaming Protocol Proxy reference implimentation.  I
compiled and "installed" it.  That worked fine, but now how do I configure it for
use?  I gave it my (several times) best guess and this is what I came up with
(which doesn't work)

Added in netperm-table:
rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd

Added in /etc/services:
rtsp:    554/tcp

Added in inetd.conf:
rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp

I have no idea what I'm supposed to do with it-- I have looked everywhere for
some (anything) information, contacted RealAudio, got on the
comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
found nothing except a vague reference on the patches and add-ons page for fwtk
that says to download the rtspd proxy kit.  Am I even close?  Please help.

Thank you,
Jennifer


From owner-fwtk-users@ex.tis.com Thu Jan 13 19:54 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA28109
	Thu, 13 Jan 2000 19:54:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA11774;
	Thu, 13 Jan 2000 16:58:19 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 16:51:07 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA10569
	for fwtk-users-outgoing; Thu, 13 Jan 2000 16:50:57 -0800 (PST)
Date: Thu, 13 Jan 2000 19:50:12 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Jennifer Tippens <jennifer@surfari.com>
cc: fwtk-users@tis.com
Subject: Re: RTSP, Realaudio, and fwtk help
In-Reply-To: <387E258E.A4650817@surfari.com>
Message-ID: <Pine.GSO.4.10.10001131947360.7890-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1892

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jennifer,

The rstpd reference proxy is just that - a reference proxy.  It does not
have the support required for enable/disable connections.  It permits all
connections - both inbound and outbound. - not good.

Modifing this code is a bit tricky - unless you are really good....

To get around this, I  "socksified" it - and ran it on an internal server
- using a socks5 gateway with the connection rules defined.  you may want
to consider a similar approach.

Note - socks5 is important since the proxy opens udp connections for the
content transfer.

ted keller


On Thu, 13 Jan 2000, Jennifer Tippens wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello,
> We are using the fwtk and I was asked to find a RealAudio proxy for our system.
> I downloaded the Real Time Streaming Protocol Proxy reference implimentation.  I
> compiled and "installed" it.  That worked fine, but now how do I configure it for
> use?  I gave it my (several times) best guess and this is what I came up with
> (which doesn't work)
> 
> Added in netperm-table:
> rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd
> 
> Added in /etc/services:
> rtsp:    554/tcp
> 
> Added in inetd.conf:
> rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp
> 
> I have no idea what I'm supposed to do with it-- I have looked everywhere for
> some (anything) information, contacted RealAudio, got on the
> comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
> found nothing except a vague reference on the patches and add-ons page for fwtk
> that says to download the rtspd proxy kit.  Am I even close?  Please help.
> 
> Thank you,
> Jennifer
> 


From owner-fwtk-users@ex.tis.com Thu Jan 13 20:06 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA28154
	Thu, 13 Jan 2000 20:06:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA13964;
	Thu, 13 Jan 2000 17:09:58 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 17:03:11 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA12470
	for fwtk-users-outgoing; Thu, 13 Jan 2000 17:03:09 -0800 (PST)
Message-ID: <01570E7F8223D2119C9A00805F9A267C014710FB@gexchange.gintic.gov.sg>
From: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>
To: fwtk-users@tis.com
Subject: need to know the books on firewall
Date: Fri, 14 Jan 2000 09:02:29 +0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2232.9)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 2469

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi, I would like to find one or two books which systematically introduce the
technology on firewall, or network security and also include good samples
and source codes. I appreciate if someone could give me hints.

huang

	----------
	From:  Ted Keller [SMTP:keller@bfg.com]
	Sent:  Friday, January 14, 2000 8:50 AM
	To:  Jennifer Tippens
	Cc:  fwtk-users@tis.com
	Subject:  Re: RTSP, Realaudio, and fwtk help

	[To be removed from this list send the message "unsubscribe
fwtk-users" in the
	BODY of a mail message to majordomo@ex.tis.com.]

	Jennifer,

	The rstpd reference proxy is just that - a reference proxy.  It does
not
	have the support required for enable/disable connections.  It
permits all
	connections - both inbound and outbound. - not good.

	Modifing this code is a bit tricky - unless you are really good....

	To get around this, I  "socksified" it - and ran it on an internal
server
	- using a socks5 gateway with the connection rules defined.  you may
want
	to consider a similar approach.

	Note - socks5 is important since the proxy opens udp connections for
the
	content transfer.

	ted keller


	On Thu, 13 Jan 2000, Jennifer Tippens wrote:

	> [To be removed from this list send the message "unsubscribe
fwtk-users" in the
	> BODY of a mail message to majordomo@ex.tis.com.]
	> 
	> Hello,
	> We are using the fwtk and I was asked to find a RealAudio proxy
for our system.
	> I downloaded the Real Time Streaming Protocol Proxy reference
implimentation.  I
	> compiled and "installed" it.  That worked fine, but now how do I
configure it for
	> use?  I gave it my (several times) best guess and this is what I
came up with
	> (which doesn't work)
	> 
	> Added in netperm-table:
	> rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd
	> 
	> Added in /etc/services:
	> rtsp:    554/tcp
	> 
	> Added in inetd.conf:
	> rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd
rtsp
	> 
	> I have no idea what I'm supposed to do with it-- I have looked
everywhere for
	> some (anything) information, contacted RealAudio, got on the
	> comp.security.firewalls newsgroup, read a book and I have gotten
nowhere and
	> found nothing except a vague reference on the patches and add-ons
page for fwtk
	> that says to download the rtspd proxy kit.  Am I even close?
Please help.
	> 
	> Thank you,
	> Jennifer
	> 

From owner-fwtk-users@ex.tis.com Fri Jan 14 00:53 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA28764
	Fri, 14 Jan 2000 00:53:44 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA26105;
	Thu, 13 Jan 2000 21:57:05 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 13 Jan 2000 21:52:44 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA25284
	for fwtk-users-outgoing; Thu, 13 Jan 2000 21:52:42 -0800 (PST)
Message-ID: <20000114055235.82614.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: jennifer@surfari.com
Cc: fwtk-users@tis.com
Subject: Re: RTSP, Realaudio, and fwtk help
Date: Fri, 14 Jan 2000 11:22:34 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 1870

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I think you should change your this line in inetd.conf:

rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd rtsp

to

rtsp    stream    tcp    nowait    root    /path/to/netacl    rtsp

It should work. I have not installed it yet, but I intend to. I am a novice 
to FWTK so please correct me if I am mistaken.

Regards,
N.K. Narang


----Original Message Follows----
From: Jennifer Tippens <jennifer@surfari.com>
To: fwtk-users@tis.com
Subject: RTSP, Realaudio, and fwtk help
Date: Thu, 13 Jan 2000 13:20:46 -0600

[To be removed from this list send the message "unsubscribe fwtk-users" in 
the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,
We are using the fwtk and I was asked to find a RealAudio proxy for our 
system.
I downloaded the Real Time Streaming Protocol Proxy reference 
implimentation.  I
compiled and "installed" it.  That worked fine, but now how do I configure 
it for
use?  I gave it my (several times) best guess and this is what I came up 
with
(which doesn't work)

Added in netperm-table:
rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd

Added in /etc/services:
rtsp:    554/tcp

Added in inetd.conf:
rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp

I have no idea what I'm supposed to do with it-- I have looked everywhere 
for
some (anything) information, contacted RealAudio, got on the
comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
found nothing except a vague reference on the patches and add-ons page for 
fwtk
that says to download the rtspd proxy kit.  Am I even close?  Please help.

Thank you,
Jennifer


______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Fri Jan 14 08:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA00369
	Fri, 14 Jan 2000 08:50:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA08622;
	Fri, 14 Jan 2000 05:53:52 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 05:47:08 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA07633
	for fwtk-users-outgoing; Fri, 14 Jan 2000 05:47:02 -0800 (PST)
Message-ID: <E1974B4C097BD211ADEB00105A2689B2269F12@eagle>
From: Toby Schau <Toby.Schau@idob.state.ia.us>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Microsoft Exchange
Date: Fri, 14 Jan 2000 07:46:38 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 281

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello All!

Has anyone out there configured a Microsoft Exchange Server 5.5 behind a TIS
firewall?  How did you go about doing this?


Thank you,

Toby

From owner-fwtk-users@ex.tis.com Fri Jan 14 14:53 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA01755
	Fri, 14 Jan 2000 14:53:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA16894;
	Fri, 14 Jan 2000 11:56:44 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 11:45:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA15078
	for fwtk-users-outgoing; Fri, 14 Jan 2000 11:45:28 -0800 (PST)
From: pazhamalai.raman@wipro.com (Pazhamalai Jayaraman)
To: fwtk-users@tis.com
Subject: SAP connectivity across TIS
X-Mailer: Netscape Messenger Express 3.5.2 [Mozilla/4.7 [en] (X11; I; SunOS 5.6 sun4u)]
Date: Sat, 15 Jan 2000 01:08:36 +0530
Message-ID: <7735C09BEFC.AAA5890@vindhya.wipsys.stph.net>
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 546

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi -

We are contemplating to use SAP software over TIS - FWTK 2.0 which is
running on Linux platform. That is one of our network (in the intranet) is
protected using TIS firewall toolkit software. We had allowed various other
network services  across TIS software. Now we would like to allow SAP
service. Is there any sap-gw available with TIS... Any pointers in this
regard will be highly appreciated. 

TIA








From owner-fwtk-users@ex.tis.com Fri Jan 14 16:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA02095
	Fri, 14 Jan 2000 16:40:48 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA29660;
	Fri, 14 Jan 2000 13:44:01 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 13:37:28 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA27726
	for fwtk-users-outgoing; Fri, 14 Jan 2000 13:37:25 -0800 (PST)
Date: Fri, 14 Jan 2000 16:36:12 -0500
From: Tim Sailer <sailer@sailer.itd.bnl.gov>
To: fwtk-users@tis.com
Subject: NFS proxy
Message-ID: <20000114163612.A23138@bnl.gov>
Mime-Version: 1.0
User-Agent: Mutt/1.0i
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 498

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I know, I know... but we have some real need for mounting a remote
disk to and internal machine at times. Does anyone have such a beast?

Tim

-- 
 (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
                 "Try not. Do, or do not. There is no try."
  -- Yoda
** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**

From owner-fwtk-users@ex.tis.com Fri Jan 14 17:03 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA02172
	Fri, 14 Jan 2000 17:03:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA03576;
	Fri, 14 Jan 2000 14:07:19 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 14:01:42 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA01878
	for fwtk-users-outgoing; Fri, 14 Jan 2000 14:01:40 -0800 (PST)
Message-ID: <45D43EBAE925D211A33308002BE77E294D8091@gamera>
From: Sean Brown <srbrown@appgeo.com>
To: "'Toby Schau'" <Toby.Schau@idob.state.ia.us>,
        "'fwtk-users@ex.tis.com'"
	 <fwtk-users@ex.tis.com>
Subject: RE: Microsoft Exchange
Date: Fri, 14 Jan 2000 17:03:25 -0500
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1032

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Quick answer...use Sendmail to transfer mail between your firewall and the
Exchange Server.  Use smap as your proxy to the internet but let Sendmail
act as your relay mailer to your Exchange Server.  Basically Smap/Sendmail
will act as your bridgehead mailer to/from the Internet.

Sean Brown, System Administrator
Applied Geographics, Inc.
100 Franklin St.
Boston, MA  02110
srbrown@appgeo.com 

> -----Original Message-----
> From: Toby Schau [mailto:Toby.Schau@idob.state.ia.us]
> Sent: Friday, January 14, 2000 8:47 AM
> To: 'fwtk-users@ex.tis.com'
> Subject: Microsoft Exchange
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello All!
> 
> Has anyone out there configured a Microsoft Exchange Server 
> 5.5 behind a TIS
> firewall?  How did you go about doing this?
> 
> 
> Thank you,
> 
> Toby
> 

From owner-fwtk-users@ex.tis.com Fri Jan 14 17:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA02191
	Fri, 14 Jan 2000 17:09:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA05625;
	Fri, 14 Jan 2000 14:12:54 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 14:05:27 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA02868
	for fwtk-users-outgoing; Fri, 14 Jan 2000 14:05:25 -0800 (PST)
Message-Id: <4.2.2.20000114165141.00ae54e0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Fri, 14 Jan 2000 16:53:18 -0500
To: pazhamalai.raman@wipro.com (Pazhamalai Jayaraman), fwtk-users@tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: SAP connectivity across TIS
In-Reply-To: <7735C09BEFC.AAA5890@vindhya.wipsys.stph.net>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 850

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 01:08 AM 1/15/00 +0530, Pazhamalai Jayaraman wrote:
>We are contemplating to use SAP software over TIS - FWTK 2.0 which is
>running on Linux platform. That is one of our network (in the intranet) is
>protected using TIS firewall toolkit software. We had allowed various other
>network services  across TIS software. Now we would like to allow SAP
>service. Is there any sap-gw available with TIS... Any pointers in this
>regard will be highly appreciated.

SAP has a proprietary protocol that they (at least when I worked for TIS) 
refused to share. They have a program they call the "SAP Router" that 
proxies SAP. Only works on a few UNIX platforms. I'm sure they'll be happy 
to sell you a copy :-)
         -Rick


From owner-fwtk-users@ex.tis.com Fri Jan 14 17:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA02194
	Fri, 14 Jan 2000 17:09:41 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA05643;
	Fri, 14 Jan 2000 14:12:57 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 14:05:34 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA02889
	for fwtk-users-outgoing; Fri, 14 Jan 2000 14:05:27 -0800 (PST)
Message-Id: <4.2.2.20000114165322.00ad9a60@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Fri, 14 Jan 2000 16:57:55 -0500
To: Tim Sailer <sailer@sailer.itd.bnl.gov>, fwtk-users@tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: NFS proxy
In-Reply-To: <20000114163612.A23138@bnl.gov>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 701

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 04:36 PM 1/14/00 -0500, Tim Sailer wrote:
>I know, I know... but we have some real need for mounting a remote
>disk to and internal machine at times. Does anyone have such a beast?
Typical NFS involves TCP and UDP services and several ports. You can 
probably use plug-gw for the portmapper; if you can use TCP rather than UDP 
for the NFS data, you might be able to cobble something together but it 
won't be pretty.

There are commercial firewalls that support NFS. Maybe they've figured out 
a way to do this securely (unlikely, but you never know.)
         -Rick


From owner-fwtk-users@ex.tis.com Fri Jan 14 17:22 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA02265
	Fri, 14 Jan 2000 17:22:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA09379;
	Fri, 14 Jan 2000 14:25:25 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 14:19:51 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA07905
	for fwtk-users-outgoing; Fri, 14 Jan 2000 14:19:49 -0800 (PST)
Date: Fri, 14 Jan 2000 16:20:00 -0600 (CST)
From: "Tim O'Brien" <Tim.OBrien@vmic.com>
To: fwtk-users@tis.com
Subject: Logging/Traffic analysis software
Message-ID: <Pine.LNX.3.96.1000114161722.29399B-100000@torvalds.eng.vmic.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 552

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Does anyone know offhand of a readily available software package that can
read/analyze TIS logs? I just don't have time to write a program to do it,
and would rather not re-invent the wheel (in the event that the wheel
already exists). 

Thanks!

Tim O'Brien, Network Administrator
--
VMIC IT Department
12090 S. Memorial Parkway
Bldg 2, Network Services 
Huntsville, AL 35803
(256)-382-8252
<mailto:tim.obrien@vmic.com>



From owner-fwtk-users@ex.tis.com Fri Jan 14 18:18 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA02401
	Fri, 14 Jan 2000 18:18:14 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA15771;
	Fri, 14 Jan 2000 15:21:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 15:18:12 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA14803
	for fwtk-users-outgoing; Fri, 14 Jan 2000 15:18:11 -0800 (PST)
Message-ID: <387FAD3E.F57CA4BA@surfari.com>
Date: Fri, 14 Jan 2000 17:11:58 -0600
From: Jennifer Tippens <jennifer@surfari.com>
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.13 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: Ted Keller <keller@bfg.com>, fwtk-users@tis.com
Subject: Re: RTSP, Realaudio, and fwtk help
References: <Pine.GSO.4.10.10001141651150.1286-100000@ns1.bfg.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2656

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

OK,  to use it as is, which I do understand is not recommended, I remove entry from
inetd.conf and /etc/services.  And I leave the entry in netperm-table, then run
it?  From a startup script?
-Jennifer

Ted Keller wrote:

> This solution will not work.  The real audio proxy must run in daemon
> mode.  Running it from netacl - or from inedt will not work.
>
> ted keller - bfg.com
>
> On Fri, 14 Jan 2000, Naresh Narang wrote:
>
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > I think you should change your this line in inetd.conf:
> >
> > rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd rtsp
> >
> > to
> >
> > rtsp    stream    tcp    nowait    root    /path/to/netacl    rtsp
> >
> > It should work. I have not installed it yet, but I intend to. I am a novice
> > to FWTK so please correct me if I am mistaken.
> >
> > Regards,
> > N.K. Narang
> >
> >
> > ----Original Message Follows----
> > From: Jennifer Tippens <jennifer@surfari.com>
> > To: fwtk-users@tis.com
> > Subject: RTSP, Realaudio, and fwtk help
> > Date: Thu, 13 Jan 2000 13:20:46 -0600
> >
> > [To be removed from this list send the message "unsubscribe fwtk-users" in
> > the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > Hello,
> > We are using the fwtk and I was asked to find a RealAudio proxy for our
> > system.
> > I downloaded the Real Time Streaming Protocol Proxy reference
> > implimentation.  I
> > compiled and "installed" it.  That worked fine, but now how do I configure
> > it for
> > use?  I gave it my (several times) best guess and this is what I came up
> > with
> > (which doesn't work)
> >
> > Added in netperm-table:
> > rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd
> >
> > Added in /etc/services:
> > rtsp:    554/tcp
> >
> > Added in inetd.conf:
> > rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp
> >
> > I have no idea what I'm supposed to do with it-- I have looked everywhere
> > for
> > some (anything) information, contacted RealAudio, got on the
> > comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
> > found nothing except a vague reference on the patches and add-ons page for
> > fwtk
> > that says to download the rtspd proxy kit.  Am I even close?  Please help.
> >
> > Thank you,
> > Jennifer
> >
> >
> > ______________________________________________________
> > Get Your Private, Free Email at http://www.hotmail.com
> >


From owner-fwtk-users@ex.tis.com Fri Jan 14 18:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA02414
	Fri, 14 Jan 2000 18:27:10 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA17897;
	Fri, 14 Jan 2000 15:30:31 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 15:27:30 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA16935
	for fwtk-users-outgoing; Fri, 14 Jan 2000 15:27:23 -0800 (PST)
From: Bernard_Lee@Raytheon.com
Subject: Automating authsrv admin
To: fwtk-users@tis.com
Date: Fri, 14 Jan 2000 15:26:51 -0800
Message-ID: <OF2E3FE403.EDE40DFF-ON88256866.008053C7@ray.ca>
X-MIMETrack: Serialize by Router on RESMAIL70/SRV/Raytheon/CA(Release 5.0.2b |December
 16, 1999) at 01/14/2000 03:26:52 PM
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 487

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I wonder how I can write a script to automate administering user accounts with
authsrv.  For example, I would like to have a script called CreateUser to do:

#CreateUser "ABC" "Alan B. Case"

which does the following for me.

authsrv#add ABC "Alan B. Case"
authsrv#group ABC "Group Default"
authsrv#proto ABC SecurID
authsrv#enable ABC

Thanks
Bernard


From owner-fwtk-users@ex.tis.com Fri Jan 14 19:06 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA02534
	Fri, 14 Jan 2000 19:06:20 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA22204;
	Fri, 14 Jan 2000 16:09:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 16:06:28 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA21321
	for fwtk-users-outgoing; Fri, 14 Jan 2000 16:06:26 -0800 (PST)
Message-ID: <20000115000657.28684.qmail@web107.yahoomail.com>
Date: Fri, 14 Jan 2000 16:06:57 -0800 (PST)
From: Rude Yak <rudeyak@yahoo.com>
Subject: Re: SAP connectivity across TIS
To: fwtk-users@ex.tis.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 397

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


  Has anyone been able to do analysis on SAPRouter to determine whether there
are any exposures in just pointing plug-gw at it?  
__________________________________________________
Do You Yahoo!?
Talk to your friends online with Yahoo! Messenger.
http://im.yahoo.com

From owner-fwtk-users@ex.tis.com Fri Jan 14 19:52 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA02618
	Fri, 14 Jan 2000 19:52:40 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA25969;
	Fri, 14 Jan 2000 16:56:02 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 14 Jan 2000 16:52:22 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA25181
	for fwtk-users-outgoing; Fri, 14 Jan 2000 16:52:21 -0800 (PST)
Message-ID: <01570E7F8223D2119C9A00805F9A267C0147110F@gexchange.gintic.gov.sg>
From: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>
To: fwtk-users@ex.tis.com
Subject: books and references on network performance analysis
Date: Sat, 15 Jan 2000 08:51:39 +0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2232.9)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 263

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Could any friend recommend a book to me on network performance analysis
including routing, data flow calculating, load balance, etc.?

From owner-fwtk-users@ex.tis.com Sat Jan 15 05:16 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA03497
	Sat, 15 Jan 2000 05:16:51 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA07742;
	Sat, 15 Jan 2000 02:20:14 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 15 Jan 2000 02:14:37 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA06955
	for fwtk-users-outgoing; Sat, 15 Jan 2000 02:14:36 -0800 (PST)
Message-ID: <000701bf5f41$6b803320$6ac8bdc3@witt>
From: "Carsten Witt" <cw-news@gmx.de>
To: "fwtk-mailinglist" <fwtk-users@lists.nai.com>
Subject: tis & socks5
Date: Sat, 15 Jan 2000 11:15:15 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2014.211
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2014.211
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 272

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

 Hello anybody,

one question : Is there a way to work on socks 5 with the user/password from
the TIS ( AUTHSRV ) ?

Thanks

CU
     Carsten



From owner-fwtk-users@ex.tis.com Sat Jan 15 18:17 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA04965
	Sat, 15 Jan 2000 18:17:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA20504;
	Sat, 15 Jan 2000 15:20:56 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 15 Jan 2000 15:12:42 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA19661
	for fwtk-users-outgoing; Sat, 15 Jan 2000 15:12:40 -0800 (PST)
Message-ID: <000b01bf5fae$0eee26e0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Subject: Running JunkBuster with FWTK
Date: Sat, 15 Jan 2000 18:12:55 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 359

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I want to install JunkBuster on my OpenBSD firewall running FWTK.

Any suggestions for installing it transparently so I don't have to change my
browser settings?


Thanks In Advance,

Larry Jackson
Falun Technical Services, Inc.


From owner-fwtk-users@ex.tis.com Sat Jan 15 18:33 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA05021
	Sat, 15 Jan 2000 18:33:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA22269;
	Sat, 15 Jan 2000 15:36:58 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 15 Jan 2000 15:33:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA21420
	for fwtk-users-outgoing; Sat, 15 Jan 2000 15:33:02 -0800 (PST)
Message-ID: <000f01bf5fb0$eb6aefc0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: <khanduja@mahindrabt.com>, <fwtk-users@ex.tis.com>
References: <38756917.D074B4DA@mahindrabt.com>
Subject: Re: content-filtering...
Date: Sat, 15 Jan 2000 18:33:24 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 923

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

What kind of filtering are you looking for?

For Ads look at junkbuster.com.

For email filtering and anti-spam look at the blackhole lists and blackmail
http://ftp.bitgate.com/blackmail/blackmail-0.30.1.tar.gz
or other mail filtering software available via
http://email.miningco.com/internet/email/msub16.htm

----- Original Message -----
From: Rajesh Khanduja <khanduja@mahindrabt.com>
To: <fwtk-users@ex.tis.com>
Sent: Thursday, January 06, 2000 11:18 PM
Subject: content-filtering...


> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Hi
>
> I am using fwtk. I would like to implement content-filtering on emails,
> http.
> Ideas on how to achieve this would be appreciated.
>
> Cheers,
> Rajesh
>
>
>


From owner-fwtk-users@ex.tis.com Mon Jan 17 05:47 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA09290
	Mon, 17 Jan 2000 05:47:47 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA05213;
	Mon, 17 Jan 2000 02:51:10 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 02:39:41 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA03705
	for fwtk-users-outgoing; Mon, 17 Jan 2000 02:39:35 -0800 (PST)
From: ark@eltex.ru
Date: Mon, 17 Jan 2000 13:34:04 +0300
Message-Id: <200001171034.NAA25052@paranoid.eltex.spb.ru>
In-Reply-To: <OF2E3FE403.EDE40DFF-ON88256866.008053C7@ray.ca> from "Bernard_Lee@Raytheon.com"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: Automating authsrv admin
To: Bernard_Lee@Raytheon.com
Cc: fwtk-users@tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1210

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

auth/authadduser.sh

Bernard_Lee@Raytheon.com said :


> I wonder how I can write a script to automate administering user accounts with
> authsrv.  For example, I would like to have a script called CreateUser to do:
> 
> #CreateUser "ABC" "Alan B. Case"
> 
> which does the following for me.
> 
> authsrv#add ABC "Alan B. Case"
> authsrv#group ABC "Group Default"
> authsrv#proto ABC SecurID
> authsrv#enable ABC
> 
> Thanks
> Bernard
> 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOILwGqH/mIJW9LeBAQGEngP/ZmKao/trxInvja/yVlaDQyrNT833Ov1p
MQd2x7HYNZNCBamdddV680tgK011RgC/BTKMEPkrtu0hsbnMazrLByI46r2dqPvG
/lrjQSP0lIYR9RSDrqtB3BF/UmnjuCIzN8TSXljCMyfoXpHXOUfyk98bEWtMyjke
CAr2xdfVDhI=
=/jxe
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Mon Jan 17 06:00 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA09339
	Mon, 17 Jan 2000 06:00:33 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA07607;
	Mon, 17 Jan 2000 03:03:57 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 02:59:01 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA06363
	for fwtk-users-outgoing; Mon, 17 Jan 2000 02:58:58 -0800 (PST)
From: ark@eltex.ru
Date: Mon, 17 Jan 2000 13:54:31 +0300
Message-Id: <200001171054.NAA25122@paranoid.eltex.spb.ru>
In-Reply-To: <000701bf5f41$6b803320$6ac8bdc3@witt> from ""Carsten Witt" <cw-news@gmx.de>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: tis & socks5
To: cw-news@gmx.de
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1166

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

Socks protocol sends password in cleartext if you do not use kerberos
(just FYI)

"Carsten Witt" <cw-news@gmx.de> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
>  Hello anybody,
> 
> one question : Is there a way to work on socks 5 with the user/password from
> the TIS ( AUTHSRV ) ?
> 
> Thanks


                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOIL05qH/mIJW9LeBAQGxxQP/bvZjkj4cow7f4Oz0lpXi9UxkeQmLI1QK
hjrJXqfgzvdhwCCRewgg+8optyEq61feCZiU+DzQEyIgta+CmBux5dXvAvqh8tVQ
XvrTf/EEt39KVkuvhPdbDWMaNzQXkzx0oImp9fYxN3c6UOrRbyYhR7l2xKUyN3aU
1iddV9LEhSw=
=N/fE
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Mon Jan 17 10:30 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA10375
	Mon, 17 Jan 2000 10:30:40 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA18749;
	Mon, 17 Jan 2000 07:34:04 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 07:30:37 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA17850
	for fwtk-users-outgoing; Mon, 17 Jan 2000 07:30:35 -0800 (PST)
Date: Mon, 17 Jan 2000 10:29:36 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Jennifer Tippens <jennifer@surfari.com>
cc: fwtk-users@tis.com
Subject: Re: RTSP, Realaudio, and fwtk help
In-Reply-To: <387FAD3E.F57CA4BA@surfari.com>
Message-ID: <Pine.GSO.4.10.10001170958001.22975-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2966

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jennifer,

Sorry, I've been out for a few days.  Yes - just run it from your startup
script.

ted keller


On Fri, 14 Jan 2000, Jennifer Tippens wrote:

> OK,  to use it as is, which I do understand is not recommended, I remove entry from
> inetd.conf and /etc/services.  And I leave the entry in netperm-table, then run
> it?  From a startup script?
> -Jennifer
> 
> Ted Keller wrote:
> 
> > This solution will not work.  The real audio proxy must run in daemon
> > mode.  Running it from netacl - or from inedt will not work.
> >
> > ted keller - bfg.com
> >
> > On Fri, 14 Jan 2000, Naresh Narang wrote:
> >
> > > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > > BODY of a mail message to majordomo@ex.tis.com.]
> > >
> > > I think you should change your this line in inetd.conf:
> > >
> > > rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd rtsp
> > >
> > > to
> > >
> > > rtsp    stream    tcp    nowait    root    /path/to/netacl    rtsp
> > >
> > > It should work. I have not installed it yet, but I intend to. I am a novice
> > > to FWTK so please correct me if I am mistaken.
> > >
> > > Regards,
> > > N.K. Narang
> > >
> > >
> > > ----Original Message Follows----
> > > From: Jennifer Tippens <jennifer@surfari.com>
> > > To: fwtk-users@tis.com
> > > Subject: RTSP, Realaudio, and fwtk help
> > > Date: Thu, 13 Jan 2000 13:20:46 -0600
> > >
> > > [To be removed from this list send the message "unsubscribe fwtk-users" in
> > > the
> > > BODY of a mail message to majordomo@ex.tis.com.]
> > >
> > > Hello,
> > > We are using the fwtk and I was asked to find a RealAudio proxy for our
> > > system.
> > > I downloaded the Real Time Streaming Protocol Proxy reference
> > > implimentation.  I
> > > compiled and "installed" it.  That worked fine, but now how do I configure
> > > it for
> > > use?  I gave it my (several times) best guess and this is what I came up
> > > with
> > > (which doesn't work)
> > >
> > > Added in netperm-table:
> > > rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd
> > >
> > > Added in /etc/services:
> > > rtsp:    554/tcp
> > >
> > > Added in inetd.conf:
> > > rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp
> > >
> > > I have no idea what I'm supposed to do with it-- I have looked everywhere
> > > for
> > > some (anything) information, contacted RealAudio, got on the
> > > comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
> > > found nothing except a vague reference on the patches and add-ons page for
> > > fwtk
> > > that says to download the rtspd proxy kit.  Am I even close?  Please help.
> > >
> > > Thank you,
> > > Jennifer
> > >
> > >
> > > ______________________________________________________
> > > Get Your Private, Free Email at http://www.hotmail.com
> > >
> 


From owner-fwtk-users@ex.tis.com Mon Jan 17 20:32 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA12580
	Mon, 17 Jan 2000 20:32:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA24196;
	Mon, 17 Jan 2000 17:35:35 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 17:31:11 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA23092
	for fwtk-users-outgoing; Mon, 17 Jan 2000 17:31:08 -0800 (PST)
From: rhanouse@precisionvalve.com.au
Message-Id: <0001189481.AA948159018@internet-mail.precisionvalve.com.au>
X-Mailer: ccMail Link to SMTP R8.11.00.3
Date: Tue, 18 Jan 2000 11:38:17 +1000
To: <fwtk-users@ex.tis.com>
Subject: Aol Instant messager 
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Description: "cc:Mail Note Part"
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=ISO-8859-1
Content-Length: 327

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]





Help. How do I let Aol Instant messager through the FWTK. 
I have followed the instructions in the FWTK FAQ for the Aol Client.  The only
thing i get is connection interrupted..

Thanks Roman



From owner-fwtk-users@ex.tis.com Tue Jan 18 01:25 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id BAA13294
	Tue, 18 Jan 2000 01:25:23 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id WAA15035;
	Mon, 17 Jan 2000 22:28:47 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 22:25:28 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA14169
	for fwtk-users-outgoing; Mon, 17 Jan 2000 22:25:27 -0800 (PST)
From: doctor@fruitbat.org
Message-Id: <200001180632.WAA25623@gremlin.fruitbat.org>
Subject: Re: Aol Instant messager
To: rhanouse@precisionvalve.com.au
Date: Mon, 17 Jan 2000 22:32:04 -0800 (PST)
Cc: fwtk-users@ex.tis.com
In-Reply-To: <0001189481.AA948159018@internet-mail.precisionvalve.com.au> from "rhanouse@precisionvalve.com.au" at Jan 18, 2000 11:38:17 AM
X-Mailer: ELM [version 2.5 PL1]
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 568

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

rhanouse@precisionvalve.com.au said ...
> 
> Help. How do I let Aol Instant messager through the FWTK. 
> I have followed the instructions in the FWTK FAQ for the Aol Client.  The only
> thing i get is connection interrupted..

I've never really gotten it to work using plug-gw.  Instead, I've
installed socks and configured AIM to use the socks proxy.

> Thanks Roman

-- 
Peter A. Castro (doctor@fruitbat.org) or (pcastro@us.oracle.com)

From owner-fwtk-users@ex.tis.com Tue Jan 18 02:25 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA13371
	Tue, 18 Jan 2000 02:25:43 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA17782;
	Mon, 17 Jan 2000 23:29:06 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 23:26:36 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id XAA17009
	for fwtk-users-outgoing; Mon, 17 Jan 2000 23:26:35 -0800 (PST)
Message-ID: <20000118072640.68035.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: fwtk-users@tis.com
Subject: RSTP or RA proxy?
Date: Tue, 18 Jan 2000 12:56:40 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 419

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

The site real.com has two proxies:

RSTP and RA Proxy.

I have not gone into details, If anyone knows which one to use for which 
purpose please let me know.

Thanks

N.K. Narang
______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Tue Jan 18 02:30 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA13390
	Tue, 18 Jan 2000 02:30:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA19294;
	Mon, 17 Jan 2000 23:33:32 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 17 Jan 2000 23:30:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id XAA18276
	for fwtk-users-outgoing; Mon, 17 Jan 2000 23:30:43 -0800 (PST)
Date: Mon, 17 Jan 2000 23:30:59 -0800 (PST)
From: "Philip J. Hollenback" <phil@veridicom.com>
X-Sender: phil@dweezil.punkle.org
To: Naresh Narang <nareshnarang@hotmail.com>
cc: fwtk-users@tis.com
Subject: Re: RSTP or RA proxy?
In-Reply-To: <20000118072640.68035.qmail@hotmail.com>
Message-ID: <Pine.LNX.4.10.10001172330140.1688-100000@dweezil.punkle.org>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 798

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

There are two proxies because Real changed their protocol between
versions 5 and 6 (G2).

thus, if you want to fully support real audio, etc, you must run both
proxies.

P.

On Tue, 18 Jan 2000, Naresh Narang wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> The site real.com has two proxies:
> 
> RSTP and RA Proxy.
> 
> I have not gone into details, If anyone knows which one to use for which 
> purpose please let me know.
> 
> Thanks
> 
> N.K. Narang
> ______________________________________________________
> Get Your Private, Free Email at http://www.hotmail.com
> 


From owner-fwtk-users@ex.tis.com Tue Jan 18 07:10 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA14026
	Tue, 18 Jan 2000 07:10:26 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA16686;
	Tue, 18 Jan 2000 04:13:42 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 04:06:08 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA15660
	for fwtk-users-outgoing; Tue, 18 Jan 2000 04:06:06 -0800 (PST)
Message-ID: <005201bf61ac$bdb52de0$3300000a@intra.upper.com.br>
From: "Aristeu Gil Alves Junior" <aristeu@upper.com.br>
To: "Fwtk-Users" <fwtk-users@ex.tis.com>
Subject: RE: Aol Instant messager
Date: Tue, 18 Jan 2000 10:08:21 -0200
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1775

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This was an issue that I solved in the list for nntp. It applies for any
other service.
The problem you are having is caused by the fwtk documentation outdated.

--
Aristeu Gil Alves Júnior<aristeu@upper.com.br>
Upper Comunicação Global Ltda.
Porto Alegre/RS - Brasil
http://www.upper.com.br

-----Original Message-----

> I Believe that the syntax is
>
>     nntp:port nntp 192.168.117.* -plug-to 195.206.40.177 -port nntp
>
> The syntax that you made is for earlier versions - not 2.1.
> I had this problem in the begining (all documentation on the internet
shows
> the earlier syntax) and that was the answer - you got to use "service
name:"
> on the netperm-table instead of "plug-gw:".
>
> --
> Aristeu Gil Alves Júnior<aristeu@upper.com.br>
> Upper Comunicação Global
> http://www.upper.com.br
> -----Mensagem original-----
> De: hedin@wizcom.ru <hedin@wizcom.ru>
> Para: Jean Caron <caronj@norac.net>
> Cc: fwtk-users@ex.tis.com <fwtk-users@ex.tis.com>
> Data: Quarta-feira, 21 de Julho de 1999 03:08
> Assunto: Re: plug-gw
>
>
> >[To be removed from this list send the message "unsubscribe fwtk-users"
in
> the
> >BODY of a mail message to majordomo@ex.tis.com.]
> >
> >On Tue, 20 Jul 1999, Jean Caron wrote:
> >> What do I need in NETPERM-TABLE in order to be able to read newsgroups
?
> >>
> >> I am running FWTK 2.1 on Linux 2.0.35 without problems.
> >>
> >> I believe I should use plug-gw, but I have never used it before...
> >
> >Use something like that:
> >
> >plug-gw:port nntp 192.168.117.* -plug-to 195.206.40.177 -port nntp
> >
> >---
> >Victor Alekhin, Irkutsk, Russia
> >phone:(+7-3952)-328585 e-mail:hedin@wizcom.ru
> >
>


From owner-fwtk-users@ex.tis.com Tue Jan 18 07:38 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA14084
	Tue, 18 Jan 2000 07:38:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA19326;
	Tue, 18 Jan 2000 04:41:59 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 04:39:36 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA18493
	for fwtk-users-outgoing; Tue, 18 Jan 2000 04:39:35 -0800 (PST)
From: ark@eltex.ru
Date: Tue, 18 Jan 2000 15:33:09 +0300
Message-Id: <200001181233.PAA31971@paranoid.eltex.spb.ru>
In-Reply-To: <005201bf61ac$bdb52de0$3300000a@intra.upper.com.br> from ""Aristeu Gil Alves Junior" <aristeu@upper.com.br>"
Organization: "Klingon Imperial Intelligence Service"
Subject: RE: Aol Instant messager
To: aristeu@upper.com.br
Cc: fwtk-users@ex.tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 2870

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

There is nntp-gw on www.fwtk.org.
There are some security issues with AOL. I remember somebody posted aol-gw
here that solved some problems.


"Aristeu Gil Alves Junior" <aristeu@upper.com.br> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> This was an issue that I solved in the list for nntp. It applies for any
> other service.
> The problem you are having is caused by the fwtk documentation outdated.
> 
> --
> Aristeu Gil Alves Júnior<aristeu@upper.com.br>
> Upper Comunicação Global Ltda.
> Porto Alegre/RS - Brasil
> http://www.upper.com.br
> 
> -----Original Message-----
> 
> > I Believe that the syntax is
> >
> >     nntp:port nntp 192.168.117.* -plug-to 195.206.40.177 -port nntp
> >
> > The syntax that you made is for earlier versions - not 2.1.
> > I had this problem in the begining (all documentation on the internet
> shows
> > the earlier syntax) and that was the answer - you got to use "service
> name:"
> > on the netperm-table instead of "plug-gw:".
> >
> > --
> > Aristeu Gil Alves Júnior<aristeu@upper.com.br>
> > Upper Comunicação Global
> > http://www.upper.com.br
> > -----Mensagem original-----
> > De: hedin@wizcom.ru <hedin@wizcom.ru>
> > Para: Jean Caron <caronj@norac.net>
> > Cc: fwtk-users@ex.tis.com <fwtk-users@ex.tis.com>
> > Data: Quarta-feira, 21 de Julho de 1999 03:08
> > Assunto: Re: plug-gw
> >
> >
> > >[To be removed from this list send the message "unsubscribe fwtk-users"
> in
> > the
> > >BODY of a mail message to majordomo@ex.tis.com.]
> > >
> > >On Tue, 20 Jul 1999, Jean Caron wrote:
> > >> What do I need in NETPERM-TABLE in order to be able to read newsgroups
> ?
> > >>
> > >> I am running FWTK 2.1 on Linux 2.0.35 without problems.
> > >>
> > >> I believe I should use plug-gw, but I have never used it before...
> > >
> > >Use something like that:
> > >
> > >plug-gw:port nntp 192.168.117.* -plug-to 195.206.40.177 -port nntp
> > >
> > >---
> > >Victor Alekhin, Irkutsk, Russia
> > >phone:(+7-3952)-328585 e-mail:hedin@wizcom.ru
> > >
> >
> 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOIRdg6H/mIJW9LeBAQEHswP+Kg81RhHWEfz7X/aJ1QbW8lLnnnjvM58r
AXTVvtxsRyU/BozuxGsiTk7R6oP8VcmO/+0qn9qaIPw3JbININgqIm8DUWOcLoA6
Cli+KkhdFGi33E0juBlF6Td/nTi++tD2VGYxDN1sK6eKqK/wzepwxEoQFQEWJTuf
i0+Km8Y3KyE=
=bweZ
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Tue Jan 18 08:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA14276
	Tue, 18 Jan 2000 08:41:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA24004;
	Tue, 18 Jan 2000 05:44:53 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 05:41:15 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA23031
	for fwtk-users-outgoing; Tue, 18 Jan 2000 05:41:13 -0800 (PST)
Message-ID: <1A2B916673DFD211ABC700805FA7AA6896129B@MSX11002>
From: "Lidgate, Chris A" <lidgaca@texaco.com>
To: fwtk-users@tis.com,
        "'pazhamalai.raman@wipro.com'"
	 <pazhamalai.raman@wipro.com>
Subject: RE: SAP connectivity across TIS
Date: Tue, 18 Jan 2000 07:39:56 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 4054

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I'm sorry I've been away on holiday so couldn't reply to this
sooner.

We needed to do something similar, and I spent a few days 
digging to get it working.

Our set up was a follows

                                     << Public network DMZ >>
                                     << 101.102.103.x / 24 >>
    <<   Private network    >>
    <<   10.200.200.x / 24  >>

     +---------+                           +---------+
     |         |                           |         |
     |  SAP-1  |                           | APP-SER |
     |         |                           |         |
     +----+----+              +-----+      +----+----+
          | 10                |  F  |           | 2
          |                1  |  W  | 1         |
    ------+--------+----------+  T  +-----------+-------------
                   |          |  K  |
                   | 11       |     |
              +----+----+     +-----+
              |         |
              |  SAP-2  |
              |         |
              +---------+

ie app-ser.foo.com = 101.102.103.2
   fwtk.foo.com = 101.102.103.1 & 10.200.200.1
   sap-1.foo.com = 10.200.200.10
   sap-2.foo.com = 10.200.200.11

Our requirement was to run a web application on app-ser, that would
use some SAP BAPI COM object library to talk to a BAPI process on 
the SAP server SAP-1 inside our firewall, however for testing purposes
I put the entire SAP front end onto app-ser, and ran the entire SAP
applications suite for a time through the firewall.

The problem is that when setting up a SAP session to run on app-ser,
the SAP initialization passes the ip address of the client (in this 
case app-ser - 101.102.103.2) to the SAP server, then the SAP server 
tries to open up a port to this ip address. With a proxy firewall, 
this has to fail, as the ip address 101.102.103.2 is invalid on the
private network (well, there should be 'not route to host' anyway).

The only way we were able to get the SAP front end to work from our
external machine was to use a SAProuter process on another internal 
SAP server (in this case sap-2). Our SAP db admin set this up, and 
gave me the 'magic' connection string to use. The setup for fwtk 
was then something like ...

in services

    ...
    #
    sapdp99         3299/tcp                # sap router 
    #

in inetd.conf

    ...
    #
    sapdp99 stream tcp   nowait  root  /usr/local/etc/plug-gw plug-gw
sapdp99
    #

in netperm-table

    #
    sapdp99:      timeout 1000
    sapdp99:      port sapdp99 101.102.103.2 -plug-to 10.200.200.11 -port
sapdp99
    #

I seem to remember it was important to keep the timeout value large ish
as this was an interactive session, and otherwise the session could drop 
between screen re-freshes.

For our use of the BAPI COM object library, we did not need to use 
SAP router, as the connection object used by this library did not
require it. If anybody is interested in this, we could probably best 
continue the discussion by email, as I don't know much about the
library in question, and I would need to 'rope in' the application 
programmer who worked on the problem for us.




Chris Lidgate.




> ----------
> From: 	pazhamalai.raman@wipro.com[SMTP:pazhamalai.raman@wipro.com]
> Sent: 	14 January 2000 19:38
> To: 	fwtk-users@tis.com
> Subject: 	SAP connectivity across TIS
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi -
> 
> We are contemplating to use SAP software over TIS - FWTK 2.0 which is
> running on Linux platform. That is one of our network (in the intranet) is
> protected using TIS firewall toolkit software. We had allowed various
> other
> network services  across TIS software. Now we would like to allow SAP
> service. Is there any sap-gw available with TIS... Any pointers in this
> regard will be highly appreciated. 
> 
> TIA
> 
> 
> 
> 
> 
> 
> 

From owner-fwtk-users@ex.tis.com Tue Jan 18 09:11 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14456
	Tue, 18 Jan 2000 09:11:07 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA29375;
	Tue, 18 Jan 2000 06:14:30 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:07:01 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA26183
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:06:59 -0800 (PST)
Message-ID: <XFMail.000117100346.mm@i.cz>
X-Mailer: XFMail 1.3 [p0] on FreeBSD
X-Priority: 3 (Normal)
Content-Transfer-Encoding: 8bit
MIME-Version: 1.0
In-Reply-To: <4.2.2.20000114165141.00ae54e0@mail.itm-inst.com>
Date: Mon, 17 Jan 2000 10:03:46 +0100 (MET)
Reply-To: mm@i.cz
From: Martin Machacek <mm@i.cz>
To: fwtk-users@tis.com
Subject: Re: SAP connectivity across TIS
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-2
Content-Length: 2088

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


On 14-Jan-00 Rick Murphy wrote:
> [To be removed from this list send the message "unsubscribe fwtk-users" in
> SAP has a proprietary protocol that they (at least when I worked for TIS) 
> refused to share. They have a program they call the "SAP Router" that 
> proxies SAP. Only works on a few UNIX platforms. I'm sure they'll be happy 
> to sell you a copy :-)

You do not need to use SAP Router. Both access from your site to SAP OSS and
from SAP OSS to your site can be easily proxied using plug-gw. All
communication is over simple TCP connections on well-known ports. Somewhere
in my deep folders I have complete list of all ports that could be use by I
cannot find it righ now. Nevertheless, I've found out that for access
to and from SAP OSS single plug-gw on port 3299 is sufficient. So you should put
something like this into you netperm-table:

# SAP Proxy
#----------
sap-gw: port 3299 <your internal address> -plug-to <SAP OSS address> -port 3299

(you can eventually add reverse line to allow connection from SAP OSS to you
site, like this:

sap-gw: port 3299 <SAP OSS address> -plug-to <your internal address> -port 3299)

and something like this into your startup script:

plug-gw -as sap-gw -daemon 3299 3299

or something like this into you inetd.conf (if you're starting proxies through
inetd):

sap stream tcp nowait nobody  /usr/local/libexec/plug-gw plug-gw -as sap-gw 3299

and for the inetd setup to work you will have to add line for sap into your
/etc/services, something like this:

sap  3299/tcp

It works fine for me and for couple of our clients, however the above
configuration was taken from Gauntlet and to say true I've never tried it with
FWTK but I don't see any reason why it should not work. It's just a simple plug.
You should ask SAP for the address that you should use to access SAP OSS. In
our case it was 147.204.2.5.



        Martin 

---
[PGP KeyID F3F409C4]

------------- End Forwarded Message -------------



From owner-fwtk-users@ex.tis.com Tue Jan 18 09:11 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14464
	Tue, 18 Jan 2000 09:11:16 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA29457;
	Tue, 18 Jan 2000 06:14:39 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:07:01 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA26182
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:06:59 -0800 (PST)
Date: Fri, 14 Jan 2000 16:53:06 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Naresh Narang <nareshnarang@hotmail.com>
cc: jennifer@surfari.com, fwtk-users@tis.com
Subject: Re: RTSP, Realaudio, and fwtk help
In-Reply-To: <20000114055235.82614.qmail@hotmail.com>
Message-ID: <Pine.GSO.4.10.10001141651150.1286-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2326

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This solution will not work.  The real audio proxy must run in daemon
mode.  Running it from netacl - or from inedt will not work. 

ted keller - bfg.com


On Fri, 14 Jan 2000, Naresh Narang wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I think you should change your this line in inetd.conf:
> 
> rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd rtsp
> 
> to
> 
> rtsp    stream    tcp    nowait    root    /path/to/netacl    rtsp
> 
> It should work. I have not installed it yet, but I intend to. I am a novice 
> to FWTK so please correct me if I am mistaken.
> 
> Regards,
> N.K. Narang
> 
> 
> ----Original Message Follows----
> From: Jennifer Tippens <jennifer@surfari.com>
> To: fwtk-users@tis.com
> Subject: RTSP, Realaudio, and fwtk help
> Date: Thu, 13 Jan 2000 13:20:46 -0600
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in 
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello,
> We are using the fwtk and I was asked to find a RealAudio proxy for our 
> system.
> I downloaded the Real Time Streaming Protocol Proxy reference 
> implimentation.  I
> compiled and "installed" it.  That worked fine, but now how do I configure 
> it for
> use?  I gave it my (several times) best guess and this is what I came up 
> with
> (which doesn't work)
> 
> Added in netperm-table:
> rtsp: permit-hosts 192.168.1.* -exec /usr/local/sbin/rtspd
> 
> Added in /etc/services:
> rtsp:    554/tcp
> 
> Added in inetd.conf:
> rtsp    stream    tcp    nowait    root    /usr/local/sbin/rtspd    rtsp
> 
> I have no idea what I'm supposed to do with it-- I have looked everywhere 
> for
> some (anything) information, contacted RealAudio, got on the
> comp.security.firewalls newsgroup, read a book and I have gotten nowhere and
> found nothing except a vague reference on the patches and add-ons page for 
> fwtk
> that says to download the rtspd proxy kit.  Am I even close?  Please help.
> 
> Thank you,
> Jennifer
> 
> 
> ______________________________________________________
> Get Your Private, Free Email at http://www.hotmail.com
> 



From owner-fwtk-users@ex.tis.com Tue Jan 18 09:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14478
	Tue, 18 Jan 2000 09:12:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA00048;
	Tue, 18 Jan 2000 06:16:01 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:08:08 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA26648
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:08:02 -0800 (PST)
From: Penty Wenngren <penty@nst.graphium.se>
Reply-To: penty@nst.graphium.se
Organization: Graphium Norstedts Tryckeri AB
To: fwtk-users@ex.tis.com
Subject: Re: Aol Instant messager
Date: Tue, 18 Jan 2000 12:20:15 +0100
X-Mailer: KMail [version 1.0.28]
References: <0001189481.AA948159018@internet-mail.precisionvalve.com.au>
In-Reply-To: <0001189481.AA948159018@internet-mail.precisionvalve.com.au>
MIME-Version: 1.0
Message-Id: <00011812222700.25341@babben.norstedtstryckeri.se>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 531

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

> Help. How do I let Aol Instant messager through the FWTK. 
> I have followed the instructions in the FWTK FAQ for the Aol Client.  The only
> thing i get is connection interrupted..
> 

The nice part about AIM is that the server listens to all ports. I sit behind a
Gauntlet firewall and I use the telnet port for my AIM. Works like a charm :)

-- 

Penty Wenngren // Graphium Norstedts Tryckeri AB


From owner-fwtk-users@ex.tis.com Tue Jan 18 09:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14482
	Tue, 18 Jan 2000 09:12:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA00187;
	Tue, 18 Jan 2000 06:16:21 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:08:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA26643
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:08:01 -0800 (PST)
X-Authentication-Warning: gatespass.tucson.saic.com: adm set sender to <ingramm@nemesis.tucson.saic.com> using -f
Message-ID: <3883F522.22A4E088@nemesis.tucson.saic.com>
Date: Mon, 17 Jan 2000 22:07:46 -0700
From: Mike Ingram <ingramm@nemesis.tucson.saic.com>
Reply-To: ingramm@saic.com
Organization: SAIC Tucson
X-Mailer: Mozilla 4.7 [en] (X11; U; Linux 2.2.9-27mdk i586)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@lists.nai.com
Subject: Port 98 ????
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 251

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I've noticed a probe or two coming in on port 98....

Does anyone know what services   use this port ?

thanks

Mike






From owner-fwtk-users@ex.tis.com Tue Jan 18 09:33 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14702
	Tue, 18 Jan 2000 09:33:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA05992;
	Tue, 18 Jan 2000 06:36:44 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:33:09 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA04745
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:33:05 -0800 (PST)
From: Penty Wenngren <penty@nst.graphium.se>
Reply-To: penty@nst.graphium.se
Organization: Graphium Norstedts Tryckeri AB
To: fwtk-users@lists.nai.com
Subject: Re: Port 98 ????
Date: Tue, 18 Jan 2000 15:24:53 +0100
X-Mailer: KMail [version 1.0.28]
References: <3883F522.22A4E088@nemesis.tucson.saic.com>
In-Reply-To: <3883F522.22A4E088@nemesis.tucson.saic.com>
MIME-Version: 1.0
Message-Id: <00011815252801.26047@babben.norstedtstryckeri.se>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 486

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Den Tue, 18 Jan 2000 skrev Mike Ingram:
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I've noticed a probe or two coming in on port 98....
> 
> Does anyone know what services   use this port ?
> 

Linuxconf.

-- 

Penty Wenngren // Graphium Norstedts Tryckeri AB




From owner-fwtk-users@ex.tis.com Tue Jan 18 09:47 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14772
	Tue, 18 Jan 2000 09:47:21 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA08724;
	Tue, 18 Jan 2000 06:50:42 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 06:47:28 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA07811
	for fwtk-users-outgoing; Tue, 18 Jan 2000 06:47:26 -0800 (PST)
Message-ID: <20000118144742.23133.qmail@web122.yahoomail.com>
Date: Tue, 18 Jan 2000 06:47:42 -0800 (PST)
From: Rude Yak <rudeyak@yahoo.com>
Subject: re: Port 98 ????
To: fwtk-users@lists.nai.com, ingramm@saic.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 440

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


  linuxconf, most likely.

---------------------------
I've noticed a probe or two coming in on port 98....

Does anyone know what services   use this port ?

thanks

Mike

__________________________________________________
Do You Yahoo!?
Talk to your friends online with Yahoo! Messenger.
http://im.yahoo.com

From owner-fwtk-users@ex.tis.com Tue Jan 18 10:57 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA15059
	Tue, 18 Jan 2000 10:57:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA16799;
	Tue, 18 Jan 2000 08:00:54 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 07:55:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA15499
	for fwtk-users-outgoing; Tue, 18 Jan 2000 07:55:43 -0800 (PST)
Message-ID: <919F9F0E43E8D111AFA40000F879E2F08E5E84@mailsrv.szerencsejatek.hu>
From: =?iso-8859-2?Q?Tak=E1cs_Istv=E1n?= <istvan.takacs@szerencsejatek.hu>
To: "'fwtk-users@tis.com'" <fwtk-users@tis.com>
Subject: SSL?
Date: Tue, 18 Jan 2000 16:54:06 +0100
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.0.1461.28)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 322

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I'd like to know, whether we can use the FWTK
to control the SSL connections.

Is there a gw for SSL, or can we use it with
a kinf of "generic gw"?

Thanks in advance!

Regards,

		Istvan

From owner-fwtk-users@ex.tis.com Tue Jan 18 11:18 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA15131
	Tue, 18 Jan 2000 11:18:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA20805;
	Tue, 18 Jan 2000 08:21:32 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 08:16:27 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA19377
	for fwtk-users-outgoing; Tue, 18 Jan 2000 08:16:26 -0800 (PST)
Date: Tue, 18 Jan 2000 11:15:22 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Naresh Narang <nareshnarang@hotmail.com>
cc: fwtk-users@tis.com
Subject: Re: RSTP or RA proxy?
In-Reply-To: <20000118072640.68035.qmail@hotmail.com>
Message-ID: <Pine.GSO.4.10.10001181113490.23711-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 920

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

The rstp proxy is used for rstp protocols which were implemented with the
g2 real-player.  the ra proxy implements the pna protocol which was used
with real-player version 5.

Most real audio servers still use pna protocol.  However, the number of
rstpd servers is growing quickly.

ted keller


On Tue, 18 Jan 2000, Naresh Narang wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> The site real.com has two proxies:
> 
> RSTP and RA Proxy.
> 
> I have not gone into details, If anyone knows which one to use for which 
> purpose please let me know.
> 
> Thanks
> 
> N.K. Narang
> ______________________________________________________
> Get Your Private, Free Email at http://www.hotmail.com
> 


From owner-fwtk-users@ex.tis.com Tue Jan 18 11:26 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA15161
	Tue, 18 Jan 2000 11:26:57 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA23251;
	Tue, 18 Jan 2000 08:30:16 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 08:26:15 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA21968
	for fwtk-users-outgoing; Tue, 18 Jan 2000 08:26:14 -0800 (PST)
Date: Tue, 18 Jan 2000 07:11:53 -0800 (PST)
From: Tom Glover <tomg@egg.net>
To: Rude Yak <rudeyak@yahoo.com>
cc: fwtk-users@lists.nai.com, ingramm@saic.com
Subject: re: Port 98 ????
In-Reply-To: <20000118144742.23133.qmail@web122.yahoomail.com>
Message-ID: <Pine.BSF.4.21.0001180711310.71244-100000@ostrich.egg.net>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 751

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Tue, 18 Jan 2000, Rude Yak wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
>   linuxconf, most likely.
> 
> ---------------------------
> I've noticed a probe or two coming in on port 98....
> 
> Does anyone know what services   use this port ?

tacnews          98/tcp    #TAC News
tacnews          98/udp    #TAC News


> 
> thanks
> 
> Mike
> 
> __________________________________________________
> Do You Yahoo!?
> Talk to your friends online with Yahoo! Messenger.
> http://im.yahoo.com
> 

--
Regards,
Tom Glover



From owner-fwtk-users@ex.tis.com Tue Jan 18 19:05 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA17076
	Tue, 18 Jan 2000 19:05:10 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA04211;
	Tue, 18 Jan 2000 16:08:35 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 16:04:02 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA03032
	for fwtk-users-outgoing; Tue, 18 Jan 2000 16:03:46 -0800 (PST)
Message-ID: <3884FF5D.1AA14052@Aerojet.com>
Date: Tue, 18 Jan 2000 16:03:41 -0800
From: Frank.Winslow@Aerojet.com (Winslow, Frank)
X-Mailer: Mozilla 4.7 [en] (Win95; U)
X-Accept-Language: en
MIME-Version: 1.0
To: rhanouse@precisionvalve.com.au
CC: fwtk-users@ex.tis.com
Subject: Re: Aol Instant messager
References: <0001189481.AA948159018@internet-mail.precisionvalve.com.au>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 744

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have been using AIM via HTTPS proxy and it seems to work fine. No configuration
change to FWTK.

In AIM preferences - connection, choose connect using proxy, protocol HTTPS, and
give it your host and port for your HTTP-GW proxy.

Frank.


rhanouse@precisionvalve.com.au wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Help. How do I let Aol Instant messager through the FWTK.
> I have followed the instructions in the FWTK FAQ for the Aol Client.  The only
> thing i get is connection interrupted..
>
> Thanks Roman


From owner-fwtk-users@ex.tis.com Tue Jan 18 21:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA17837
	Tue, 18 Jan 2000 21:27:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA13781;
	Tue, 18 Jan 2000 18:31:00 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 18:27:53 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA12995
	for fwtk-users-outgoing; Tue, 18 Jan 2000 18:27:52 -0800 (PST)
Message-ID: <F59A92472FC9D311A54A009027C3A6010200AE@KIASRV0>
From: Zach Forsyth <Zach@kiandra.com>
To: "Fwtk-Users (E-mail)" <fwtk-users@ex.tis.com>
Subject: newbie help
Date: Wed, 19 Jan 2000 13:19:18 +1100
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 485

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi there,

I am trying to install fwtk on redhat 6.0, I want to use it as a firewall,
and proxy server, just so that internal clients can access all web and
related things they need transparently. I also have an Exchange server
sitting behind it that I would like to redirect all mail to.....

Any help, suggestions, URLS

thanks in advance

Zach Forsyth

From owner-fwtk-users@ex.tis.com Wed Jan 19 00:56 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA18352
	Wed, 19 Jan 2000 00:56:31 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA20584;
	Tue, 18 Jan 2000 21:59:56 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 18 Jan 2000 21:55:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA19816
	for fwtk-users-outgoing; Tue, 18 Jan 2000 21:55:46 -0800 (PST)
Message-ID: <388551AC.5DA91D23@seeyes.co.in>
Date: Wed, 19 Jan 2000 11:24:52 +0530
From: M Sreenivas <seenu@seeyes.co.in>
X-Mailer: Mozilla 4.7 [en] (Win98; I)
X-Accept-Language: en,pdf
MIME-Version: 1.0
To: Fwtk-Users <fwtk-users@ex.tis.com>
Subject: newbie 
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed;
 boundary="------------A28B71A80FA80D40CF25DEDA"
Content-Length: 1243

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This is a multi-part message in MIME format.
--------------A28B71A80FA80D40CF25DEDA
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Help,
        I have just got fwtk 2.1 installed on my RH Linux System,
I am trying to test the tn-gw, Now whaat is happening is when i try to
connect to fwtk proxy ( I put auth scheme for tn-gw in
netperm-table) proxy server says user doesnt exist. I have
created,enabled the users from authsrv. Please help me to come out of
this.
 Thanks for any help in advance.

Regards
Sreenivas

--------------A28B71A80FA80D40CF25DEDA
Content-Type: text/x-vcard; charset=us-ascii;
 name="seenu.vcf"
Content-Transfer-Encoding: 7bit
Content-Description: Card for M Sreenivas
Content-Disposition: attachment;
 filename="seenu.vcf"

begin:vcard 
n:;
tel;fax:+91-040-7612860
tel;work:+91-040-7607842
x-mozilla-html:FALSE
org:Ceeyes Software Technologies Pvt Ltd
version:2.1
email;internet:emseenu@hotmail.com
title:M Sreenivas, System Admin
adr;quoted-printable:;;H4-DD Colony=0D=0ABagh Amberpet;Hyderabad-500013;;;
end:vcard

--------------A28B71A80FA80D40CF25DEDA--


From owner-fwtk-users@ex.tis.com Wed Jan 19 03:22 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA18710
	Wed, 19 Jan 2000 03:22:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA27724;
	Wed, 19 Jan 2000 00:25:49 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 00:21:27 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA26969
	for fwtk-users-outgoing; Wed, 19 Jan 2000 00:21:20 -0800 (PST)
Message-ID: <3885736E.BD554118@legacy.ordix.de>
Date: Wed, 19 Jan 2000 09:18:54 +0100
From: Markus Schreier <ms@legacy.ordix.de>
Organization: Ordix AG
X-Mailer: Mozilla 4.61 [en] (WinNT; I)
X-Accept-Language: en,de
MIME-Version: 1.0
To: M Sreenivas <seenu@seeyes.co.in>
CC: Fwtk-Users <fwtk-users@ex.tis.com>
Subject: Re: newbie
References: <388551AC.5DA91D23@seeyes.co.in>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1905

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello M. Sreenivas,
i'm just someone who played around with fwtk a little... And one ore two ideas
are actualy from people who helped me to get things working.

You can put the following line at the end of your netperm-table:
authsrv:        deny-operation user * * *
This will deny any operation which is not allowed in advance. You will not get
a "user not found" message any more.

My telnet-Line looks like this:
tn-gw: permit-hosts * -auth -extnd -dest *
I found out, that the "-dest *" is essential. It changes the behaviour of
telnet and authserv quit a bit.
Now i do all "allowing ore forebidding with authserv:
Some lines might be:

authsrv:        permit-operation group admin telnet-gw <IP-of Firewall-Net>
authsrv:        permit-operation user * telnet-gw <IP-of Local net>
authsrv:        deny-operation   user * telnet-gw <IP-of Firewall-Net>
authsrv:        permit-operation user * telnet-gw *
authsrv:        deny-operation user * * *

Hope that helps, ohterwise you are welcome to conntact me.

Markus Schreier

ORDIX AG
Aktiengesellschaft fuer Software, Beratung und Systemintegration


M Sreenivas wrote:

> Help,
>         I have just got fwtk 2.1 installed on my RH Linux System,
> I am trying to test the tn-gw, Now whaat is happening is when i try to
> connect to fwtk proxy ( I put auth scheme for tn-gw in
> netperm-table) proxy server says user doesnt exist. I have
> created,enabled the users from authsrv. Please help me to come out of
> this.
>  Thanks for any help in advance.
>
> Regards
> Sreenivas
>
>   ------------------------------------------------------------------------
>                    Name: seenu.vcf
>    seenu.vcf       Type: VCard (text/x-vcard)
>                Encoding: 7bit
>             Description: Card for M Sreenivas


From owner-fwtk-users@ex.tis.com Wed Jan 19 12:49 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA20665
	Wed, 19 Jan 2000 12:49:12 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA07139;
	Wed, 19 Jan 2000 09:52:37 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 09:43:00 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA05614
	for fwtk-users-outgoing; Wed, 19 Jan 2000 09:42:59 -0800 (PST)
Message-Id: <v02120d01b4ac224afcd7@[134.60.81.1]>
Mime-Version: 1.0
Date: Wed, 19 Jan 2000 18:40:42 -0800
To: fwtk-users@ex.tis.com
From: heim@sip.medizin.uni-ulm.de (Stefan Heim, Dipl.-Ing.)
Subject: plug-gw /pop
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 1153

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

I want to use the plug-gw to contact an external pop-server via
Firewall (TIS) from clients in the  protected network.
The configuration is an the Firewall:
/etc/services:

pop-gw  2009/pc # Firelled POP3 Service

/etc/inetd.conf:

pop-gw  stream tcp nowait root  /usr/local/etc/plug-gw plug-gw 2009

netperm-table:

plug-gw:        permit-hosts 134.60.9.199
plug-gw:        port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110

Netscape-Mail on the machine 134.60.9.199:

Pop-Server: proxy.dom.de:2009


The read from mails not works:

/var/adm/messages:

localhost plug-gw[...]: deny host=......../134.60.9.199 service=pop-gw

What is wrong ?
Thanks!


/--------------------------------o00-----00o-------------------------\
Stefan Heim

Uni Ulm
Sektion Informatik in der Psychotherapie
Am Hochstraess 8
89081 Ulm
Germany
E-Mail: heim@sip.Medizin.Uni-Ulm.de
http://sip.medizin.uni-ulm.de
Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
\-------------------------------ooo0-----0ooOo---------------------/



From owner-fwtk-users@ex.tis.com Wed Jan 19 15:32 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA21840
	Wed, 19 Jan 2000 15:32:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA26105;
	Wed, 19 Jan 2000 12:35:49 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 12:31:09 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA24918
	for fwtk-users-outgoing; Wed, 19 Jan 2000 12:31:07 -0800 (PST)
Message-ID: <38861F10.47ED5567@sat1.de>
Date: Wed, 19 Jan 2000 21:31:12 +0100
From: Torsten Johr <Torsten.Johr@sat1.de>
Organization: Sat.1 Berlin (EDV/MIS)
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.13 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: "Stefan Heim, Dipl.-Ing." <heim@sip.medizin.uni-ulm.de>
CC: fwtk-users@ex.tis.com
Subject: Re: plug-gw /pop
References: <v02120d01b4ac224afcd7@[134.60.81.1]>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1027

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi Stefan!

/etc/services and /etc/inetd.conf seem to be okay.
But there is no "permit host" attribute for plug-gw. So, you should 
change the entry in your netperm-table from

> netperm-table:
> 
> plug-gw:  permit-hosts 134.60.9.199
> plug-gw:  port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110
> 

to

plug-gw: port 2009 134.60.9.199 -plug-to mailserver.tz.de -port 110

         ---------------------- <- this is your access rule, meaning
connections from port 2009 at host 134.60.9.199 are allowed.


Good luck!

       Torsten



---------------------------------------------------------------

Torsten Johr                              Tel. +49 30 2090 3844
Sat.1 SatellitenFernsehen GmbH            Fax: +49 30 2090 3877
Abt. EDV/Systeme
Jaegerstr. 32                      E-Mail: Torsten.Johr@Sat1.DE
10117 Berlin

---------------------------------------------------------------

From owner-fwtk-users@ex.tis.com Wed Jan 19 22:33 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA24199
	Wed, 19 Jan 2000 22:33:56 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA04330;
	Wed, 19 Jan 2000 19:37:18 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 19:33:02 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA03420
	for fwtk-users-outgoing; Wed, 19 Jan 2000 19:32:59 -0800 (PST)
Date: Wed, 19 Jan 2000 22:31:26 -0500
From: Tim Sailer <sailer@sailer.itd.bnl.gov>
To: fwtk-users@ex.tis.com
Subject: Krb5
Message-ID: <20000119223126.A29301@bnl.gov>
Mime-Version: 1.0
User-Agent: Mutt/1.0i
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 598

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I may have asked this once before, so excuse me if I did.
Has anyone hacked the auth stuff to point to a kerberos server
and get a ticket for the proxies? If not, any pointers on where
to start?

Thanks,
Tim

-- 
 (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
                          Madness takes its toll...
                          Please have exact change!
** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**

From owner-fwtk-users@ex.tis.com Thu Jan 20 00:25 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA24396
	Thu, 20 Jan 2000 00:25:46 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA09864;
	Wed, 19 Jan 2000 21:29:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 21:25:52 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA09079
	for fwtk-users-outgoing; Wed, 19 Jan 2000 21:25:51 -0800 (PST)
Message-ID: <38869D0D.2602A1B1@hotmail.com>
Date: Thu, 20 Jan 2000 10:58:45 +0530
From: Naresh Narang <nareshnarang@hotmail.com>
X-Mailer: Mozilla 4.7 [en] (Win95; I)
X-Accept-Language: en
MIME-Version: 1.0
To: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Split DNS.
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1101

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

    I installed Split DNS on two RH Linux 5.2 boxes. One is the firewall
and other is internal host. Internal one is having complete info about
all the addresses in the network and as expected, firewall host is
having only those addresses given by Internic. I have also mentioned the
MX record of Internal host on the firewall box. Now the problem is: Smap
receives the mail from "outside" but Smapd collects the mail but
sendmail is not able to deliver it to internal host because it can't
find it. The address of internal box is not there is *forward or
*reverse file but I have mentioned it in the /etc/hosts file.

The MX record on firewall box is like this:

*.foo.com    IN    MX    10   host.foo.com

    Please tell me what mistake I am making. BTW if I specify the host
name in rewrite Rule 0 of Sendmail.cf, sendmail is able to correctly
deliver the mail. But I would like the above method to work instead of
this one.

Thanks

N.K. Narang
Delhi, India


From owner-fwtk-users@ex.tis.com Thu Jan 20 00:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA24429
	Thu, 20 Jan 2000 00:41:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA11733;
	Wed, 19 Jan 2000 21:44:50 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 21:42:38 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA11010
	for fwtk-users-outgoing; Wed, 19 Jan 2000 21:42:37 -0800 (PST)
Message-ID: <3886A0F0.4695E5D0@hotmail.com>
Date: Thu, 20 Jan 2000 11:15:20 +0530
From: Naresh Narang <nareshnarang@hotmail.com>
X-Mailer: Mozilla 4.7 [en] (Win95; I)
X-Accept-Language: en
MIME-Version: 1.0
To: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Skey and Authserv
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 812

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello

        I downloaded skey.tar.gz in patches directory from tis.com. It
does not compile. It shows some error in a .c file. The patch for skey
given is not getting applied and it shows failed at Hunk 9 and at Hunk
30. Then I downloaded skey from the  reference for skey given in the
docs: ftp://thumper.bellcore.com/pub/nmh. This package also does not
compile. I am using RH Linux 5.2 and it has got all the libraries etc
and I have not had this type of problem any time earlier.

    Please someone tell me which auth. scheme to use for Authserv of
FWTK and where I could find it.. I could not install Authserv because of
these problems with skey.

Thanks a lot.

N.K. Narang

From owner-fwtk-users@ex.tis.com Thu Jan 20 01:03 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id BAA24501
	Thu, 20 Jan 2000 01:03:27 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id WAA13552;
	Wed, 19 Jan 2000 22:06:52 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 19 Jan 2000 22:04:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA12833
	for fwtk-users-outgoing; Wed, 19 Jan 2000 22:04:32 -0800 (PST)
Message-ID: <388690CF.BAED06ED@mahindrabt.com>
Date: Thu, 20 Jan 2000 10:06:31 +0530
From: Rajesh <khanduja@mahindrabt.com>
X-Mailer: Mozilla 4.7 [en] (Win95; I)
X-Accept-Language: en
MIME-Version: 1.0
To: ingramm@saic.com
CC: fwtk-users@lists.nai.com
Subject: Re: Port 98 ????
References: <3883F522.22A4E088@nemesis.tucson.saic.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 521

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi

linuxconf runs on port 98/tcp (Redhat versions). It should be off on any firewall
m/c.

Cheers,
Rajesh


Mike Ingram wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> I've noticed a probe or two coming in on port 98....
>
> Does anyone know what services   use this port ?
>
> thanks
>
> Mike


From owner-fwtk-users@ex.tis.com Thu Jan 20 03:14 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA25301
	Thu, 20 Jan 2000 03:14:29 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA18122;
	Thu, 20 Jan 2000 00:17:55 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 00:15:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA17377
	for fwtk-users-outgoing; Thu, 20 Jan 2000 00:15:02 -0800 (PST)
Message-ID: <3886C37F.A6A8C4F4@legacy.ordix.de>
Date: Thu, 20 Jan 2000 09:12:48 +0100
From: Markus Schreier <ms@legacy.ordix.de>
Organization: Ordix AG
X-Mailer: Mozilla 4.61 [en] (WinNT; I)
X-Accept-Language: en,de
MIME-Version: 1.0
To: Naresh Narang <nareshnarang@hotmail.com>
CC: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Re: Skey and Authserv
References: <3886A0F0.4695E5D0@hotmail.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1536

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi Naresh,
i also had some problems with getting skey to work. I found somewhere skey-2.2
which did compile. It is not ment for use with fwtk in the first place and as fare
as i can remember i had to change some link-options in the Makefile of fwtk or of
skey. The keyinit-program needs the users in /etc/passwd. But that can be changed
in the sources.

If you can't find the version i mentioned please let me know and i will have a
closer look to my files. Perhaps i can find the link again.

Greetings from Paderborn, Germany

Markus

Naresh Narang wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Hello
>
>         I downloaded skey.tar.gz in patches directory from tis.com. It
> does not compile. It shows some error in a .c file. The patch for skey
> given is not getting applied and it shows failed at Hunk 9 and at Hunk
> 30. Then I downloaded skey from the  reference for skey given in the
> docs: ftp://thumper.bellcore.com/pub/nmh. This package also does not
> compile. I am using RH Linux 5.2 and it has got all the libraries etc
> and I have not had this type of problem any time earlier.
>
>     Please someone tell me which auth. scheme to use for Authserv of
> FWTK and where I could find it.. I could not install Authserv because of
> these problems with skey.
>
> Thanks a lot.
>
> N.K. Narang


From owner-fwtk-users@ex.tis.com Thu Jan 20 03:24 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA25799
	Thu, 20 Jan 2000 03:24:04 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA19886;
	Thu, 20 Jan 2000 00:27:27 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 00:24:32 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA18946
	for fwtk-users-outgoing; Thu, 20 Jan 2000 00:24:31 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <3886C646.F510A499@usrconsult.be>
Date: Thu, 20 Jan 2000 09:24:38 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Re: plug-gw /pop
References: <v02120d01b4ac224afcd7@[134.60.81.1]>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 500

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

"Stefan Heim, Dipl.-Ing." wrote:
> 
[snip]
> 
> netperm-table:
> 
> plug-gw:        permit-hosts 134.60.9.199
> plug-gw:        port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110

Should it not be "port 2009 134.60.9.199 ..."?

Greetings.
-- 
Michel Bardiaux
UsrConsult S.P.R.L.  Rue Margot, 37  B-1457 Nil St Vincent
Tel : +32 10 65.44.15  Fax : +32 10 65.44.10

From owner-fwtk-users@ex.tis.com Thu Jan 20 03:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA25979
	Thu, 20 Jan 2000 03:27:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA20953;
	Thu, 20 Jan 2000 00:30:48 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 00:26:50 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA19655
	for fwtk-users-outgoing; Thu, 20 Jan 2000 00:26:47 -0800 (PST)
Message-ID: <3886C637.8A0E8433@legacy.ordix.de>
Date: Thu, 20 Jan 2000 09:24:23 +0100
From: Markus Schreier <ms@legacy.ordix.de>
Organization: Ordix AG
X-Mailer: Mozilla 4.61 [en] (WinNT; I)
X-Accept-Language: en,de
MIME-Version: 1.0
To: "Stefan Heim, Dipl.-Ing." <heim@sip.medizin.uni-ulm.de>
CC: fwtk-users@ex.tis.com
Subject: Re: plug-gw /pop
References: <v02120d01b4ac224afcd7@[134.60.81.1]>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1638

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi Stefan,
Perhaps it helps if you put -dest * in the rule. So that it looks like the
folowing:
plug-gw:        permit-hosts 134.60.9.199 -dest *
This helped me with tn-gw some time.
Please let me know the result.

Greetings from Paderborn
Markus

"Stefan Heim, Dipl.-Ing." wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Hello,
>
> I want to use the plug-gw to contact an external pop-server via
> Firewall (TIS) from clients in the  protected network.
> The configuration is an the Firewall:
> /etc/services:
>
> pop-gw  2009/pc # Firelled POP3 Service
>
> /etc/inetd.conf:
>
> pop-gw  stream tcp nowait root  /usr/local/etc/plug-gw plug-gw 2009
>
> netperm-table:
>
> plug-gw:        permit-hosts 134.60.9.199
> plug-gw:        port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110
>
> Netscape-Mail on the machine 134.60.9.199:
>
> Pop-Server: proxy.dom.de:2009
>
> The read from mails not works:
>
> /var/adm/messages:
>
> localhost plug-gw[...]: deny host=......../134.60.9.199 service=pop-gw
>
> What is wrong ?
> Thanks!
>
> /--------------------------------o00-----00o-------------------------\
> Stefan Heim
>
> Uni Ulm
> Sektion Informatik in der Psychotherapie
> Am Hochstraess 8
> 89081 Ulm
> Germany
> E-Mail: heim@sip.Medizin.Uni-Ulm.de
> http://sip.medizin.uni-ulm.de
> Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
> \-------------------------------ooo0-----0ooOo---------------------/


From owner-fwtk-users@ex.tis.com Thu Jan 20 03:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA26646
	Thu, 20 Jan 2000 03:40:00 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA23364;
	Thu, 20 Jan 2000 00:43:24 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 00:40:12 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA22462
	for fwtk-users-outgoing; Thu, 20 Jan 2000 00:40:10 -0800 (PST)
Message-ID: <3886C9CC.9980C8E0@socal.rr.com>
Date: Thu, 20 Jan 2000 00:39:40 -0800
From: Doug Fajardo <dfajardo@socal.rr.com>
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.12-20 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
CC: Naresh Narang <nareshnarang@hotmail.com>
Subject: Re: Split DNS.
References: <38869D0D.2602A1B1@hotmail.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2389

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Naresh:

The problem is that the MX record points to the firewall to deliver all
messages to for the domain *.foo.com. For the outside world, this is 
correct. For your firewall, you must provide *some* mechanism to
instruct
sendmail to override the DNS settings. 

My favoriate answer is to use the mailertable feature in the
sendmail.cf.
This file can contain an explicit selection of mailer and destination
for
any domain or host combination. In particular:

.foo.com           smtp:your.internal.mail.host

Will cause sendmail to route *any* traffic for the domain "foo.co"m to
"our.internal.mail.host" via the smtp mailer.

(I'm doing this from memory - check sendmail's cf/README documentation
to verify
 the format.)

==========
An alternative would be to use the following "slight of hand" with the
DNS:

        (0) The external DNS should have an MX record pointing to your
firewall.
             I *think* you already have this.

	(1) Put a MX record on the internal DNS which points to your internal
            email server.

	(2) Add a "forward" statement to make the internal DNS forward "other"
            requests to the firewall's DNS server. (You may have already 
            done this :-)

        (3) Change the resolve.conf file on the firewall to resolve off
of the
            internal mail server.

       If the above is done right, then the outside world sees the
firewall DNS,
which has the MX record pointing to the firewall.  The firewall itself
sees the
*internal* MX record, which causes sendmail on the firewall to forward
internally.
=========== 

I Hope this helps a little...

*** Doug Fajardo


Naresh Narang wrote:
> Hello,
> 
>...........Stuff truncated for brevity........
> MX record of Internal host on the firewall box. Now the problem is: Smap
> receives the mail from "outside" but Smapd collects the mail but
> sendmail is not able to deliver it to internal host because it can't
> find it.
>...........Stuff truncated for brevity........
>     Please tell me what mistake I am making. BTW if I specify the host
> name in rewrite Rule 0 of Sendmail.cf, sendmail is able to correctly
> deliver the mail. But I would like the above method to work instead of
> this one.
> 
> Thanks
> 
> N.K. Narang
> Delhi, India

From owner-fwtk-users@ex.tis.com Thu Jan 20 04:00 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA27736
	Thu, 20 Jan 2000 04:00:42 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA26039;
	Thu, 20 Jan 2000 01:04:06 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 01:01:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA25189
	for fwtk-users-outgoing; Thu, 20 Jan 2000 01:01:39 -0800 (PST)
Date:   Thu, 20 Jan 2000 11:01:51 +0200 (EET)
From: Jussi Torhonen <jussi.torhonen@tietosavo.fi>
To: Doug Fajardo <dfajardo@socal.rr.com>
cc: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Re: Split DNS.
In-Reply-To: <3886C9CC.9980C8E0@socal.rr.com>
Message-ID: <Pine.LNX.4.10.10001201056090.30156-100000@lx01.tietosavo.fi>
Organization: Tietosavo Oyj http://www.tietosavo.fi
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1442

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Thu, 20 Jan 2000, Doug Fajardo wrote:

> My favoriate answer is to use the mailertable feature in the
> sendmail.cf.
> This file can contain an explicit selection of mailer and destination
> for
> any domain or host combination. In particular:
> 
> .foo.com           smtp:your.internal.mail.host
> 
> Will cause sendmail to route *any* traffic for the domain "foo.co"m to
> "our.internal.mail.host" via the smtp mailer.

See http://www.sendmail.org/m4/mailertables.html

You must use square brackets to setup an static SMTP route to that host.
Otherwise sendmail tries to find MX recored for your.internal.mail.host
and sure they're not available. So

#
# user@qwerty.foo.com routed to some.other.internal.mail.host
qwerty.foo.com     smtp:[some.other.internal.mail.host]
#
# user@foo.com and user@ANY.OTHER.SUB.DOMAIN.foo.com routed to
# your.internal.mail.host
.foo.com           smtp:[your.internal.mail.host]
#

is a good choice. Then put your.internal.mail.host and
some.other.internal.mail.host into /etc/hosts file.

Jussi

-- 

-------------------------------------------------------------------
Jussi Torhonen   | E-mail:              jussi.torhonen@tietosavo.fi
Tietosavo Oyj    | Corporate website:       http://www.tietosavo.fi
Kuopio, Finland  | Personal homepage:          http://www.iki.fi/jt


From owner-fwtk-users@ex.tis.com Thu Jan 20 04:19 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA28746
	Thu, 20 Jan 2000 04:19:29 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA28033;
	Thu, 20 Jan 2000 01:22:55 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 01:20:19 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA27244
	for fwtk-users-outgoing; Thu, 20 Jan 2000 01:20:18 -0800 (PST)
Message-ID: <20000120092014.88966.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: dfajardo@socal.rr.com
Cc: fwtk-users@ex.tis.com
Subject: Re: Split DNS.
Date: Thu, 20 Jan 2000 14:50:14 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 3613

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Sir,

    The MX record on firewall points to Internal box. I thought it this way 
because in case if it is pointing to firewall itself sendmail will try to 
deliver it locally and will not be able to find the destination. So, MX 
record I put it for the Internal mail server. Yes I have put the address of 
both: the firewall box and Internal box in the resolv.conf. The internal DNS 
is having "forwarders" and it is working correctly.

     If I understand correctly, I think you are suggesting that in the 
firewall host I should put the MX record for the firewall itself and in the 
resolv.conf, the address of my Internal box. I'll try this. Please correct 
me if I am wrong.

    I tried Mailertable feature but it did not work. In the sendmail.cf I 
tried this:

Kmailertable hash /etc/mailertable.db

It was giving some error in dbm format of mailertable, so I used hash.  and 
yes I put the following in the mailertable entries:

.foo.com           smtp:your.internal.mail.host
foo.com           smtp:your.internal.mail.host


Regards,
N.K. Narang

----Original Message Follows----

Naresh:

The problem is that the MX record points to the firewall to deliver all
messages to for the domain *.foo.com. For the outside world, this is
correct. For your firewall, you must provide *some* mechanism to
instruct
sendmail to override the DNS settings.

My favoriate answer is to use the mailertable feature in the
sendmail.cf.
This file can contain an explicit selection of mailer and destination
for
any domain or host combination. In particular:

.foo.com           smtp:your.internal.mail.host

Will cause sendmail to route *any* traffic for the domain "foo.co"m to
"our.internal.mail.host" via the smtp mailer.

(I'm doing this from memory - check sendmail's cf/README documentation
to verify
  the format.)

==========
An alternative would be to use the following "slight of hand" with the
DNS:

         (0) The external DNS should have an MX record pointing to your
firewall.
              I *think* you already have this.

	(1) Put a MX record on the internal DNS which points to your internal
             email server.

	(2) Add a "forward" statement to make the internal DNS forward "other"
             requests to the firewall's DNS server. (You may have already
             done this :-)

         (3) Change the resolve.conf file on the firewall to resolve off
of the
             internal mail server.

        If the above is done right, then the outside world sees the
firewall DNS,
which has the MX record pointing to the firewall.  The firewall itself
sees the
*internal* MX record, which causes sendmail on the firewall to forward
internally.
===========

I Hope this helps a little...

*** Doug Fajardo


Naresh Narang wrote:
 > Hello,
 >
 >...........Stuff truncated for brevity........
 > MX record of Internal host on the firewall box. Now the problem is: Smap
 > receives the mail from "outside" but Smapd collects the mail but
 > sendmail is not able to deliver it to internal host because it can't
 > find it.
 >...........Stuff truncated for brevity........
 >     Please tell me what mistake I am making. BTW if I specify the host
 > name in rewrite Rule 0 of Sendmail.cf, sendmail is able to correctly
 > deliver the mail. But I would like the above method to work instead of
 > this one.
 >
 > Thanks
 >
 > N.K. Narang
 > Delhi, India

______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Thu Jan 20 05:28 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA02393
	Thu, 20 Jan 2000 05:28:00 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA02118;
	Thu, 20 Jan 2000 02:31:25 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 02:26:59 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA00577
	for fwtk-users-outgoing; Thu, 20 Jan 2000 02:26:58 -0800 (PST)
Message-ID: <20000120102704.88606.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: fwtk-users@ex.tis.com
Subject: Mailertable
Date: Thu, 20 Jan 2000 15:57:04 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 765

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jussi:

Mailertable did not work:
In sendmail.cf:

Kmailertable hash /etc/mailertable.db

and with following entry for MX record in *forward file of DNS on Firewall:

*.foo.com.       IN      MX      10       internal.host.foo.com

The mailertable is made like this:

text file mailertable contains:

foo.com     smtp:[internal.host.foo.com]
.foo.com     smtp:[internal.host.foo.com]

#makemap hash mailertable.db < mailertable

The internal and firewall boxes are running RH Linux 5.2 sendmail 8.8.7.

Regards,
N.K.Narang


______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Thu Jan 20 05:28 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA02394
	Thu, 20 Jan 2000 05:28:01 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA02122;
	Thu, 20 Jan 2000 02:31:26 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 02:27:16 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA00653
	for fwtk-users-outgoing; Thu, 20 Jan 2000 02:27:14 -0800 (PST)
Message-ID: <20000120102716.75576.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: fwtk-users@ex.tis.com
Subject: Mailertable
Date: Thu, 20 Jan 2000 15:57:16 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 765

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jussi:

Mailertable did not work:
In sendmail.cf:

Kmailertable hash /etc/mailertable.db

and with following entry for MX record in *forward file of DNS on Firewall:

*.foo.com.       IN      MX      10       internal.host.foo.com

The mailertable is made like this:

text file mailertable contains:

foo.com     smtp:[internal.host.foo.com]
.foo.com     smtp:[internal.host.foo.com]

#makemap hash mailertable.db < mailertable

The internal and firewall boxes are running RH Linux 5.2 sendmail 8.8.7.

Regards,
N.K.Narang


______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Thu Jan 20 05:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA03377
	Thu, 20 Jan 2000 05:50:54 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA05189;
	Thu, 20 Jan 2000 02:54:20 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 02:51:59 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA04411
	for fwtk-users-outgoing; Thu, 20 Jan 2000 02:51:58 -0800 (PST)
Date:   Thu, 20 Jan 2000 12:52:15 +0200 (EET)
From: Jussi Torhonen <jussi.torhonen@tietosavo.fi>
To: Naresh Narang <nareshnarang@hotmail.com>
cc: fwtk-users@ex.tis.com
Subject: Re: Mailertable
In-Reply-To: <20000120102704.88606.qmail@hotmail.com>
Message-ID: <Pine.LNX.4.10.10001201245460.30679-100000@lx01.tietosavo.fi>
Organization: Tietosavo Oyj http://www.tietosavo.fi
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1404

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Thu, 20 Jan 2000, Naresh Narang wrote:

> The internal and firewall boxes are running RH Linux 5.2 sendmail 8.8.7.

Here a working test site running RH 6.1 with sendmail-8.9.3-15:

# grep mailertable /etc/sendmail.cf
Kmailertable hash -o /etc/mail/mailertable

# cat  /etc/mail/mailertable
foo.com     smtp:[internal.host.foo.com]
.foo.com     smtp:[internal.host.foo.com]

# grep internal.host.foo.com /etc/hosts
10.20.30.40	internal.host.foo.com

# cd /etc/mail ; makemap hash mailertable.db < mailertable

# /etc/rc.d/init.d/sendmail restart

Works here fine. Cannot say about mailertables and sendmail-8.8.7 because
we don't use those old sendmail releases anymore.

For named you must declare those MX records to point to this particular
sendmail host, but you cannot list the domains is /etc/sendmail.cw file.
Instead declare those static SMTP routes using mailertable and sendmail
takes incoming mail from internet and forwards all the into the intranet
mail host transparently.

Jussi

-- 

-------------------------------------------------------------------
Jussi Torhonen   | E-mail:              jussi.torhonen@tietosavo.fi
Tietosavo Oyj    | Corporate website:       http://www.tietosavo.fi
Kuopio, Finland  | Personal homepage:          http://www.iki.fi/jt


From owner-fwtk-users@ex.tis.com Thu Jan 20 09:43 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA04180
	Thu, 20 Jan 2000 09:43:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16464;
	Thu, 20 Jan 2000 06:46:50 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 06:42:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA15463
	for fwtk-users-outgoing; Thu, 20 Jan 2000 06:42:46 -0800 (PST)
Message-ID: <919F9F0E43E8D111AFA40000F879E2F09224BC@mailsrv.szerencsejatek.hu>
From: =?iso-8859-2?Q?Tak=E1cs_Istv=E1n?= <istvan.takacs@szerencsejatek.hu>
To: fwtk-users@lists.nai.com
Subject: FWTK + OpenBSD?
Date: Thu, 20 Jan 2000 15:18:50 +0100
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.0.1461.28)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 294

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

Is there anybody here, who uses FWTK
on an OpenBSD box?

I've just found only FreeBSD, at the supported
platforms page.

Thanks in advance!

Regards,

		Istvan

From owner-fwtk-users@ex.tis.com Thu Jan 20 10:03 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA04314
	Thu, 20 Jan 2000 10:03:49 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA19264;
	Thu, 20 Jan 2000 07:07:14 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 07:03:36 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA18269
	for fwtk-users-outgoing; Thu, 20 Jan 2000 07:03:34 -0800 (PST)
X-Authentication-Warning: fw.cs.cas.cz: mailprox set sender to <jackc@cs.cas.cz> using -f
Message-ID: <003801bf6357$a6062b70$c504e793@cs.cas.cz>
From: "Jan Korbel" <jackc@cs.cas.cz>
To: <fwtk-users@ex.tis.com>
Subject: ftp
Date: Thu, 20 Jan 2000 16:04:28 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2919.6700
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6700
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-2"
Content-Length: 466

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

hi.
on our frw running rh6.x with fwtk 2.1 and i need this ftp connect:
inet --> frw(some port as 1999) --> ftp server in our subnet without any
proxy commands...

how can i make it? :)

-=-=-=-=-=-=-=-=-=-=-=-=-=-
  Jan Korbel alias JackC
     jackc@cs.cas.cz
    ICQ UIN: 23487453
  IRCNet: JackC on #cvut
-=-=-=-=-=-=-=-=-=-=-=-=-=-


From owner-fwtk-users@ex.tis.com Thu Jan 20 13:05 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA05322
	Thu, 20 Jan 2000 13:05:19 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA18916;
	Thu, 20 Jan 2000 10:08:43 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 09:13:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA22913
	for fwtk-users-outgoing; Thu, 20 Jan 2000 09:13:29 -0800 (PST)
Date: Thu, 20 Jan 2000 12:12:55 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Jeroen <jmar@telebyte.nl>
Cc: fwtk-users@tis.com
Subject: Re: Udp relay
Message-Id: <20000120121255.O11299@washington.cospo.osis.gov>
Mail-Followup-To: Jeroen <jmar@telebyte.nl>, fwtk-users@tis.com
References: <002f01bf5c8c$11bd03c0$3203a8c0@telekabel.chello.nl>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <002f01bf5c8c$11bd03c0$3203a8c0@telekabel.chello.nl>; from jmar@telebyte.nl on Wed, Jan 12, 2000 at 12:32:04AM +0100
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1141

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Wed, Jan 12, 2000 at 12:32:04AM +0100, Jeroen wrote:
> Hi everyone,
>  
> Can enyone help me to get a WORKING copy of udp relay for my tis firewall ??
> Need to have DNS lookups for my exchange server and web server in the DMZ 
> I run my firewall on Redhat 6.0
>  
> Tanks in advance 
> 
>                                      Jeroen de Bruin.

Using udprelay at all increases your risk.  Named itself can be a good
proxy.  Set your internal DNS to forward [in "forward only" mode] to
your firewall bastion host.  If you don't want to respond to external
queries, set your firewall 'named' to only listen to the internal
network(s) and 127.0.0.1.

The current version of BIND, with many security fixes, is 8.2.2-P5,
available at ftp.isc.org [or www.isc.org if you are so oriented].

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Thu Jan 20 13:05 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA05326
	Thu, 20 Jan 2000 13:05:51 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA18993;
	Thu, 20 Jan 2000 10:09:10 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 09:13:12 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA22922
	for fwtk-users-outgoing; Thu, 20 Jan 2000 09:13:03 -0800 (PST)
Mime-Version: 1.0
X-Sender: farone@mail.gvillesun.com
Message-Id: <v04220802b4acf1a0417a@[205.152.75.66]>
Date: Thu, 20 Jan 2000 12:08:56 -0500
To: fwtk-users@ex.tis.com
From: Mark C Farone <farone@gvillesun.com>
Subject: redirected urls with http-gw
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii" ; format="flowed"
Content-Length: 818

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

What would cause this url:
http://eshopflorida.com/MALL/Catalog/Store/asp/url/http%3A%2F%2Fwww%2E 
aaadiscountsports%2Ecom/name/AAA+Discount+Sports%2Ecom/mall_id/1000010 
557/s_id/1000011398.html

to be return this error:
Error- 404
Requested Information
/
is unavailable. Failed to connect to server
www (80)
reason: hostname unknown


I looked at the rfc1738 on URL names and this URL seems to follow the 
standards by 'percent encoding' the unsafe characters.

The URL will resolve as expected if I don't get the page via http-gw (2.1).

Thanks for any ideas,
Mark
--
Mark C. Farone <farone@gvillesun.com>   In the future,
Systems Analyst, Gainesville Sun        everything will work.


From owner-fwtk-users@ex.tis.com Thu Jan 20 13:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA05347
	Thu, 20 Jan 2000 13:12:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA22443;
	Thu, 20 Jan 2000 10:15:59 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 09:31:41 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA01102
	for fwtk-users-outgoing; Thu, 20 Jan 2000 09:31:38 -0800 (PST)
Date: Thu, 20 Jan 2000 12:31:08 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Haifeng Lin ~!~ <haifengl@cc.hut.fi>
Cc: fwtk-users@tis.com, fwtk-support@tis.com
Subject: Re: about fwtk.
Message-Id: <20000120123107.S11299@washington.cospo.osis.gov>
Mail-Followup-To: Haifeng Lin ~!~ <haifengl@cc.hut.fi>, fwtk-users@tis.com,
	fwtk-support@tis.com
References: <Pine.A41.4.10.10001111105260.19606-100000@vipunen.hut.fi>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <Pine.A41.4.10.10001111105260.19606-100000@vipunen.hut.fi>; from haifengl@cc.hut.fi on Tue, Jan 11, 2000 at 11:17:24AM +0200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1261

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Tue, Jan 11, 2000 at 11:17:24AM +0200, Haifeng Lin ~!~ wrote:
...
> I am Haifeng Lin. I am studying at HUT in Finland.
> I am doing fwtk\smap. I had been download fwtk-2.1.tar.z.
> and I had smap directory in my PC. Now, I want to run this smap
> programming in PC. I have some question.
> Do you mind question?
> 1. I have arpadate.c , makefile, smap.c in smap directory in my PC.  I
> have libwsock32.a in lib directory. And I have Cygnus and egcs-1.1.2
> software in my pc.
> how can I run this samp.c in PC platform? What can I do the first?
> 
> how can I change it to pc code?
> 
> Thank for your help. Looking forward to hearing that from you soon.
> 
> B.R
> Haifeng Lin:))

I am not aware that FWTK has ever worked on an MSW platform.  I would
suggest that your first step would be to decide between Linux, FreeBSD,
or other BSD's.  Considering your location, there is a "natural"
choice.  ;-)

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Thu Jan 20 15:48 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA06090
	Thu, 20 Jan 2000 15:48:22 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA03379;
	Thu, 20 Jan 2000 12:51:40 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 12:45:02 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA01708
	for fwtk-users-outgoing; Thu, 20 Jan 2000 12:44:51 -0800 (PST)
Message-ID: <001301bf6387$05a38300$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Subject: FWTK https connect security hole
Date: Thu, 20 Jan 2000 15:43:30 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 453

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Is there any way to patch the http-gw proxy's connect security hole?
I am aware of this hole from past messages, but I don't know how big of an
issue it is.

Could I just disable the connect command, or would this make something else
not work.

Is their a https-gw proxy that does not have the same problem?

Thanks,
Larry


From owner-fwtk-users@ex.tis.com Thu Jan 20 17:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA06365
	Thu, 20 Jan 2000 17:41:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA20943;
	Thu, 20 Jan 2000 14:44:29 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 14:38:26 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA18741
	for fwtk-users-outgoing; Thu, 20 Jan 2000 14:38:18 -0800 (PST)
Message-Id: <4.2.2.20000120172243.00acae90@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Thu, 20 Jan 2000 17:33:14 -0500
To: Mark C Farone <farone@gvillesun.com>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: redirected urls with http-gw
In-Reply-To: <v04220802b4acf1a0417a@[205.152.75.66]>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 570

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 12:08 PM 1/20/00 -0500, Mark C Farone wrote:
>http://eshopflorida.com/MALL/Catalog/Store/asp/url/http%3A%2F%2Fwww%2E 
>aaadiscountsports%2Ecom/name/AAA+Discount+Sports%2Ecom/mall_id/1000010 
>557/s_id/1000011398.html
This looks like a prefixed URL to http-gw. (i.e. 
http://firewall/http://whitehouse.gov form). That's probably confusing the 
http-gw. Use the real form (drop the eshopflorida) and it'll probably work OK.
         -Rick


From owner-fwtk-users@ex.tis.com Thu Jan 20 17:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA06368
	Thu, 20 Jan 2000 17:41:15 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA21011;
	Thu, 20 Jan 2000 14:44:40 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 14:38:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA18784
	for fwtk-users-outgoing; Thu, 20 Jan 2000 14:38:25 -0800 (PST)
Message-Id: <4.2.2.20000120171714.00adfc70@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Thu, 20 Jan 2000 17:22:33 -0500
To: "Larry Jackson" <LarryJackson@iName.com>,
        "FWTK List" <fwtk-users@lists.nai.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: FWTK https connect security hole
In-Reply-To: <001301bf6387$05a38300$fc00a8c0@k62350>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1082

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 03:43 PM 1/20/00 -0500, Larry Jackson wrote:
>Is there any way to patch the http-gw proxy's connect security hole?
>I am aware of this hole from past messages, but I don't know how big of an
>issue it is.

It's a big problem. If you use the http-gw for inbound access to your web 
server, anyone can connect to the HTTP port then issue a CONNECT verb to 
set up a telnet session to anywhere - including your inside network.

>Could I just disable the connect command, or would this make something else
>not work.

Editing the code to remove the support is fairly easy. Remove all calls to 
'do_ssl' and 'do_shttp' in hmain.c. You're better off with plug-gw if 
you're going to do this - plug-gw can be set up with a fixed endpoint; with 
http-gw it's too easily exploited to permit unexpected inbound connections 
(ftp, gopher, etc..).

>Is their a https-gw proxy that does not have the same problem?
plug-gw has ssl CONNECT support.
         -Rick


From owner-fwtk-users@ex.tis.com Thu Jan 20 21:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA07111
	Thu, 20 Jan 2000 21:34:44 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA09842;
	Thu, 20 Jan 2000 18:38:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 18:34:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA08601
	for fwtk-users-outgoing; Thu, 20 Jan 2000 18:34:03 -0800 (PST)
Message-ID: <001c01bf63b7$c2153d00$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>,
        "Rick Murphy" <rmurphy@itm-inst.com>
References: <4.2.2.20000120171714.00adfc70@mail.itm-inst.com>
Subject: Re: FWTK https connect security hole
Date: Thu, 20 Jan 2000 21:32:22 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1845

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

So this is only a problem if you accept inbound requests, Correct?
I'm not currently running any servers, so then its ok?

As far a patching http-gw goes, do you have to remove all the SSL support
or can you just intercept and reject any CONNECT calls?

Whats CONNECT used for anyway?
Would disabling it cause alot of web pages to stop working?

Larry

----- Original Message -----
From: Rick Murphy <rmurphy@itm-inst.com>
To: Larry Jackson <LarryJackson@iname.com>; FWTK List
<fwtk-users@lists.nai.com>
Sent: Thursday, January 20, 2000 5:22 PM
Subject: Re: FWTK https connect security hole


> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> At 03:43 PM 1/20/00 -0500, Larry Jackson wrote:
> >Is there any way to patch the http-gw proxy's connect security hole?
> >I am aware of this hole from past messages, but I don't know how big of
an
> >issue it is.
>
> It's a big problem. If you use the http-gw for inbound access to your web
> server, anyone can connect to the HTTP port then issue a CONNECT verb to
> set up a telnet session to anywhere - including your inside network.
>
> >Could I just disable the connect command, or would this make something
else
> >not work.
>
> Editing the code to remove the support is fairly easy. Remove all calls to
> 'do_ssl' and 'do_shttp' in hmain.c. You're better off with plug-gw if
> you're going to do this - plug-gw can be set up with a fixed endpoint;
with
> http-gw it's too easily exploited to permit unexpected inbound connections
> (ftp, gopher, etc..).
>
> >Is their a https-gw proxy that does not have the same problem?
> plug-gw has ssl CONNECT support.
>          -Rick
>
>


From owner-fwtk-users@ex.tis.com Thu Jan 20 21:37 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA07116
	Thu, 20 Jan 2000 21:37:45 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA10977;
	Thu, 20 Jan 2000 18:41:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 18:37:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA09699
	for fwtk-users-outgoing; Thu, 20 Jan 2000 18:37:47 -0800 (PST)
Message-ID: <002201bf63b8$50b90be0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Subject: FWTK - Search the message archives?
Date: Thu, 20 Jan 2000 21:36:26 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 200

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Is their any way to submit a search on the archived messages?

Larry



From owner-fwtk-users@ex.tis.com Thu Jan 20 21:51 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA07148
	Thu, 20 Jan 2000 21:51:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA12998;
	Thu, 20 Jan 2000 18:55:02 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 18:52:49 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA12223
	for fwtk-users-outgoing; Thu, 20 Jan 2000 18:52:48 -0800 (PST)
Message-Id: <4.2.2.20000120213516.00acfe00@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Thu, 20 Jan 2000 21:40:21 -0500
To: "Larry Jackson" <LarryJackson@iName.com>,
        "FWTK List" <fwtk-users@lists.nai.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: FWTK https connect security hole
In-Reply-To: <001c01bf63b7$c2153d00$fc00a8c0@k62350>
References: <4.2.2.20000120171714.00adfc70@mail.itm-inst.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1235

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 09:32 PM 1/20/00 -0500, Larry Jackson wrote:
>So this is only a problem if you accept inbound requests, Correct?
>I'm not currently running any servers, so then its ok?

The CONNECT support lets your users configure the http-gw as a SSL proxy. 
It's not a security hole on it's own other than the fact that it can be 
used to connect anywhere. As long as your policy is that all internal users 
are permitted outbound, no problem. Some people were using http-gw to 
front-end an internal web server - permitting anyone, anywhere to connect. 
The ssl proxying support made that very risky.

>As far a patching http-gw goes, do you have to remove all the SSL support
>or can you just intercept and reject any CONNECT calls?

The only ssl support is in the do_ssl routine. It's a simple plug, 
effectively. The http-gw doesn't look at the SSL transaction in any way.

>Whats CONNECT used for anyway?
>Would disabling it cause alot of web pages to stop working?

CONNECT is how a web browser makes requests of an SSL-aware proxy. With 
CONNECT disabled, you can't proxy to secure web sites.
         -Rick


From owner-fwtk-users@ex.tis.com Fri Jan 21 01:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id BAA07770
	Fri, 21 Jan 2000 01:50:21 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id WAA21828;
	Thu, 20 Jan 2000 22:53:46 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 20 Jan 2000 22:50:45 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id WAA21079
	for fwtk-users-outgoing; Thu, 20 Jan 2000 22:50:44 -0800 (PST)
Message-ID: <002c01bf63db$a0154780$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Subject: FWTK - Filtering content
Date: Fri, 21 Jan 2000 01:49:11 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 598

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Thanks Rick Murphy <rmurphy@itm-inst.com>
    for all your help explaining CONNECT under http-gw.

Any idea on how to configure FWTK to filter content through JunkBuster?
I want to leave the proxies on the default ports, but filter incoming info
through junkbuster.
ie Internet:80 -> Proxy -> Junkbuster -> localnet:80

also I was thinking about running POP through BlackMail or some other email
SPAM filter.

Ant thoughts or suggestions would be appreciated.

Larry


From owner-fwtk-users@ex.tis.com Fri Jan 21 04:19 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA08294
	Fri, 21 Jan 2000 04:19:46 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA29554;
	Fri, 21 Jan 2000 01:23:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 01:19:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA28653
	for fwtk-users-outgoing; Fri, 21 Jan 2000 01:19:45 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <388824CA.B86DD85A@usrconsult.be>
Date: Fri, 21 Jan 2000 10:20:10 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@tis.com
Subject: Re: about fwtk.
References: <Pine.A41.4.10.10001111105260.19606-100000@vipunen.hut.fi> <20000120123107.S11299@washington.cospo.osis.gov>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2539

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Joseph S D Yao wrote:
> 
> On Tue, Jan 11, 2000 at 11:17:24AM +0200, Haifeng Lin ~!~ wrote:
> ...
> > I am Haifeng Lin. I am studying at HUT in Finland.
> > I am doing fwtk\smap. I had been download fwtk-2.1.tar.z.
> > and I had smap directory in my PC. Now, I want to run this smap
> > programming in PC. I have some question.
> > Do you mind question?
> > 1. I have arpadate.c , makefile, smap.c in smap directory in my PC.  I
> > have libwsock32.a in lib directory. And I have Cygnus and egcs-1.1.2
> > software in my pc.
> > how can I run this samp.c in PC platform? What can I do the first?
> >
> > how can I change it to pc code?
> >
> > Thank for your help. Looking forward to hearing that from you soon.
> >
> > B.R
> > Haifeng Lin:))
> 
> I am not aware that FWTK has ever worked on an MSW platform.  I would
> suggest that your first step would be to decide between Linux, FreeBSD,
> or other BSD's.  Considering your location, there is a "natural"
> choice.  ;-)

FWTK on WINTEL is an interesting technical problem. What would be
involved?

1. Some fixes of UNIXisms would be rather straightforward: use send/recv
rather
   than read/write on sockets; WINSOCK has to be initialized; a
substitute
   for syslog(); etc...
2. More difficult is the perennial problem, in UNIX-to-NT ports, of
   how to work without fork(). But with the general organization of the
   FWTK, we could forget '-daemon' and we would "just" need a
replacement
   for inetd (which ISTR exists somewhere); fork/exec pairs *can* be
   replaced by some WIN32 call.
3. The most interesting, because it brings us back from technicalities
to
   *general* properties of firewalls, is how to secure the machine
*before*
   we install any proxies. First of all, of course, no Win95 or Win98,
   IMHO only NT would do; but from cost considerations, NT-WorkStation.

   Then, how would we prevent forwarding? Restrict logins? Which NT
services
   can be disabled, and how? How do we protect the others? Etc...

Let's be clear before the flamethrowers are fired up: I am *not* pushing
Wintel
as a platform for FWTK. I just think it could be a good 'war game'.
Firewalls
have this perverse aspect that once set up, you don't fiddle with them
unless
really necessary, so you tend to get out of practice.

Greetings.
-- 
Michel Bardiaux
UsrConsult S.P.R.L.  Rue Margot, 37  B-1457 Nil St Vincent
Tel : +32 10 65.44.15  Fax : +32 10 65.44.10

From owner-fwtk-users@ex.tis.com Fri Jan 21 04:59 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA08439
	Fri, 21 Jan 2000 04:59:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA02619;
	Fri, 21 Jan 2000 02:02:35 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 01:59:17 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA01767
	for fwtk-users-outgoing; Fri, 21 Jan 2000 01:59:15 -0800 (PST)
From: ark@eltex.ru
Date: Fri, 21 Jan 2000 12:53:21 +0300
Message-Id: <200001210953.MAA19008@paranoid.eltex.spb.ru>
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: FWTK https connect security hole
To: LarryJackson@iName.com
Cc: fwtk-users@lists.nai.com, rmurphy@itm-inst.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 937

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

I don't use http-gw for handling incoming connections for now, but, afair,
you can restrict destinations and some operations using netperm-table
entries, am i wrong?
                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOIgsj6H/mIJW9LeBAQHAUAP+OTpuUTU1m0ACioBPX6tnCiiR4v7llFE3
t2Kj8YCWjwllssJc063NQVdsvyFzGyGEWte0/n8HyRM/7s+gx61N7bMDBG0MuyuF
Tl1agBuQOAG4InJFKLP1s4mGXPzw+NdDFXvBr+FzJAHFnSsXL7woA6XXMHxrrjUP
yIWOU8RlQAs=
=+FpX
-----END PGP SIGNATURE-----

From owner-fwtk-users@ex.tis.com Fri Jan 21 07:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA08897
	Fri, 21 Jan 2000 07:40:11 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA11113;
	Fri, 21 Jan 2000 04:43:38 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 04:39:45 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA10129
	for fwtk-users-outgoing; Fri, 21 Jan 2000 04:39:44 -0800 (PST)
Message-ID: <20000121123951.9948.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: fwtk-users@ex.tis.com
Subject: Authsrv ?
Date: Fri, 21 Jan 2000 18:09:51 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 645

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Dear Markus,

   Thanks for Skey-2.2. It compiled without any problems. Now the problem 
has come up with Authsrv module in Auth Package. While compiling authsrv, 
there is an error:

.....in function Keycrunch and ....in function f

skeysubr.o     undefined reference to MD4Init, MD4update, MD4Final.

and it stops compilation of authsrv. Could anyone please tell me what is 
wrong.

Thanks

N.K. Narang
______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Fri Jan 21 10:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA09502
	Fri, 21 Jan 2000 10:34:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA28417;
	Fri, 21 Jan 2000 07:37:26 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 07:29:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA26003
	for fwtk-users-outgoing; Fri, 21 Jan 2000 07:29:44 -0800 (PST)
Message-ID: <38887AA2.614E0220@ordix.de>
Date: Fri, 21 Jan 2000 16:26:27 +0100
From: Markus Schreier <ms@ordix.de>
Organization: Ordix AG
X-Mailer: Mozilla 4.61 [en] (WinNT; I)
X-Accept-Language: en,de
MIME-Version: 1.0
To: Naresh Narang <nareshnarang@hotmail.com>
CC: fwtk-users@ex.tis.com
Subject: Re: Authsrv ?
References: <20000121123951.9948.qmail@hotmail.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1408

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi Naresh,
i'm sorry, i realy can't remeber such a problem. I know there are some Makefiles
where you can switch between md4 and md5. I only managed to get md4 working since
i could not find md5-Sources anywhere. It might be, that you need some diffrent
libraries.
If you can't work it out at all, i can pack my whole Source-tree in a mail and
send it to you. This would be quit big and i'm not shure if it solves all
problems.

I realy would be haby if someone else could just point out the problem so that it
can be fixed. That would be much more elegant.

Nice weekend
Markus

Naresh Narang wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Dear Markus,
>
>    Thanks for Skey-2.2. It compiled without any problems. Now the problem
> has come up with Authsrv module in Auth Package. While compiling authsrv,
> there is an error:
>
> .....in function Keycrunch and ....in function f
>
> skeysubr.o     undefined reference to MD4Init, MD4update, MD4Final.
>
> and it stops compilation of authsrv. Could anyone please tell me what is
> wrong.
>
> Thanks
>
> N.K. Narang
> ______________________________________________________
> Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Fri Jan 21 10:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA09505
	Fri, 21 Jan 2000 10:34:19 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA28496;
	Fri, 21 Jan 2000 07:37:38 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 07:29:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA25920
	for fwtk-users-outgoing; Fri, 21 Jan 2000 07:29:25 -0800 (PST)
Message-ID: <38887B59.ADB7CD88@v-one.com>
Date: Fri, 21 Jan 2000 10:29:29 -0500
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.7 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: Rick Murphy <rmurphy@itm-inst.com>
CC: Larry Jackson <LarryJackson@iName.com>,
        FWTK List <fwtk-users@lists.nai.com>
Subject: Re: FWTK https connect security "hole"
References: <4.2.2.20000120171714.00adfc70@mail.itm-inst.com> <4.2.2.20000120213516.00acfe00@mail.itm-inst.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1114

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Rick Murphy wrote:
> >So this is only a problem if you accept inbound requests, Correct?
> >I'm not currently running any servers, so then its ok?
> 
> The CONNECT support lets your users configure the http-gw as a SSL proxy.
> It's not a security hole on it's own other than the fact that it can be
> used to connect anywhere. As long as your policy is that all internal users
> are permitted outbound, no problem. Some people were using http-gw to
> front-end an internal web server - permitting anyone, anywhere to connect.
> The ssl proxying support made that very risky.
	<snip>
> CONNECT is how a web browser makes requests of an SSL-aware proxy. With
> CONNECT disabled, you can't proxy to secure web sites.

Rick,

Thinking about this, isn't it possible to add support to restrict which
host (or at least which port) the CONNECT tries to go to? Ie., only
allow "CONNECT xxx.xxx.xxx.xxx:443"?

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Fri Jan 21 14:20 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA10071
	Fri, 21 Jan 2000 14:20:42 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA23761;
	Fri, 21 Jan 2000 11:24:03 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 11:14:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA22112
	for fwtk-users-outgoing; Fri, 21 Jan 2000 11:14:39 -0800 (PST)
Date: Fri, 21 Jan 2000 14:14:53 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Christian Raymond <craymond@signalgene.com>
Cc: fwtk-users@ex.tis.com
Subject: Re: secure connection
Message-Id: <20000121141453.T21013@washington.cospo.osis.gov>
Mail-Followup-To: Christian Raymond <craymond@signalgene.com>,
	fwtk-users@ex.tis.com
References: <v04210105b4a24575d766@[192.133.40.28]>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <v04210105b4a24575d766@[192.133.40.28]>; from craymond@signalgene.com on Wed, Jan 12, 2000 at 09:55:49AM -0500
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1221

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Wed, Jan 12, 2000 at 09:55:49AM -0500, Christian Raymond wrote:
> I'm new to the list. I use FWTK version 1.3. 
> Everything is doing great, execpt that we can't connect to secure sites using SSL. Is upgrading to version 2.1 my solution?

2.1 did give you the ability to proxy SSL, yes.

> Also, I will have to connect to an external server with telnet and SSH. I might be able to do it with plug-GW, but I'm not shure I want to use it. What are my options?

For telnet, you should use tn-gw.  For SSH, I think you pretty much
have to use plug-gw.  Be aware that plug-gw in 2.1 had a different
setup file format than plug-gw in 1.3.  If you are OK with having your
SSH session in the clear from your workstation to your firewall, the
ArkanoiD wrote an ssh proxy that is mentioned in the FWTK Web site at
<URL: http://www.fwtk.org/fwtk/patches/patches.html#3.11>.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Fri Jan 21 16:05 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA10412
	Fri, 21 Jan 2000 16:05:17 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA07002;
	Fri, 21 Jan 2000 13:08:38 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 13:03:24 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA05917
	for fwtk-users-outgoing; Fri, 21 Jan 2000 13:03:22 -0800 (PST)
Mime-Version: 1.0
X-Sender: farone@mail.gvillesun.com
Message-Id: <v04220801b4ae706c3186@[205.152.75.66]>
In-Reply-To: <4.2.2.20000120172243.00acae90@mail.itm-inst.com>
References: <4.2.2.20000120172243.00acae90@mail.itm-inst.com>
Date: Fri, 21 Jan 2000 15:48:58 -0500
To: Rick Murphy <rmurphy@itm-inst.com>
From: Mark C Farone <farone@gvillesun.com>
Subject: Re: redirected urls with http-gw
Cc: fwtk-users@ex.tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii" ; format="flowed"
Content-Length: 1417

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 5:33 PM -0500 1/20/00, Rick Murphy wrote:
>>http://eshopflorida.com/MALL/Catalog/Store/asp/url/http%3A%2F%2Fwww% 
>>2E 
>>aaadiscountsports%2Ecom/name/AAA+Discount+Sports%2Ecom/mall_id/1000010 
>>557/s_id/1000011398.html
>This looks like a prefixed URL to http-gw. (i.e. 
>http://firewall/http://whitehouse.gov form). That's probably 
>confusing the http-gw. Use the real form (drop the eshopflorida) and 
>it'll probably work OK.
>         -Rick

Thanks for the note, Rick.

That's what I thought, too but I'm not so sure anymore--it is as if 
the %-encoding isn't being interpreted properly.

Using the original URL through http-gw it gets interpreted as 'www' 
which of course isn't resolvable by the proxy server.

If I omit the first url 
('http://eshopflorida.com/MALL/Catalog/Store/asp/url/') and by-hand 
change the %-encoded characters, the URL resolves properly through 
http-gw.

If I omit the first url and leave the %-encoded characters, and send 
it through http-gw, things get completely fouled up--it ends up being 
sent to netscape as a search query string through Navigator, and IE 
breaks it by prepending http://www to the url.


Thanks,
Mark

--
Mark C. Farone <farone@gvillesun.com>   In the future,
Systems Analyst, Gainesville Sun        everything will work.


From owner-fwtk-users@ex.tis.com Fri Jan 21 19:31 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA10971
	Fri, 21 Jan 2000 19:31:50 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA25239;
	Fri, 21 Jan 2000 16:35:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 16:31:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA24377
	for fwtk-users-outgoing; Fri, 21 Jan 2000 16:31:45 -0800 (PST)
Date: Fri, 21 Jan 2000 19:32:05 -0500
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>
Cc: fwtk-users@tis.com
Subject: Re: need to know the books on firewall
Message-Id: <20000121193205.H26437@washington.cospo.osis.gov>
Mail-Followup-To: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>,
	fwtk-users@tis.com
References: <01570E7F8223D2119C9A00805F9A267C014710FB@gexchange.gintic.gov.sg>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <01570E7F8223D2119C9A00805F9A267C014710FB@gexchange.gintic.gov.sg>; from gbhuang@gintic.gov.sg on Fri, Jan 14, 2000 at 09:02:29AM +0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1095

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Fri, Jan 14, 2000 at 09:02:29AM +0800, Huang Guangbin, Dr wrote:
> Hi, I would like to find one or two books which systematically introduce the
> technology on firewall, or network security and also include good samples
> and source codes. I appreciate if someone could give me hints.
> 
> huang

The classics are Firewall and Internet Security, Cheswick & Bellovin,
Addison-Wesley; and Building Internet Firewalls, Chapman & Zwicky,
O'Reilly & Associates.  There is a new version out of the former;
somehow I had had the impression that there would be a new version out
of the latter.

No source code.  The FWTK is source code, but abominably documented,
because it was intended for use by people who already knew what they
were doing.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Fri Jan 21 20:00 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA11067
	Fri, 21 Jan 2000 20:00:57 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA29169;
	Fri, 21 Jan 2000 17:04:22 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 17:00:24 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA27635
	for fwtk-users-outgoing; Fri, 21 Jan 2000 17:00:23 -0800 (PST)
Message-Id: <4.2.2.20000121195147.00af7b80@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Fri, 21 Jan 2000 19:53:04 -0500
To: Keith Young <kyoung@v-one.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: FWTK https connect security "hole"
Cc: Larry Jackson <LarryJackson@iName.com>,
        FWTK List <fwtk-users@lists.nai.com>
In-Reply-To: <38887B59.ADB7CD88@v-one.com>
References: <4.2.2.20000120171714.00adfc70@mail.itm-inst.com>
 <4.2.2.20000120213516.00acfe00@mail.itm-inst.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 432

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 10:29 AM 1/21/00 -0500, Keith Young wrote:
>Thinking about this, isn't it possible to add support to restrict which
>host (or at least which port) the CONNECT tries to go to? Ie., only
>allow "CONNECT xxx.xxx.xxx.xxx:443"?
Yes. Forcing it to use only the default port is pretty easy.
         -Rick


From owner-fwtk-users@ex.tis.com Fri Jan 21 20:00 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA11070
	Fri, 21 Jan 2000 20:00:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA29187;
	Fri, 21 Jan 2000 17:04:25 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 21 Jan 2000 17:00:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA27656
	for fwtk-users-outgoing; Fri, 21 Jan 2000 17:00:31 -0800 (PST)
Message-Id: <4.2.2.20000121194209.00afa880@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Fri, 21 Jan 2000 19:44:38 -0500
To: ark@eltex.ru, LarryJackson@iName.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: FWTK https connect security hole
Cc: fwtk-users@lists.nai.com
In-Reply-To: <200001210953.MAA19008@paranoid.eltex.spb.ru>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 588

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 12:53 PM 1/21/00 +0300, ark@eltex.ru wrote:
>I don't use http-gw for handling incoming connections for now, but, afair,
>you can restrict destinations and some operations using netperm-table
>entries, am i wrong?
No, you're not wrong - but there's still a problem. The destination 
permissions don't include destination port restrictions. If you permit 
someone to connect to your web server, they can connect to any port on that 
machine.
         -Rick


From owner-fwtk-users@ex.tis.com Sat Jan 22 03:24 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA11627
	Sat, 22 Jan 2000 03:24:18 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA10436;
	Sat, 22 Jan 2000 00:27:42 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 22 Jan 2000 00:23:21 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA09684
	for fwtk-users-outgoing; Sat, 22 Jan 2000 00:23:16 -0800 (PST)
Reply-To: <5chavez@gte.net>
From: "Chris Chavez" <5chavez@gte.net>
To: <fwtk-users@ex.tis.com>
Subject: RE: plug-gw /pop
Date: Sat, 22 Jan 2000 00:26:04 -0800
Message-ID: <000001bf64b2$53784350$0b79c681@u_rax37.f22ctf.edwards.af.mil>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook 8.5, Build 4.71.2173.0
In-Reply-To: <v02120d01b4ac224afcd7@[134.60.81.1]>
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.2106.4
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1850

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello All,

I am having the Identical problem as Stefan.  My configuration is Identical
except the top permit-hosts line which I did add in to no avail, I have
tried the three possible resolutions that were suggested and I continue to
get "deny host" in the log.  Any suggestions are very much appreciated?
Have a fine day.



Chris Chavez


-----Original Message-----
From:	owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com] On
Behalf Of Stefan Heim, Dipl.-Ing.
Sent:	Wednesday, January 19, 2000 6:41 PM
To:	fwtk-users@ex.tis.com
Subject:	plug-gw /pop

[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

I want to use the plug-gw to contact an external pop-server via
Firewall (TIS) from clients in the  protected network.
The configuration is an the Firewall:
/etc/services:

pop-gw  2009/pc # Firelled POP3 Service

/etc/inetd.conf:

pop-gw  stream tcp nowait root  /usr/local/etc/plug-gw plug-gw 2009

netperm-table:

plug-gw:        permit-hosts 134.60.9.199
plug-gw:        port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110

Netscape-Mail on the machine 134.60.9.199:

Pop-Server: proxy.dom.de:2009


The read from mails not works:

/var/adm/messages:

localhost plug-gw[...]: deny host=......../134.60.9.199 service=pop-gw

What is wrong ?
Thanks!


/--------------------------------o00-----00o-------------------------\
Stefan Heim

Uni Ulm
Sektion Informatik in der Psychotherapie
Am Hochstraess 8
89081 Ulm
Germany
E-Mail: heim@sip.Medizin.Uni-Ulm.de
http://sip.medizin.uni-ulm.de
Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
\-------------------------------ooo0-----0ooOo---------------------/



From owner-fwtk-users@ex.tis.com Sat Jan 22 10:26 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA12287
	Sat, 22 Jan 2000 10:26:00 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA16572;
	Sat, 22 Jan 2000 07:29:16 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 22 Jan 2000 07:24:54 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA15814
	for fwtk-users-outgoing; Sat, 22 Jan 2000 07:24:53 -0800 (PST)
Date: Sat, 22 Jan 2000 10:24:19 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: Chris Chavez <5chavez@gte.net>
cc: fwtk-users@ex.tis.com
Subject: RE: plug-gw /pop
In-Reply-To: <000001bf64b2$53784350$0b79c681@u_rax37.f22ctf.edwards.af.mil>
Message-ID: <Pine.GSO.4.10.10001221010490.12906-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 3628

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Seems to me - we should really put this in a faq..... unless it is already
there....


There are three files which need to be maintained when setting up any type
of plug-gw service.

1. /etc/services

2. /etc/inetd.conf

3. netperm-table

The /etc services should list by name all ports which are to be used in
the plug-gw application.  If you are mapping ports between a private port
and a standard port - it is advisable to list both of them there.  For
example....

pop-3	110/tcp		#standard pop-3 port

pop-3-client	2110/tcp	#Private pop-3 port for proxying

Note - if both the internal and external ports are the same - only one
entry is required.

In this example, we will assume that a pop client will connect on
pop-3-client and link to a pop server at its standard port.

To do this - then set up an inetd entry as follows....

pop-3-client  stream  tcp  nowait  root   /usr/local/sbin/plug-gw pop-3-client

When something connects to the pop-3-client port (2110), the plug-gw
program will be run - and passed the parameter pop-3-client.

Now - in the netperm-table, you supply the parameters listed with the
service pop-3-client.  They will look something like.....


pop-3-client: timeout 3600
pop-3-client: port pop-3-client <conn hosts> -plug-to <rmt host> -port 
                 pop-3

When seeing a connection from conn hosts, create a connection to remote
host at port pop-3.

I think this should be close (did it from memory).

ted keller


On Sat, 22 Jan 2000, Chris Chavez wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello All,
> 
> I am having the Identical problem as Stefan.  My configuration is Identical
> except the top permit-hosts line which I did add in to no avail, I have
> tried the three possible resolutions that were suggested and I continue to
> get "deny host" in the log.  Any suggestions are very much appreciated?
> Have a fine day.
> 
> 
> 
> Chris Chavez
> 
> 
> -----Original Message-----
> From:	owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com] On
> Behalf Of Stefan Heim, Dipl.-Ing.
> Sent:	Wednesday, January 19, 2000 6:41 PM
> To:	fwtk-users@ex.tis.com
> Subject:	plug-gw /pop
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello,
> 
> I want to use the plug-gw to contact an external pop-server via
> Firewall (TIS) from clients in the  protected network.
> The configuration is an the Firewall:
> /etc/services:
> 
> pop-gw  2009/pc # Firelled POP3 Service
> 
> /etc/inetd.conf:
> 
> pop-gw  stream tcp nowait root  /usr/local/etc/plug-gw plug-gw 2009
> 
> netperm-table:
> 
> plug-gw:        permit-hosts 134.60.9.199
> plug-gw:        port 2009 134.69.9.147 -plug-to mailserver.tz.de -port 110
> 
> Netscape-Mail on the machine 134.60.9.199:
> 
> Pop-Server: proxy.dom.de:2009
> 
> 
> The read from mails not works:
> 
> /var/adm/messages:
> 
> localhost plug-gw[...]: deny host=......../134.60.9.199 service=pop-gw
> 
> What is wrong ?
> Thanks!
> 
> 
> /--------------------------------o00-----00o-------------------------\
> Stefan Heim
> 
> Uni Ulm
> Sektion Informatik in der Psychotherapie
> Am Hochstraess 8
> 89081 Ulm
> Germany
> E-Mail: heim@sip.Medizin.Uni-Ulm.de
> http://sip.medizin.uni-ulm.de
> Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
> \-------------------------------ooo0-----0ooOo---------------------/
> 
> 


From owner-fwtk-users@ex.tis.com Mon Jan 24 09:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA18570
	Mon, 24 Jan 2000 09:34:06 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA27339;
	Mon, 24 Jan 2000 06:37:32 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 06:21:34 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA20980
	for fwtk-users-outgoing; Mon, 24 Jan 2000 06:21:25 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <388820E7.A82C89FF@usrconsult.be>
Date: Fri, 21 Jan 2000 10:03:35 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Re: ftp
References: <003801bf6357$a6062b70$c504e793@cs.cas.cz>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1644

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jan Korbel wrote:
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> hi.
> on our frw running rh6.x with fwtk 2.1 and i need this ftp connect:
> inet --> frw(some port as 1999) --> ftp server in our subnet without any
> proxy commands...
> 
> how can i make it? :)
> 
> -=-=-=-=-=-=-=-=-=-=-=-=-=-
>   Jan Korbel alias JackC
>      jackc@cs.cas.cz
>     ICQ UIN: 23487453
>   IRCNet: JackC on #cvut
> -=-=-=-=-=-=-=-=-=-=-=-=-=-

1. You can't. Because FTP uses dynamically established connections for
data,
   one needs a proxy that understands the FTP protocol.
2. You shouldn't. If "our subnet" means your *internal* network,
*nothing*
   from the Internet should be allowed in. Any server should be in the
DMZ,
   or, if you don't have the hardware for a DMZ, on the FW itself. The
only
   thing that can be allowed through a FW is encrypted and authenticated
   'tunnel' traffic, like SSH.

BTW anyone on the list using SSH through a firewall? We installed it
quite some
time ago, and at that time there was *no* FTP support in it. I am also
looking
for an NT version of the SSH client - *not* a GUI tool like the one from
F-Secure,
a real port of the command-line SSH, based on the original UNIX sources.
Any
suggestions welcome with thanks (by private E-mail if you think this is
off-topic).

-- 
Michel Bardiaux
UsrConsult S.P.R.L.  Rue Margot, 37  B-1457 Nil St Vincent
Tel : +32 10 65.44.15  Fax : +32 10 65.44.10




From owner-fwtk-users@ex.tis.com Mon Jan 24 09:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA18573
	Mon, 24 Jan 2000 09:34:07 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA27386;
	Mon, 24 Jan 2000 06:37:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 06:21:37 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA21011
	for fwtk-users-outgoing; Mon, 24 Jan 2000 06:21:28 -0800 (PST)
From: Penty Wenngren <penty@nst.graphium.se>
Reply-To: penty@nst.graphium.se
Organization: Graphium Norstedts Tryckeri AB
To: fwtk-users@lists.nai.com
Subject: Re: FWTK + OpenBSD?
Date: Thu, 20 Jan 2000 15:51:39 +0100
X-Mailer: KMail [version 1.0.28]
References: <919F9F0E43E8D111AFA40000F879E2F09224BC@mailsrv.szerencsejatek.hu>
In-Reply-To: <919F9F0E43E8D111AFA40000F879E2F09224BC@mailsrv.szerencsejatek.hu>
MIME-Version: 1.0
Message-Id: <00012015525405.32519@babben.norstedtstryckeri.se>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 594

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Den Thu, 20 Jan 2000 skrev du:
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi,
> 
> Is there anybody here, who uses FWTK
> on an OpenBSD box?
> 

Yes. It works fine. Haven't got transparency to work though. Don't know if it
is OpenBSD-specific.

> I've just found only FreeBSD, at the supported
> platforms page.
> 

-- 

Penty Wenngren // Graphium Norstedts Tryckeri AB


From owner-fwtk-users@ex.tis.com Mon Jan 24 09:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA18576
	Mon, 24 Jan 2000 09:34:14 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA27454;
	Mon, 24 Jan 2000 06:37:44 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 06:22:54 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA21454
	for fwtk-users-outgoing; Mon, 24 Jan 2000 06:22:45 -0800 (PST)
Message-ID: <3889E721.A0C862B2@acrab.redepegasus.com.br>
Date: Sat, 22 Jan 2000 15:21:37 -0200
From: Lion <lion@acrab.redepegasus.com.br>
Organization: Rede Pegasus
X-Mailer: Mozilla 4.71 [en] (X11; I; Linux 2.2.5-15 i586)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@tis.com
Subject: HELP WITH TIS INSTALATION
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 749

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,
         I've a much problem to install the TIS Toolkit and I need a
HELP, because I do exactly was write in a Howto about
TIS Instalation.... but don't it's right......
         When I type make.... in the instalation show me many errors....
say that im the instalation doesn't has this archives.......
          I pick up a many files in the TIS's FTP, in the session
PATH.....but this don't soluction of mu all problems..... so fews
problems......
         Please I don't known more what to do.......
         I thankfull fot the attention......

                               Joao Pedro - 22 / 01 / 2000




From owner-fwtk-users@ex.tis.com Mon Jan 24 09:34 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA18579
	Mon, 24 Jan 2000 09:34:19 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA27465;
	Mon, 24 Jan 2000 06:37:46 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 06:21:30 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA20990
	for fwtk-users-outgoing; Mon, 24 Jan 2000 06:21:27 -0800 (PST)
Message-ID: <38869804.6CBD63F@hotmail.com>
Date: Thu, 20 Jan 2000 10:37:16 +0530
From: Naresh Narang <nkn@air.org.in>
X-Mailer: Mozilla 4.7 [en] (Win95; I)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Skey and Authserv
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 814

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello

        I downloaded skey.tar.gz in patches directory from tis.com. It
does not compile. It shows some error in a .c file. The patch for skey
given is not getting applied and it shows failed at Hunk 9 and at Hunk
30. Then I downloaded skey from the  reference for skey given in the
docs: ftp://thumper.bellcore.com/pub/nmh. This package also does not
compile. I am using RH Linux 5.2 and it has got all the libraries etc
and I have not had this type of problem any time earlier.

    Please someone tell me which auth. scheme to use for Authserv of
FWTK and where I could find it.. I could not install Authserv because of
these problems with skey.

Thanks a lot.

N.K. Narang



From owner-fwtk-users@ex.tis.com Mon Jan 24 11:33 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA19205
	Mon, 24 Jan 2000 11:33:13 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA21843;
	Mon, 24 Jan 2000 08:36:41 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 08:31:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA20329
	for fwtk-users-outgoing; Mon, 24 Jan 2000 08:31:39 -0800 (PST)
Date: Mon, 24 Jan 2000 10:35:24 -0500 (EST)
From: "Ronald J. Yacketta" <yacketta@tmp1-6606.rochester.rr.com>
To: fwtk-users@lists.nai.com
Subject: ftp-gw
Message-ID: <Pine.LNX.4.21.0001241030060.31992-100000@tmp1-6606.rochester.rr.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 863

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello all!!

I have been using tis for a good 4 or 5 months now, but have yet to
venture downthe road of enableing ftp to my site via the ftp-gw.

I have modified my inetd.conf /netperm-table as follows
ftp        stream  tcp         nowait  root    /usr/local/etc/netacl ftpd
also tried
ftp         stream  tcp         nowait  root    /usr/local/etc/ftp-gw
the later gives me connectiong refused, the former allows me to conntect
via the proxy, but when I do a ls or any command gives me the following
error
500 must be connected to remote server
ftp: bind: Address already in use

netperm-table entires:
netacl-ftpd: permit-hosts * -exec /usr/local/etc/ftp-gw
ftp-gw:     permit-hosts * -authall -log { retr stor }

Regards,
Ron




From owner-fwtk-users@ex.tis.com Mon Jan 24 14:55 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA20411
	Mon, 24 Jan 2000 14:55:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA26974;
	Mon, 24 Jan 2000 11:58:37 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 11:53:51 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA25678
	for fwtk-users-outgoing; Mon, 24 Jan 2000 11:53:41 -0800 (PST)
Message-ID: <1A2B916673DFD211ABC700805FA7AA689612A6@MSX11002>
From: "Lidgate, Chris A" <lidgaca@texaco.com>
To: "'fwtk-users@tis.com'" <fwtk-users@tis.com>
Subject: http-gw giving Network error: net_flags[4] set (read)
Date: Mon, 24 Jan 2000 13:53:48 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 828

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I'm running fwtk 2.1 on a linux box (kernel 2.0.35 rings a bell). 
Our machine gets ~ 400,000 http-gw invocations per day, and http-gw
runs in daemon mode. http-gw sits between our squid server and
the internet, so the only machine to 'hit' http-gw is the squid-server.

I've been checking the fwtk syslog file and notice 800 - 2000 daily
entries which read:

	http-gw[xxxx]: Network error: net_flags[4] set (read)

I also see (fewer) entries:

	http-gw[xxxx]: Network error: net_flags[4] set (write)

messages.

I've looked at gio.c, but don't understand enough about network io
to figure out what is happening. Would somebody be able to shed
some light on this for me ?



Chris Lidgate



	

From owner-fwtk-users@ex.tis.com Mon Jan 24 18:19 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA21087
	Mon, 24 Jan 2000 18:19:14 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA21161;
	Mon, 24 Jan 2000 15:22:42 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 15:16:32 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA18980
	for fwtk-users-outgoing; Mon, 24 Jan 2000 15:16:31 -0800 (PST)
Message-Id: <4.2.2.20000124180810.00b31ed0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Mon, 24 Jan 2000 18:10:18 -0500
To: Naresh Narang <nkn@air.org.in>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: Skey and Authserv
In-Reply-To: <38869804.6CBD63F@hotmail.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 650

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 10:37 AM 1/20/00 +0530, Naresh Narang wrote:
>         I downloaded skey.tar.gz in patches directory from tis.com. It
>does not compile. It shows some error in a .c file.
The older skey sources use functions for disabling/enabling terminal echo 
that aren't understood by some UNIX systems. Since you're actually never 
going to use those with FWTK, you can comment out the lines that are giving 
you errors until things compile. Don't use the 'key' program built that way 
- it'll echo your password.
         -Rick


From owner-fwtk-users@ex.tis.com Mon Jan 24 18:19 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA21090
	Mon, 24 Jan 2000 18:19:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA21238;
	Mon, 24 Jan 2000 15:22:52 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 15:16:35 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA18993
	for fwtk-users-outgoing; Mon, 24 Jan 2000 15:16:33 -0800 (PST)
Message-Id: <4.2.2.20000124181020.00b0a840@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Mon, 24 Jan 2000 18:12:33 -0500
To: "Lidgate, Chris A" <lidgaca@texaco.com>,
        "'fwtk-users@tis.com'" <fwtk-users@tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: http-gw giving Network error: net_flags[4] set (read)
In-Reply-To: <1A2B916673DFD211ABC700805FA7AA689612A6@MSX11002>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 675

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 01:53 PM 1/24/00 -0600, Lidgate, Chris A wrote:
>I've been checking the fwtk syslog file and notice 800 - 2000 daily
>entries which read:
>
>         http-gw[xxxx]: Network error: net_flags[4] set (read)

That means that some routine in the http-gw tried to read from a socket 
that had already been closed. (Similar to the '(write)' error, except that 
those were attempted writes). They're harmless. (But they do indicate a bug 
somewhere - an error occurred but http-gw didn't remember that it no longer 
had a connection.)
         -Rick


From owner-fwtk-users@ex.tis.com Mon Jan 24 19:51 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA21400
	Mon, 24 Jan 2000 19:51:57 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA02264;
	Mon, 24 Jan 2000 16:55:26 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 24 Jan 2000 16:50:31 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA01176
	for fwtk-users-outgoing; Mon, 24 Jan 2000 16:50:29 -0800 (PST)
Message-ID: <001501bf66e6$fd36c700$440000c0@wholeworld.com>
From: "Jonathan B. Smith" <jsmith@bajasystems.com>
To: <fwtk-users@ex.tis.com>
References: <20000115000657.28684.qmail@web107.yahoomail.com>
Subject: VPN
Date: Mon, 24 Jan 2000 19:40:33 -0800
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
X-SLUIDL: 533884EE-CEAF11D3-A4650050-047807B2
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 328

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Does anyone currently run any VPN packages or have any suggested methodology
for running VPN through Redhat 6.0 running FWTK??

Jonathan B. Smith
Network Administrator
United Support Systems Inc





From owner-fwtk-users@ex.tis.com Tue Jan 25 03:15 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA22563
	Tue, 25 Jan 2000 03:15:39 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA24510;
	Tue, 25 Jan 2000 00:19:09 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 25 Jan 2000 00:13:44 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA23380
	for fwtk-users-outgoing; Tue, 25 Jan 2000 00:13:42 -0800 (PST)
Date: Tue, 25 Jan 2000 09:13:59 +0100 (W. Europe Standard Time)
From: "Carlos A. Ferraro Cavallini" <carlos@spotfire.com>
Reply-To: FWTK Users List <fwtk-users@lists.tislabs.com>
To: FWTK Users List <fwtk-users@ex.tis.com>
Subject: Re: VPN
In-Reply-To: <001501bf66e6$fd36c700$440000c0@wholeworld.com>
Message-ID: <Pine.WNT.4.10.10001250910040.155-100000@DIAMOND.spotfire.com>
X-X-Sender: carlos@mail.spotfire.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 750

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Mon, 24 Jan 2000, Jonathan B. Smith wrote:

JBS> Does anyone currently run any VPN packages or have any
JBS> suggested methodology for running VPN through Redhat 6.0
JBS> running FWTK??

A VPN does not relate to TIS, since it's only connecting both your
inner (i.e. private) networks toghether.

(I would suggest a hardware VPN solution. Totally independent of
current software solution and thus simpler and probably safer.)


Wrong newsgroup I guess...

Regards,
	/C

_____________________________________________________________
Carlos A. Ferraro Cavallini
R&D Software, Spotfire AB
http://www.spotfire.com/~carlos


From owner-fwtk-users@ex.tis.com Tue Jan 25 03:30 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA22590
	Tue, 25 Jan 2000 03:30:58 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA26610;
	Tue, 25 Jan 2000 00:34:29 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 25 Jan 2000 00:30:39 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA25763
	for fwtk-users-outgoing; Tue, 25 Jan 2000 00:30:37 -0800 (PST)
Message-ID: <20000125083043.62817.qmail@hotmail.com>
X-Originating-IP: [203.197.220.242]
From: "Naresh Narang" <nareshnarang@hotmail.com>
To: fwtk-users@ex.tis.com
Subject: Auth. for Http-gw
Date: Tue, 25 Jan 2000 14:00:43 IST
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; format=flowed
Content-Length: 601

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello

    I've been trying to implement Authentication with http-gw from FWTK 2.1 
but no success so far. The requirement is that users first authenticate 
themselves with a username and password (one time only) and then they get 
Internet access through http-gw between specified times. Please someone tell 
me how to do it.

Thanks,
N.K. Narang
Delhi, India
______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Tue Jan 25 03:50 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id DAA22659
	Tue, 25 Jan 2000 03:50:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id AAA28872;
	Tue, 25 Jan 2000 00:53:57 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 25 Jan 2000 00:50:08 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA27999
	for fwtk-users-outgoing; Tue, 25 Jan 2000 00:50:06 -0800 (PST)
Message-ID: <919F9F0E43E8D111AFA40000F879E2F09337EC@mailsrv.szerencsejatek.hu>
From: =?iso-8859-2?Q?Tak=E1cs_Istv=E1n?= <istvan.takacs@szerencsejatek.hu>
To: FWTK Users List <fwtk-users@ex.tis.com>
Subject: RE: VPN
Date: Tue, 25 Jan 2000 09:47:45 +0100
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.0.1461.28)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 722

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

> JBS> Does anyone currently run any VPN packages or have any
> JBS> suggested methodology for running VPN through Redhat 6.0
> JBS> running FWTK??
> A VPN does not relate to TIS, since it's only connecting both your
> inner (i.e. private) networks toghether.
> (I would suggest a hardware VPN solution. Totally independent of
> current software solution and thus simpler and probably safer.)

There is a good HOWTO in this topic at 
http://www.linuxdoc.org/HOWTO/mini/VPN.html

It explains how you could install FWTK, ipchains & ssh to get a
working VPN.

Good luck!

Regards,

		Istvan

From owner-fwtk-users@ex.tis.com Wed Jan 26 09:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA29025
	Wed, 26 Jan 2000 09:27:21 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16293;
	Wed, 26 Jan 2000 06:30:51 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 06:20:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA13326
	for fwtk-users-outgoing; Wed, 26 Jan 2000 06:20:44 -0800 (PST)
Date: Tue, 25 Jan 2000 07:10:26 -0500 (EST)
From: "Ronald J. Yacketta" <yacketta@tmp1-6606.rochester.rr.com>
To: fwtk-users@ex.tis.com
Subject: ftp-gw
Message-ID: <Pine.LNX.4.21.0001250710120.5604-100000@tmp1-6606.rochester.rr.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 867

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



Hello all!!

I have been using tis for a good 4 or 5 months now, but have yet to
venture downthe road of enableing ftp to my site via the ftp-gw.

I have modified my inetd.conf /netperm-table as follows
ftp        stream  tcp         nowait  root    /usr/local/etc/netacl ftpd
also tried
ftp         stream  tcp         nowait  root    /usr/local/etc/ftp-gw
the later gives me connectiong refused, the former allows me to conntect
via the proxy, but when I do a ls or any command gives me the following
error
500 must be connected to remote server
ftp: bind: Address already in use

netperm-table entires:
netacl-ftpd: permit-hosts * -exec /usr/local/etc/ftp-gw
ftp-gw:     permit-hosts * -authall -log { retr stor }

Regards,
Ron






From owner-fwtk-users@ex.tis.com Wed Jan 26 09:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA29028
	Wed, 26 Jan 2000 09:27:26 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16329;
	Wed, 26 Jan 2000 06:30:58 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 06:20:50 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA13325
	for fwtk-users-outgoing; Wed, 26 Jan 2000 06:20:44 -0800 (PST)
Date: Tue, 25 Jan 2000 09:58:02 -0500 (EST)
From: "Ronald J. Yacketta" <yacketta@tmp1-6606.rochester.rr.com>
To: fwtk-users@ex.tis.com
Subject: ftp-gw partialy solved problem
Message-ID: <Pine.LNX.4.21.0001250957390.1188-100000@tmp1-6606.rochester.rr.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1167

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

okay,
I finaly got ftp-gw to work (somewhat) I am able to connect to the proxy,
authenticate etc..
BUT when I try a user blah@ftp.myinternalnet.com I get the following

[root@tmp1-6606 /root]# ftp ftp.newmg.net
Connected to stratus.newmg.net.
220-Proxy first requires authentication
220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.
Name (ftp.newmg.net:yacketta): yacketta
331 Enter authentication password for yacketta
Password:
230 User authenticated to proxy
ftp> user yacketta@10.100.100.1
331-(----GATEWAY CONNECTED TO 10.100.100.1----)
331-(220-Proxy first requires authentication)
331-(220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.)
331 Enter authentication password for yacketta
Password:
230 User authenticated to proxy
ftp> ls
500 must be connected to remote server
ftp: bind: Address already in use
ftp>

what am I doing wrong here?
the fwtk sits between my cable modem and my internal net (which has 2 98
boxes and another linux box server httpd/ftpd)

any help would be grealy appreciated
Ron



From owner-fwtk-users@ex.tis.com Wed Jan 26 09:27 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA29031
	Wed, 26 Jan 2000 09:27:37 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16369;
	Wed, 26 Jan 2000 06:31:07 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 06:21:53 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA13546
	for fwtk-users-outgoing; Wed, 26 Jan 2000 06:21:43 -0800 (PST)
Message-ID: <388D27CE.82747F3C@air.org.in>
Date: Tue, 25 Jan 2000 10:04:22 +0530
From: Naresh Narang <nkn@air.org.in>
X-Mailer: Mozilla 4.7 [en] (Win95; I)
X-Accept-Language: en
MIME-Version: 1.0
To: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Auth. for Http-gw
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 474

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello

    I've been trying to implement Authentication with http-gw but no
success so far. The requirement is that users first authenticate
themselves with a username and password (one time only) and then they
get Internet access through http-gw between specified times. Please
someone tell me how to do it.

Thanks,
N.K. Narang
Delhi, India



From owner-fwtk-users@ex.tis.com Wed Jan 26 11:35 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA29401
	Wed, 26 Jan 2000 11:35:11 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA09988;
	Wed, 26 Jan 2000 08:38:39 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 08:33:02 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA08410
	for fwtk-users-outgoing; Wed, 26 Jan 2000 08:32:58 -0800 (PST)
Message-Id: <3.0.3.32.20000126091903.00707824@mail.denver.gd-is.com>
X-Sender: dsmith@mail.denver.gd-is.com
X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.3 (32)
Date: Wed, 26 Jan 2000 09:19:03 -0700
To: "Ronald J. Yacketta" <yacketta@tmp1-6606.rochester.rr.com>
From: Donald J Smith <donald.j.smith@gd-is.com>
Subject: Re: ftp-gw partialy solved problem
Cc: fwtk-users@ex.tis.com
In-Reply-To: <Pine.LNX.4.21.0001250957390.1188-100000@tmp1-6606.rocheste
 r.rr.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 2522

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 09:58 AM 1/25/00 -0500, you wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in
the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>okay,
>I finaly got ftp-gw to work (somewhat) I am able to connect to the proxy,
>authenticate etc..
What changes did you make?
Are you running it as a daemon now or still out of inetd?

>BUT when I try a user blah@ftp.myinternalnet.com I get the following
>
>[root@tmp1-6606 /root]# ftp ftp.newmg.net
>Connected to stratus.newmg.net.
>220-Proxy first requires authentication
>220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.
>Name (ftp.newmg.net:yacketta): yacketta
>331 Enter authentication password for yacketta
>Password:
>230 User authenticated to proxy
>ftp> user yacketta@10.100.100.1
>331-(----GATEWAY CONNECTED TO 10.100.100.1----)
>331-(220-Proxy first requires authentication)
>331-(220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.)
>331 Enter authentication password for yacketta
>Password:
>230 User authenticated to proxy
>ftp> ls
this sounds like the command port isn't getting linked up. There is a
discussion about ports and ftp-gw on
the faq. http://www.fwtk.org/fwtk/faq/
>500 must be connected to remote server
>ftp: bind: Address already in use
sounds like you might be running an ftp server out of both inetd.conf and
/etc/rc.d/rc3.d/S99local as daemon.
When bind complains about port in use that is usually the cause.
>ftp>
>
>what am I doing wrong here?
>the fwtk sits between my cable modem and my internal net (which has 2 98
>boxes and another linux box server httpd/ftpd)
>
>any help would be grealy appreciated
>Ron
>
>
>
------------------------------------------------------------------------------
Don Smith                               General Dynamics Information Systems
Systems Administrator                   8005 South Chester St
                                        EngleWood, Co. 80112
Phone (303) 649-7554
FAX   (303) 649-7504			donald.j.smith@gd-is.com
Error msgs that I love: 
"Keyboard not found press F1 to continue" (pc bios)
"Harddrive controller failure insert new disk and press any key to
continue" (pc bios)
"The disk is write protected Remove the write protect or
 use another disk." (nt)
User must change his password before he logs in the first time. (nt)
------------------------------------------------------------------------------


From owner-fwtk-users@ex.tis.com Wed Jan 26 11:48 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA29439
	Wed, 26 Jan 2000 11:48:53 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA13111;
	Wed, 26 Jan 2000 08:52:24 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 08:48:58 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA12032
	for fwtk-users-outgoing; Wed, 26 Jan 2000 08:48:56 -0800 (PST)
X-Authentication-Warning: tmp1-6606.rochester.rr.com: yacketta owned process doing -bs
Date: Wed, 26 Jan 2000 11:45:14 -0500 (EST)
From: "Ronald J. Yacketta" <ryacket1@rochester.rr.com>
To: Donald J Smith <donald.j.smith@gd-is.com>
cc: fwtk-users@ex.tis.com
Subject: Re: ftp-gw partialy solved problem
In-Reply-To: <3.0.3.32.20000126091903.00707824@mail.denver.gd-is.com>
Message-ID: <Pine.LNX.4.21.0001261144400.11526-100000@tmp1-6606.rochester.rr.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2881

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Wed, 26 Jan 2000, Donald J Smith wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> At 09:58 AM 1/25/00 -0500, you wrote:
> >[To be removed from this list send the message "unsubscribe fwtk-users" in
> the
> >BODY of a mail message to majordomo@ex.tis.com.]
> >
> >okay,
> >I finaly got ftp-gw to work (somewhat) I am able to connect to the proxy,
> >authenticate etc..
> What changes did you make?
> Are you running it as a daemon now or still out of inetd?

running it from inetd

> 
> >BUT when I try a user blah@ftp.myinternalnet.com I get the following
> >
> >[root@tmp1-6606 /root]# ftp ftp.newmg.net
> >Connected to stratus.newmg.net.
> >220-Proxy first requires authentication
> >220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.
> >Name (ftp.newmg.net:yacketta): yacketta
> >331 Enter authentication password for yacketta
> >Password:
> >230 User authenticated to proxy
> >ftp> user yacketta@10.100.100.1
> >331-(----GATEWAY CONNECTED TO 10.100.100.1----)
> >331-(220-Proxy first requires authentication)
> >331-(220 tmp1-6606.rochester.rr.com FTP proxy (Version V2.1) ready.)
> >331 Enter authentication password for yacketta
> >Password:
> >230 User authenticated to proxy
> >ftp> ls

hrm.. will check the faq

> this sounds like the command port isn't getting linked up. There is a
> discussion about ports and ftp-gw on
> the faq. http://www.fwtk.org/fwtk/faq/
> >500 must be connected to remote server
> >ftp: bind: Address already in use
> sounds like you might be running an ftp server out of both inetd.conf and
> /etc/rc.d/rc3.d/S99local as daemon.
> When bind complains about port in use that is usually the cause.
> >ftp>
> >
> >what am I doing wrong here?
> >the fwtk sits between my cable modem and my internal net (which has 2 98
> >boxes and another linux box server httpd/ftpd)
> >
> >any help would be grealy appreciated
> >Ron
> >
> >
> >
> ------------------------------------------------------------------------------
> Don Smith                               General Dynamics Information Systems
> Systems Administrator                   8005 South Chester St
>                                         EngleWood, Co. 80112
> Phone (303) 649-7554
> FAX   (303) 649-7504			donald.j.smith@gd-is.com
> Error msgs that I love: 
> "Keyboard not found press F1 to continue" (pc bios)
> "Harddrive controller failure insert new disk and press any key to
> continue" (pc bios)
> "The disk is write protected Remove the write protect or
>  use another disk." (nt)
> User must change his password before he logs in the first time. (nt)
> ------------------------------------------------------------------------------
> 




From owner-fwtk-users@ex.tis.com Wed Jan 26 17:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA00868
	Wed, 26 Jan 2000 17:40:10 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA26815;
	Wed, 26 Jan 2000 14:44:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 14:37:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA25375
	for fwtk-users-outgoing; Wed, 26 Jan 2000 14:37:47 -0800 (PST)
X-Authentication-Warning: fire1.informador.com.mx: Unknown UID 6 set sender to <hector@informador.com.mx> using -f
Message-ID: <008f01bf684d$e9381340$fd01a8c0@elinformador.com.mx>
From: "Cristian Trujillo G." <hector@informador.com.mx>
To: <fwtk-users@lists.nai.com>
Subject: Lotus notes...
Date: Wed, 26 Jan 2000 16:37:21 -0600
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2919.6600
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 336

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Has anyone set this up so that it allowed Lotus notes
clients on the inside to speak with lotus notes
servers on the outside?
what files modifi...???
/etc/serverces/ ..???
/usr/local/ets/netperm-table..??


From owner-fwtk-users@ex.tis.com Wed Jan 26 18:22 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA00962
	Wed, 26 Jan 2000 18:22:06 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA02996;
	Wed, 26 Jan 2000 15:26:07 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 15:21:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA01982
	for fwtk-users-outgoing; Wed, 26 Jan 2000 15:21:46 -0800 (PST)
Message-ID: <388F81B3.8A0D2A05@v-one.com>
Date: Wed, 26 Jan 2000 18:22:27 -0500
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.7 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: "Cristian Trujillo G." <hector@informador.com.mx>
CC: fwtk-users@lists.nai.com
Subject: Re: Lotus notes...
References: <008f01bf684d$e9381340$fd01a8c0@elinformador.com.mx>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 585

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

"Cristian Trujillo G." wrote:
> 
> Has anyone set this up so that it allowed Lotus notes
> clients on the inside to speak with lotus notes
> servers on the outside?
> what files modifi...???
> /etc/serverces/ ..???
> /usr/local/ets/netperm-table..??

More info is on the FWTK FAQ:

2.6.7 How do I plug to a Lotus Notes server?
http://www.fwtk.org/fwtk/faq/faq.html#2.6.7

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Wed Jan 26 19:14 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA01062
	Wed, 26 Jan 2000 19:14:22 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA08578;
	Wed, 26 Jan 2000 16:18:22 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 26 Jan 2000 16:13:29 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA07617
	for fwtk-users-outgoing; Wed, 26 Jan 2000 16:13:28 -0800 (PST)
Date: Wed, 26 Jan 2000 19:13:10 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: "Cristian Trujillo G." <hector@informador.com.mx>
cc: fwtk-users@lists.nai.com
Subject: Re: Lotus notes...
In-Reply-To: <008f01bf684d$e9381340$fd01a8c0@elinformador.com.mx>
Message-ID: <Pine.GSO.4.10.10001261912280.7486-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 731

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I've done this by using socksified lotus notes clients (under sockscap/32)
to external notes servers.  Seems to be pretty functional.  Could not make
it work easily with plug-gw.

ted keller


On Wed, 26 Jan 2000, Cristian Trujillo G. wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> Has anyone set this up so that it allowed Lotus notes
> clients on the inside to speak with lotus notes
> servers on the outside?
> what files modifi...???
> /etc/serverces/ ..???
> /usr/local/ets/netperm-table..??
> 


From owner-fwtk-users@ex.tis.com Thu Jan 27 08:26 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA03114
	Thu, 27 Jan 2000 08:26:33 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA20977;
	Thu, 27 Jan 2000 05:30:36 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 05:25:39 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA20091
	for fwtk-users-outgoing; Thu, 27 Jan 2000 05:25:37 -0800 (PST)
Message-ID: <38904590.1934507D@altavista.net>
Date: Thu, 27 Jan 2000 14:18:08 +0100
From: "Alvaro =?iso-8859-1?Q?Mu=F1oz=2DAycuens?= Mtnz." <alvarom@altavista.net>
Organization: =?iso-8859-1?Q?=A4=BA=B0=60=B0=BA=A4=F8?=,=?iso-8859-1?Q?=B8=B8?=,
	=?iso-8859-1?Q?=F8=A4=BA=B0=60?= Aycuens Security 
	=?iso-8859-1?Q?=B0=BA=A4=F8?=,=?iso-8859-1?Q?=B8=B8?=,
	=?iso-8859-1?Q?=F8=A4=BA=B0=60=B0=BA=A4=F8?=,=?iso-8859-1?Q?=B8?=
X-Mailer: Mozilla 4.7 [en] (Win98; U)
X-Accept-Language: en,es-ES
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: smap+yao patches compilation error
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 784

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello all, i have get compilation errors on a fwtk2.1 on linux, when
compliling smap with yao patches.
I get the following error:
 /tmp/fwtk/smap/smap.c:2049: undefined reference to 'res-query'
undefined collect2: ld returned 1 exist status
make[1]: leaving directory


Any ideas, thanks in advance

-- 
Alvaro Muñoz-Aycuens Martinez
El Argonauta Virtual
C\Gaztambide 9
28015 Madrid Spain
alvarom@altavista.net

"Hacking is not about answers. Hacking is about the path you take to
find
 the answers." --ReDragon

KeyID 2048/0xA1378C19
Fingerprint BB E8 6D 56 83 4A 3A 9E D2 12 2F AA AB 9F 76 72
PGP Key Available at http:\\alvarom.freeshell.org/pgp.html


From owner-fwtk-users@ex.tis.com Thu Jan 27 08:41 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA03226
	Thu, 27 Jan 2000 08:41:20 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA23153;
	Thu, 27 Jan 2000 05:45:23 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 05:42:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA22427
	for fwtk-users-outgoing; Thu, 27 Jan 2000 05:42:45 -0800 (PST)
From: "Alexander Waller" <a.waller@webpoint.at>
To: <fwtk-users@ex.tis.com>
Subject: AW: smap+yao patches compilation error
Date: Thu, 27 Jan 2000 14:39:40 +0100
Message-ID: <NCBBLPGKOGHDEEJNFBNMKEDADBAA.a.waller@webpoint.at>
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
In-Reply-To: <38904590.1934507D@altavista.net>
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1716

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

modifiy in Makefile.config AUXLIB= -lcrypt -lgdbm -lresolv
then it should work.

I solved that problem recently that way !

Alex.

+------------------------------------------+
+ Alex Waller                              +
+ WebPoint                                 +
+ Internet-Services                        +
+ A-6840 Götzis                            +
+ Mobil +43 676 4121128                    +
+ http://www.webpoint.at                   +
+------------------------------------------+

PGP-KEY : http://city.webpoint.at/pgp/pgp_aw.htm


-----Ursprüngliche Nachricht-----
Von: owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com]Im
Auftrag von Alvaro Muñoz-Aycuens Mtnz.
Gesendet: Donnerstag, 27. Jänner 2000 14:18
An: fwtk-users@ex.tis.com
Betreff: smap+yao patches compilation error


[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

Hello all, i have get compilation errors on a fwtk2.1 on linux, when
compliling smap with yao patches.
I get the following error:
 /tmp/fwtk/smap/smap.c:2049: undefined reference to 'res-query'
undefined collect2: ld returned 1 exist status
make[1]: leaving directory


Any ideas, thanks in advance

--
Alvaro Muñoz-Aycuens Martinez
El Argonauta Virtual
C\Gaztambide 9
28015 Madrid Spain
alvarom@altavista.net

"Hacking is not about answers. Hacking is about the path you take to
find
 the answers." --ReDragon

KeyID 2048/0xA1378C19
Fingerprint BB E8 6D 56 83 4A 3A 9E D2 12 2F AA AB 9F 76 72
PGP Key Available at http:\\alvarom.freeshell.org/pgp.html


From owner-fwtk-users@ex.tis.com Thu Jan 27 09:06 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA03344
	Thu, 27 Jan 2000 09:06:44 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA26761;
	Thu, 27 Jan 2000 06:10:47 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 06:08:35 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA25969
	for fwtk-users-outgoing; Thu, 27 Jan 2000 06:08:33 -0800 (PST)
From: Penty Wenngren <penty@nst.graphium.se>
Reply-To: penty@nst.graphium.se
Organization: Graphium Norstedts Tryckeri AB
To: fwtk-users@ex.tis.com
Subject: Re: smap+yao patches compilation error
Date: Thu, 27 Jan 2000 14:57:02 +0100
X-Mailer: KMail [version 1.0.28]
References: <38904590.1934507D@altavista.net>
In-Reply-To: <38904590.1934507D@altavista.net>
MIME-Version: 1.0
Message-Id: <00012714580208.16603@babben.norstedtstryckeri.se>
X-MIME-Autoconverted: from 8bit to quoted-printable by babben.norstedtstryckeri.se id OAA17009
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by relay2.nai.com id FAA24503
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 719

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Den Thu, 27 Jan 2000 skrev Alvaro Muñoz-Aycuens Mtnz.:
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello all, i have get compilation errors on a fwtk2.1 on linux, when
> compliling smap with yao patches.
> I get the following error:
>  /tmp/fwtk/smap/smap.c:2049: undefined reference to 'res-query'
> undefined collect2: ld returned 1 exist status
> make[1]: leaving directory

I think that if you add -lresolv to the Makefile it will work.

-- 

Penty Wenngren // Graphium Norstedts Tryckeri AB


From owner-fwtk-users@ex.tis.com Thu Jan 27 10:35 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA03726
	Thu, 27 Jan 2000 10:35:28 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA05217;
	Thu, 27 Jan 2000 07:39:26 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 07:32:27 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA04026
	for fwtk-users-outgoing; Thu, 27 Jan 2000 07:32:25 -0800 (PST)
Message-Id: <v02120d03b4b6919e625f@[134.60.81.1]>
Mime-Version: 1.0
Date: Thu, 27 Jan 2000 16:30:18 -0800
To: fwtk-users@lists.nai.com
From: heim@sip.medizin.uni-ulm.de (Stefan Heim, Dipl.-Ing.)
Subject: External Nameserver
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 604

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,
what is the easy way to permit internal clients to use
the external name-services through the TIS-FW ?

Thanks!

/--------------------------------o00-----00o-------------------------\
Stefan Heim

Uni Ulm
Sektion Informatik in der Psychotherapie
Am Hochstraess 8
89081 Ulm
Germany
E-Mail: heim@sip.Medizin.Uni-Ulm.de
http://sip.medizin.uni-ulm.de
Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
\-------------------------------ooo0-----0ooOo---------------------/



From owner-fwtk-users@ex.tis.com Thu Jan 27 14:38 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA04890
	Thu, 27 Jan 2000 14:38:08 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA10716;
	Thu, 27 Jan 2000 11:41:46 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 11:34:53 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA09261
	for fwtk-users-outgoing; Thu, 27 Jan 2000 11:34:51 -0800 (PST)
Message-Id: <3.0.3.32.20000127120850.007112b0@mail.denver.gd-is.com>
X-Sender: dsmith@mail.denver.gd-is.com
X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.3 (32)
Date: Thu, 27 Jan 2000 12:08:50 -0700
To: heim@sip.medizin.uni-ulm.de (Stefan Heim, Dipl.-Ing.),
        fwtk-users@lists.nai.com
From: Donald J Smith <donald.j.smith@gd-is.com>
Subject: Re: External Nameserver
In-Reply-To: <v02120d03b4b6919e625f@[134.60.81.1]>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 1657

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 04:30 PM 1/27/00 -0800, Stefan Heim, Dipl.-Ing. wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in
the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>Hello,
>what is the easy way to permit internal clients to use
>the external name-services through the TIS-FW ?
Many people do a split dns, some people don't check the faq for discussions
on 
how to do this.
>
>Thanks!
>
>/--------------------------------o00-----00o-------------------------\
>Stefan Heim
>
>Uni Ulm
>Sektion Informatik in der Psychotherapie
>Am Hochstraess 8
>89081 Ulm
>Germany
>E-Mail: heim@sip.Medizin.Uni-Ulm.de
>http://sip.medizin.uni-ulm.de
>Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
>\-------------------------------ooo0-----0ooOo---------------------/
>
>
>
------------------------------------------------------------------------------
Don Smith                               General Dynamics Information Systems
Systems Administrator                   8005 South Chester St
                                        EngleWood, Co. 80112
Phone (303) 649-7554
FAX   (303) 649-7504			donald.j.smith@gd-is.com
Error msgs that I love: 
"Keyboard not found press F1 to continue" (pc bios)
"Harddrive controller failure insert new disk and press any key to
continue" (pc bios)
"The disk is write protected Remove the write protect or
 use another disk." (nt)
User must change his password before he logs in the first time. (nt)
------------------------------------------------------------------------------




From owner-fwtk-users@ex.tis.com Thu Jan 27 15:52 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA05653
	Thu, 27 Jan 2000 15:52:05 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA19154;
	Thu, 27 Jan 2000 12:55:53 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 12:52:12 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA18120
	for fwtk-users-outgoing; Thu, 27 Jan 2000 12:52:10 -0800 (PST)
X-Authentication-Warning: fire1.informador.com.mx: Unknown UID 6 set sender to <hector@informador.com.mx> using -f
Message-ID: <002601bf6908$3ecadbc0$fd01a8c0@elinformador.com.mx>
From: "Cristian Trujillo G." <hector@informador.com.mx>
To: <fwtk-users@lists.nai.com>
References: <008f01bf684d$e9381340$fd01a8c0@elinformador.com.mx>
Subject: more lotus notes
Date: Thu, 27 Jan 2000 14:51:11 -0600
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2919.6600
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 773

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Ok
This is my configuration:
in /etc/services i have

notes           1352/tcp   plug-gw #Lotus Note
#lotusnote      1352/udp   #Lotus Note

in /etc/inetd.conf
notes    stream tcp    nowait  root    /usr/local/etc/plug-gw  plug-gw notes

in /usr/local/etc/netperm-table
plug-gw: permit-hosts *
plug-gw: port notes * -plug-to  goffy.com -port 1352
plug-gw: port 1352 goffy.com -plug-to * -port notes

and the result
Jan 27 14:47:21 fire1 plug-gw[6618]: 192.168.1.253 host address lookup
failed
Jan 27 14:47:21 fire1 plug-gw[6618]: deny host=unknown/192.168.1.253
service=notes

what is wrong...???
i do not view the domino server...
thanks





From owner-fwtk-users@ex.tis.com Thu Jan 27 16:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA05982
	Thu, 27 Jan 2000 16:09:15 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA22379;
	Thu, 27 Jan 2000 13:13:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 13:09:33 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA21279
	for fwtk-users-outgoing; Thu, 27 Jan 2000 13:09:31 -0800 (PST)
Message-ID: <20679EBC9C90D311A12F00E0293308F0085172@NTSX>
From: Ron Keith <ronk@wsulaw.edu>
To: fwtk-users@lists.nai.com
Subject: routing
Date: Thu, 27 Jan 2000 13:10:23 -0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 495

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have the fwtk2 set up on a bastion host ...  192.168.internal ip's

I have both internal and external ethernet cards active with ipv4 true
however, I cannot route from the internal 
dhcp 192 #'s

 

Ron Keith   :-)
Director of Information Technology
Western State University School of Law
(714) 738-1000 Ext 2953

"Linux, the last service pack you'll ever need."


From owner-fwtk-users@ex.tis.com Thu Jan 27 17:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA07688
	Thu, 27 Jan 2000 17:12:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA29407;
	Thu, 27 Jan 2000 14:16:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 14:12:48 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA28427
	for fwtk-users-outgoing; Thu, 27 Jan 2000 14:12:46 -0800 (PST)
Message-Id: <4.2.2.20000127165715.00b0eea0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Thu, 27 Jan 2000 16:58:58 -0500
To: "Cristian Trujillo G." <hector@informador.com.mx>,
        <fwtk-users@lists.nai.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: more lotus notes
In-Reply-To: <002601bf6908$3ecadbc0$fd01a8c0@elinformador.com.mx>
References: <008f01bf684d$e9381340$fd01a8c0@elinformador.com.mx>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 448

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 02:51 PM 1/27/00 -0600, Cristian Trujillo G. wrote:
>in /usr/local/etc/netperm-table
>plug-gw: permit-hosts *
>plug-gw: port notes * -plug-to  goffy.com -port 1352
>plug-gw: port 1352 goffy.com -plug-to * -port notes

Change these to:
notes: permit-hosts *
notes: port notes * -plug-to ..
notes: ...
         -Rick


From owner-fwtk-users@ex.tis.com Thu Jan 27 20:52 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA15706
	Thu, 27 Jan 2000 20:52:28 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA18842;
	Thu, 27 Jan 2000 17:56:01 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 27 Jan 2000 17:52:40 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA18054
	for fwtk-users-outgoing; Thu, 27 Jan 2000 17:52:39 -0800 (PST)
Message-ID: <08E056359810D2118E4900805FC1F945036105DB@dsntexsrv1.diasham.com>
From: "Gober, Lowman" <lowman@udscorp.com>
To: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
Subject: is this list active?
Date: Thu, 27 Jan 2000 19:52:53 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 150

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

is this list active?

From owner-fwtk-users@ex.tis.com Fri Jan 28 04:46 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA10236
	Fri, 28 Jan 2000 04:46:25 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA09008;
	Fri, 28 Jan 2000 01:49:19 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 01:46:13 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA08186
	for fwtk-users-outgoing; Fri, 28 Jan 2000 01:46:11 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <38916564.5EB0DED1@usrconsult.be>
Date: Fri, 28 Jan 2000 10:46:12 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@lists.nai.com
Subject: Re: External Nameserver
References: <3.0.3.32.20000127120850.007112b0@mail.denver.gd-is.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 663

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Donald J Smith wrote:
> At 04:30 PM 1/27/00 -0800, Stefan Heim, Dipl.-Ing. wrote:
> >Hello,
> >what is the easy way to permit internal clients to use
> >the external name-services through the TIS-FW ?
> Many people do a split dns, some people don't check the faq for discussions
> on
> how to do this.

What are the security implications of split DNS? Can a "DNS spoofing"
attack
propagate to the inside net?

-- 
Michel Bardiaux
UsrConsult S.P.R.L.  Rue Margot, 37  B-1457 Nil St Vincent
Tel : +32 10 65.44.15  Fax : +32 10 65.44.10

From owner-fwtk-users@ex.tis.com Fri Jan 28 10:21 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA13896
	Fri, 28 Jan 2000 10:21:47 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA04924;
	Fri, 28 Jan 2000 07:25:12 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 07:16:50 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA01793
	for fwtk-users-outgoing; Fri, 28 Jan 2000 07:16:46 -0800 (PST)
Message-ID: <20679EBC9C90D311A12F00E0293308F008518F@NTSX>
From: Ron Keith <ronk@wsulaw.edu>
To: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
Subject: AIM
Date: Fri, 28 Jan 2000 07:17:35 -0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 497

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Does anyone know of some good scanning tools for linux ... I keep getting
compromised by hackers

also, is there a ipchain way or another of stopping aol instant messenger


thanks folks in advance ...

Ron Keith   :-)
Director of Information Technology
Western State University School of Law
(714) 738-1000 Ext 2953

"Linux, the last service pack you'll ever need."


From owner-fwtk-users@ex.tis.com Fri Jan 28 10:22 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA13907
	Fri, 28 Jan 2000 10:22:19 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA05134;
	Fri, 28 Jan 2000 07:25:43 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 07:18:35 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA02335
	for fwtk-users-outgoing; Fri, 28 Jan 2000 07:18:32 -0800 (PST)
Message-Id: <3.0.6.32.20000128110239.00c593e0@mail.lr.isla.pt>
X-Sender: ngg@mail.lr.isla.pt
X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.6 (32)
Date: Fri, 28 Jan 2000 11:02:39 +0000
To: Ron Keith <ronk@wsulaw.edu>
From: Nuno Guarda <nuno.guarda@lr.isla.pt>
Subject: Re: routing
Cc: fwtk-users@lists.nai.com
In-Reply-To: <20679EBC9C90D311A12F00E0293308F0085172@NTSX>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 586

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 13:10 27-01-2000 -0800, you wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in
the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>I have the fwtk2 set up on a bastion host ...  192.168.internal ip's
>
>I have both internal and external ethernet cards active with ipv4 true
>however, I cannot route from the internal 
>dhcp 192 #'s

If I fully understand your point, the problem is that DHCP is not routable.

Nuno



From owner-fwtk-users@ex.tis.com Fri Jan 28 10:23 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA13926
	Fri, 28 Jan 2000 10:23:38 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA05662;
	Fri, 28 Jan 2000 07:27:07 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 07:19:54 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA02767
	for fwtk-users-outgoing; Fri, 28 Jan 2000 07:19:37 -0800 (PST)
From: ark@eltex.ru
Date: Fri, 28 Jan 2000 13:39:37 +0300
Message-Id: <200001281039.NAA11858@paranoid.eltex.spb.ru>
In-Reply-To: <002601bf6908$3ecadbc0$fd01a8c0@elinformador.com.mx> from ""Cristian Trujillo G." <hector@informador.com.mx>"
Organization: "Klingon Imperial Intelligence Service"
Subject: Re: more lotus notes
To: hector@informador.com.mx
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1664

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

FAQ.

"Cristian Trujillo G." <hector@informador.com.mx> said :

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> Ok
> This is my configuration:
> in /etc/services i have
> 
> notes           1352/tcp   plug-gw #Lotus Note
> #lotusnote      1352/udp   #Lotus Note
> 
> in /etc/inetd.conf
> notes    stream tcp    nowait  root    /usr/local/etc/plug-gw  plug-gw notes
> 
> in /usr/local/etc/netperm-table
> plug-gw: permit-hosts *
> plug-gw: port notes * -plug-to  goffy.com -port 1352
> plug-gw: port 1352 goffy.com -plug-to * -port notes
> 
> and the result
> Jan 27 14:47:21 fire1 plug-gw[6618]: 192.168.1.253 host address lookup
> failed
> Jan 27 14:47:21 fire1 plug-gw[6618]: deny host=unknown/192.168.1.253
> service=notes
> 
> what is wrong...???
> i do not view the domino server...
> thanks
 

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOJFx6KH/mIJW9LeBAQHPdgP/bchgU5xyi5wxsh54WQxCYB1gLoA7/Mhs
7QSJKYcdBKmg+kUmFPN7MY/CzUjSpZkVZSM3Q5TnavFDKzZ/46zLbg1Yf3Zammfz
sGTf6UFwkze69zjs/eKdg/jGTaZRhF9YdhFg/RifLRWtky56REK8fSc6KZ6Gc7ll
hnmL+Fuf6Vc=
=778Q
-----END PGP SIGNATURE-----


From owner-fwtk-users@ex.tis.com Fri Jan 28 11:14 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA14560
	Fri, 28 Jan 2000 11:14:45 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA15040;
	Fri, 28 Jan 2000 08:18:16 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 08:05:41 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA12919
	for fwtk-users-outgoing; Fri, 28 Jan 2000 08:05:39 -0800 (PST)
Date: Fri, 28 Jan 2000 10:45:05 -0500
From: Tim Sailer <sailer@sailer.itd.bnl.gov>
To: Ron Keith <ronk@wsulaw.edu>
Cc: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
Subject: Re: AIM
Message-ID: <20000128104505.H1214@bnl.gov>
References: <20679EBC9C90D311A12F00E0293308F008518F@NTSX>
Mime-Version: 1.0
User-Agent: Mutt/1.0i
In-Reply-To: <20679EBC9C90D311A12F00E0293308F008518F@NTSX>; from ronk@wsulaw.edu on Fri, Jan 28, 2000 at 07:17:35AM -0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 850

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Fri, Jan 28, 2000 at 07:17:35AM -0800, Ron Keith wrote:
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Does anyone know of some good scanning tools for linux ... I keep getting
> compromised by hackers

Nessus springs to mind.

> also, is there a ipchain way or another of stopping aol instant messenger

You can block the 2 most common AOL ports. One is 9898, and I can't think of
the other one offhand.

Tim

-- 
 (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
               Organization is the enemy of improvisation.
** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**



From owner-fwtk-users@ex.tis.com Fri Jan 28 12:28 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA15528
	Fri, 28 Jan 2000 12:28:06 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA26374;
	Fri, 28 Jan 2000 09:31:32 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 09:24:22 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA24438
	for fwtk-users-outgoing; Fri, 28 Jan 2000 09:24:21 -0800 (PST)
Message-ID: <007601bf69b4$267206a0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "Ron Keith" <ronk@wsulaw.edu>
Cc: "FWTK List" <fwtk-users@lists.nai.com>
References: <20679EBC9C90D311A12F00E0293308F008518F@NTSX> <20000128104505.H1214@bnl.gov>
Subject: Re: I keep getting compromised by hackers was AIM
Date: Fri, 28 Jan 2000 12:21:11 -0500
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1080

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

You might want to switch to OpenBSD, since Linux is not secure.

Its free like Linux, but is the most secure unix available.
All the source code has been scanned for securty holes
and fixed.  They call it a proactively secure OS.

AND/OR

If you are not doing so, you should setup a stand-alone firewall machine.
An old 486 will do, mine has an 80MB hd with 2 ethernet boards.
Install your unix, delete all non-essential executables and daemons.
Setup ip-filtering to allow connections only on ports you have proxies on.
Install and configure FWTK proxies on the ports you need.

This will make it much harder to be hacked.
----- Original Message -----
From: Ron Keith <ronk@wsulaw.edu>
Cc: <fwtk-users@lists.nai.com>
Sent: Friday, January 28, 2000 10:45 AM
Subject: Re: AIM


> On Fri, Jan 28, 2000 at 07:17:35AM -0800, Ron Keith wrote:
> >
> > Does anyone know of some good scanning tools for linux ... I keep
getting
> > compromised by hackers
>



From owner-fwtk-users@ex.tis.com Fri Jan 28 12:42 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA15792
	Fri, 28 Jan 2000 12:42:50 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA00516;
	Fri, 28 Jan 2000 09:46:21 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 28 Jan 2000 09:38:59 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA28306
	for fwtk-users-outgoing; Fri, 28 Jan 2000 09:38:56 -0800 (PST)
From: dreamwvr <dreamwvr@dreamwvr.com>
Reply-To: dreamwvr@dreamwvr.com
Organization: dreamwvr.com
To: Tim Sailer <sailer@sailer.itd.bnl.gov>, Ron Keith <ronk@wsulaw.edu>
Subject: Re: AIM
Date: Fri, 28 Jan 2000 09:36:56 -0700
X-Mailer: KMail [version 1.0.28]
Cc: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
References: <20679EBC9C90D311A12F00E0293308F008518F@NTSX> <20000128104505.H1214@bnl.gov>
In-Reply-To: <20000128104505.H1214@bnl.gov>
MIME-Version: 1.0
Message-Id: <00012809390400.00589@loki.dyn.ez-ip.net>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 2079

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

hi ,
  nmap is the most omnipotent scanning tool IMHO and is a baseline the others
follow pretty much..
                                                     Best Regards,
                                                     dreamwvr@dreamwvr.com
On Fri, 28 Jan 2000, Tim Sailer wrote:
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> On Fri, Jan 28, 2000 at 07:17:35AM -0800, Ron Keith wrote:
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > Does anyone know of some good scanning tools for linux ... I keep getting
> > compromised by hackers
> 
> Nessus springs to mind.
> 
> > also, is there a ipchain way or another of stopping aol instant messenger
> 
> You can block the 2 most common AOL ports. One is 9898, and I can't think of
> the other one offhand.
> 
> Tim
> 
> -- 
>  (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
>                Organization is the enemy of improvisation.
> ** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**
-- 
_______________________________________________________________________

************** DREAMWVR.COM - TOTAL INTERNET SERVICES ****************
TOTAL DESIGN - DEVELOPMENT - INTEGRATION - SECURITY - Click Here..
<http://www.dreamwvr.com/services/MAX_SEC.html>
DREAMWVR.COM - The Console of Many... 90 Topics Covered
<http://www.dreamwvr.com/dynamicduo.html> <mailto:dreamwvr@dreamwvr.com>
->> LINUX-MANDRAKE Solution Provider and North American Distributor <<-
PRODUCT OF THE YEAR!
<http://www.dreamwvr.com/mandrake/mandrake-main.html>
"===0 PGP Key Available 
*************** "As Unique as the Company You Keep." *****************
"If anyone speaks from DREAMWVR.COM its certainly not me:-)"
________________________________________________________________________



From owner-fwtk-users@ex.tis.com Sat Jan 29 08:29 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA21165
	Sat, 29 Jan 2000 08:29:29 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA03316;
	Sat, 29 Jan 2000 05:33:02 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 29 Jan 2000 05:28:55 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA02582
	for fwtk-users-outgoing; Sat, 29 Jan 2000 05:28:54 -0800 (PST)
Message-ID: <003101bf6a5d$07430a00$cfc2abd4@doom>
From: "Innocenti Edoardo" <edoinn@tin.it>
To: <fwtk-users@lists.nai.com>
Subject: Compiling with RedHat 6.1
Date: Sat, 29 Jan 2000 14:30:19 +0100
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 4.72.3110.5
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.3110.3
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 334

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have just compiled fwtk 2.0 (with patches 2.0) on RedHat 4.0 and 4.1, but
now I don't know how do this in RedHat 6.1 because linux library are
different ??!!
What can i do ???

ps. sorry for my english


From owner-fwtk-users@ex.tis.com Sun Jan 30 06:40 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA23642
	Sun, 30 Jan 2000 06:39:59 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA02860;
	Sun, 30 Jan 2000 03:43:34 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 30 Jan 2000 03:37:01 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA02018
	for fwtk-users-outgoing; Sun, 30 Jan 2000 03:36:59 -0800 (PST)
Message-ID: <01570E7F8223D2119C9A00805F9A267C014711B7@gexchange.gintic.gov.sg>
From: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>
To: "'Innocenti Edoardo'" <edoinn@tin.it>, fwtk-users@lists.nai.com
Subject: RE: Compiling with RedHat 6.1
Date: Sun, 30 Jan 2000 19:34:36 +0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2232.9)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 810

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have complied and installed fwtk2.0 in RedHat 6.1, it seems you needn't do
anything else, just compile and install it following the instructions.



Huang

	-----Original Message-----
	From:	Innocenti Edoardo [SMTP:edoinn@tin.it]
	Sent:	Saturday, January 29, 2000 9:30 PM
	To:	fwtk-users@lists.nai.com
	Subject:	Compiling with RedHat 6.1

	[To be removed from this list send the message "unsubscribe
fwtk-users" in the
	BODY of a mail message to majordomo@ex.tis.com.]

	I have just compiled fwtk 2.0 (with patches 2.0) on RedHat 4.0 and
4.1, but
	now I don't know how do this in RedHat 6.1 because linux library are
	different ??!!
	What can i do ???

	ps. sorry for my english

From owner-fwtk-users@ex.tis.com Mon Jan 31 00:51 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA25803
	Mon, 31 Jan 2000 00:51:20 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA13856;
	Sun, 30 Jan 2000 21:54:56 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 30 Jan 2000 21:49:04 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA12988
	for fwtk-users-outgoing; Sun, 30 Jan 2000 21:49:02 -0800 (PST)
Delivered-To: fixup-fwtk-users@ex.tis.com@fixme
Message-ID: <38952274.1AFDBF74@bennyvision.com>
Date: Sun, 30 Jan 2000 23:49:40 -0600
From: "C. Bensend" <benny@bennyvision.com>
Organization: Bennyvision, Inc.
X-Mailer: Mozilla 4.7 [en] (X11; I; Linux 2.2.12-20 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Using smap with tcpserver.
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1354

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hello,

    I appologize if this has already been asked a billion times, but
I did
not find an archive of this mailing list.  Please feel free to break
out the
LARTs and point me to an archive.  :)

    I've been using smap on my border for quite some time, and it
works
beautifully.  The only real problem is inetd - recently, several
Microsoft
"bulk mail servers" have wreaked havoc with inetd, repeatedly trying
to
open connections to my border and finally forcing inetd to disable
smap.
Bloody broken servers, anyway...

    I'd like to use tcpserver to spawn smap, as it gives me more
options
and more robustness compared to inetd.  However, whenever I try to
use tcpserver, I get log entries similar to:  "fwtk: binding to port
25 failed -
port already in use".  I'm sorry I don't have the exact message,
this has
been a few weeks since I last tried.

    Have any of you encountered this problem, and if so, how have
you
solved it?  Conditions when I tested:

Linux 2.0.36 kernel
Inetd entry for smap disabled, and inetd HUPped.
Started tcpserver with:
   /usr/local/bin/tcpserver -c30 -g12 -u8 0 smtp
/usr/local/sbin/smap -daemon -port 25 &

Any suggestions/advice/LARTing greatly appreciated.  Thanks!  :)

Benny



From owner-fwtk-users@ex.tis.com Mon Jan 31 05:01 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA26760
	Mon, 31 Jan 2000 05:01:20 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA12079;
	Mon, 31 Jan 2000 02:04:57 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 02:00:09 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA11198
	for fwtk-users-outgoing; Mon, 31 Jan 2000 02:00:06 -0800 (PST)
Message-ID: <38955CA1.7C6A6638@bicho.eui.upm.es>
Date: Mon, 31 Jan 2000 10:57:54 +0100
From: Maria Alandes Pradillo <malandes@bicho.eui.upm.es>
X-Mailer: Mozilla 4.03 [es] (Win95; I)
MIME-Version: 1.0
To: FWTK List <fwtk-users@lists.nai.com>
Subject: Sharing file systems
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 1168

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

    Hi Everybody!

        My TIS firewall protects an intranet which contains a server.
This server contains an Oracle DB and other applications such as
Rational that are accesed by clients. These clients also store
information in the server disk.

        I have two problems:

        How can the clients access Oracle and Rational? Shall I use
plug-gw to connect the clients to the properly ports in the server?
(Another problem is that some ports are unknown, for instance the one to
give the key)

        The clients and the server are Windows-NT, how can the clients
view the server files through the firewall?

        I installed TIS succesfully, but now no clients can use the
server, so I had to remove the firewall ;-)

                Thanks!!



--
María Alandes Pradillo

Universidad Politécnica de Madrid (Madrid Technical University)
E.U. Informática. Organización y Estructura de la Información
Ctra. de Valencia, Km. 7. E-28031 Madrid. Spain
T.: (+34)-913367881 Fax. (+34)-913367520
e-mail: malandes@bicho.eui.upm.es



From owner-fwtk-users@ex.tis.com Mon Jan 31 05:59 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA26921
	Mon, 31 Jan 2000 05:59:17 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA16231;
	Mon, 31 Jan 2000 03:02:53 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 03:00:05 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA15344
	for fwtk-users-outgoing; Mon, 31 Jan 2000 03:00:02 -0800 (PST)
X-Authentication-Warning: spider.usrconsult.be: mail set sender to <mbardiaux@usrconsult.be> using -f
Message-ID: <38956B39.F527C006@usrconsult.be>
Date: Mon, 31 Jan 2000 12:00:09 +0100
From: Michel Bardiaux <mbardiaux@usrconsult.be>
Organization: UsrConsult SPRL
X-Mailer: Mozilla 4.5 [en] (X11; I; IRIX64 6.5 IP27)
X-Accept-Language: en
MIME-Version: 1.0
To: FWTK List <fwtk-users@lists.nai.com>
Subject: [Fwd: Sharing file systems]
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2104

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Michel Bardiaux wrote:
> 
> Maria Alandes Pradillo wrote:
> >
> >         My TIS firewall protects an intranet which contains a server.
> > This server contains an Oracle DB and other applications such as
> > Rational that are accesed by clients. These clients also store
> > information in the server disk.
> 
> I assume the "clients" are outside the FW, i.e. somewhere on the
> Internet.
> Hence, they should *not* be trusted; hence, they should *never* be
> granted
> access to the intranet without rigorous security check.
> >
> >         I have two problems:
> >
> >         How can the clients access Oracle and Rational? Shall I use
> > plug-gw to connect the clients to the properly ports in the server?
> > (Another problem is that some ports are unknown, for instance the one to
> > give the key)
> 
> As I said above, very very dangerous. You should use SSH to tunnel
> through
> the firewall (if the clients can be trusted once they are
> authenticated),
> or provide the services on servers in the DMZ rather than the intranet.
> >
> >         The clients and the server are Windows-NT, how can the clients
> > view the server files through the firewall?
> 
> The Wintel rerquirement complicates things. There are several SSH
> clients for NT, including
> some OpenSource ones, but I do not know any SSH server for NT. Maybe
> someone
> did a port to Cygnus? Running sshd on the FW is a possibility, though
> not a
> good one, since the keyring would be much more vulnerable.
> >
> >         I installed TIS succesfully, but now no clients can use the
> > server, so I had to remove the firewall ;-)
> >
> Logical; a FW is not very useful if you have to grant unrestricted
> access anyway.
> 
> PS: I realize I sound dangerously pontificating :-) If I wrote something
> silly, please
> correct me!
> 
> Greetings.
> --
> Michel Bardiaux

-- 
Michel Bardiaux
UsrConsult S.P.R.L.  Rue Margot, 37  B-1457 Nil St Vincent
Tel : +32 10 65.44.15  Fax : +32 10 65.44.10

From owner-fwtk-users@ex.tis.com Mon Jan 31 06:49 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA27047
	Mon, 31 Jan 2000 06:49:40 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA27381;
	Mon, 31 Jan 2000 03:53:16 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 03:42:24 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA23119
	for fwtk-users-outgoing; Mon, 31 Jan 2000 03:42:17 -0800 (PST)
Message-ID: <3895745A.591FC07E@bicho.eui.upm.es>
Date: Mon, 31 Jan 2000 12:39:06 +0100
From: Maria Alandes Pradillo <malandes@bicho.eui.upm.es>
X-Mailer: Mozilla 4.03 [es] (Win95; I)
MIME-Version: 1.0
To: Michel Bardiaux <mbardiaux@usrconsult.be>
CC: FWTK List <fwtk-users@lists.nai.com>
Subject: Re: Sharing file systems
References: <38955CA1.7C6A6638@bicho.eui.upm.es> <38956ADA.3BB53180@usrconsult.be>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 2192

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



Michel Bardiaux escribió:

> I assume the "clients" are outside the FW, i.e. somewhere on the
> Internet.
> Hence, they should *not* be trusted; hence, they should *never* be
> granted
> access to the intranet without rigorous security check.

Actually, the clients are outside the firewall (sorry for not specifying this
before). The problem is that they are not inside the firewall because its
physical distribution, I mean, they are in other rooms far away from the lab
where the firewall is. But they are allowed to use the services inside the
firewall: Oracle, rational, disk and, I forgot to mention it before, a
printer. We do want them to use this services.

> As I said above, very very dangerous. You should use SSH to tunnel
> through
> the firewall (if the clients can be trusted once they are
> authenticated),

Sure they are authenticated...

> or provide the services on servers in the DMZ rather than the intranet.
> >
>

That's not possible. The main problem is that we have a "SUPER"-server. Not
only does it provide ftp, mail and a web page! but also server applications.
The printer is connected to another computer. We cannot afford more computers,
that's why the sever is overloaded. I know that all these things living
toguether can bring big problems (i.e big security holes due to http) but I
should try to make it work

> The Wintel rerquirement complicates things. There are several SSH
> clients for NT, including
> some OpenSource ones, but I do not know any SSH server for NT. Maybe
> someone
> did a port to Cygnus? Running sshd on the FW is a possibility, though
> not a
> good one, since the keyring would be much more vulnerable.
> >
>

I would be very grateful if you could tell me where I can find information
about these topics.

Thanks a lot!


--
María Alandes Pradillo

Universidad Politécnica de Madrid (Madrid Technical University)
E.U. Informática. Organización y Estructura de la Información
Ctra. de Valencia, Km. 7. E-28031 Madrid. Spain
T.: (+34)-913367881 Fax. (+34)-913367520
e-mail: malandes@bicho.eui.upm.es



From owner-fwtk-users@ex.tis.com Mon Jan 31 07:06 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA27068
	Mon, 31 Jan 2000 07:06:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA01880;
	Mon, 31 Jan 2000 04:09:46 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 04:06:07 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA00257
	for fwtk-users-outgoing; Mon, 31 Jan 2000 04:06:04 -0800 (PST)
Message-Id: <4.2.2.20000131063624.00b095a0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Mon, 31 Jan 2000 06:49:27 -0500
To: "C. Bensend" <benny@bennyvision.com>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: Using smap with tcpserver.
In-Reply-To: <38952274.1AFDBF74@bennyvision.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 729

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 11:49 PM 1/30/00 -0600, C. Bensend wrote:
>     I appologize if this has already been asked a billion times, but
>I did
>not find an archive of this mailing list.  Please feel free to break
>out the
>LARTs and point me to an archive.  :)

<ftp://ftp.tis.com/pub/firewalls/toolkit/fwtk-users-archive>

>Started tcpserver with:
>    /usr/local/bin/tcpserver -c30 -g12 -u8 0 smtp
>/usr/local/sbin/smap -daemon -port 25 &

If you're front-ending smap with tcpserver, don't use '-daemon'. That 
causes the copy of smap to try to bind the smtp port, but tcpserver already 
has it bound.
         -Rick


From owner-fwtk-users@ex.tis.com Mon Jan 31 07:37 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA27140
	Mon, 31 Jan 2000 07:37:36 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA10898;
	Mon, 31 Jan 2000 04:41:11 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 04:38:04 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA09688
	for fwtk-users-outgoing; Mon, 31 Jan 2000 04:38:01 -0800 (PST)
Message-ID: <389580FB.F9F825FE@fadesa.es>
Date: Mon, 31 Jan 2000 13:32:59 +0100
From: "=?iso-8859-1?Q?Jos=E9?= M. =?iso-8859-1?Q?Fandi=F1o?=" 
	<jm.fandino@fadesa.es>
Reply-To: jm.fandino@fadesa.es
Organization: Inmobiliaria FADESA
X-Mailer: Mozilla 4.7 [en] (X11; U; Linux 2.2.13 i686)
X-Accept-Language: es, en
MIME-Version: 1.0
To: FWTK List <fwtk-users@lists.nai.com>
Subject: problem with http-gw and ftp-proxy
Content-Transfer-Encoding: 7bit
X-Logged: Logged by tierra.fadesa.es as PAA10943 at Mon Jan 31 15:20:08 2000
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1161

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

H.,

I'm trying setup the ftp-proxy characteristics in http-gw.

The FAQ say:

You should add a "ftp-proxy" line in your netperm-table. What "ftp-proxy
foo" should do is to change the handling of ftp URLs from connecting to
the target host to using the given ftp host. For example, if you send
"ftp://target/dir/file" with a line in your netperm-table like "http-gw:
ftp-proxy proxy" what will change is that the http-gw will connect to
host "proxy" on the ftp port, then send "user     anonymous@target" as
the user (expecting that there's a ftp-gw proxy in use.) Your
netperm-table seems to be configured with the "ftp-proxy" having the
name of a program to run; what you probably want is "http-gw: ftp-proxy
127.0.0.1" 


then I put in the netperm-table:

ftp-gw:         permit-hosts 127.0.0.1 -dest * -log { retr stor } 
http-gw:        ftp-proxy 127.0.0.1

and a "ftp localhost" give me the ftp-gw prompt and I can do a ftp to
any host, but the http-gw don't use this characteristic.

any suggestions?

Thanks in advance.

--

From owner-fwtk-users@ex.tis.com Mon Jan 31 09:33 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA27499
	Mon, 31 Jan 2000 09:33:45 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA24087;
	Mon, 31 Jan 2000 06:37:20 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 06:29:46 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA21987
	for fwtk-users-outgoing; Mon, 31 Jan 2000 06:29:40 -0800 (PST)
X-Authentication-Warning: scully.epicsys.com: jcharles owned process doing -bs
Date: Mon, 31 Jan 2000 08:29:48 -0600 (CST)
From: Jeremy Charles <jcharles@epicsystems.com>
X-Sender: jcharles@scully.epicsys.com
To: "Huang Guangbin, Dr" <gbhuang@gintic.gov.sg>
cc: "'Innocenti Edoardo'" <edoinn@tin.it>, fwtk-users@lists.nai.com
Subject: RE: Compiling with RedHat 6.1
In-Reply-To: <01570E7F8223D2119C9A00805F9A267C014711B7@gexchange.gintic.gov.sg>
Message-ID: <Pine.LNX.4.10.10001310828320.11019-100000@scully.epicsys.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 693

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Sun, 30 Jan 2000, Huang Guangbin, Dr wrote:
> I have complied and installed fwtk2.0 in RedHat 6.1, it seems you needn't do
> anything else, just compile and install it following the instructions.

I had to modify a couple of #include lines in a couple source files within
the auth subdirectory.. but other than that, it went just fine for me.  I
replaced a line that said:

	#include   <ndbm.h>

with

	#include   <gdbm/ndbm.h>

Jeremy L. Charles
Server Systems Team
Epic Systems Corporation
jcharles@epicsystems.com

Voice:  608-271-9000
  Fax:  608-271-7237


From owner-fwtk-users@ex.tis.com Mon Jan 31 10:03 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA27614
	Mon, 31 Jan 2000 10:03:00 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA00376;
	Mon, 31 Jan 2000 07:06:35 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 07:02:51 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA29194
	for fwtk-users-outgoing; Mon, 31 Jan 2000 07:02:49 -0800 (PST)
Date: Mon, 31 Jan 2000 10:02:24 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: "C. Bensend" <benny@bennyvision.com>
cc: fwtk-users@ex.tis.com
Subject: Re: Using smap with tcpserver.
In-Reply-To: <38952274.1AFDBF74@bennyvision.com>
Message-ID: <Pine.GSO.4.10.10001311002060.14678-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1709

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Benny,

The 2.1 version does support daemon operation.  May be an alternative.

ted keller


On Sun, 30 Jan 2000, C. Bensend wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> Hello,
> 
>     I appologize if this has already been asked a billion times, but
> I did
> not find an archive of this mailing list.  Please feel free to break
> out the
> LARTs and point me to an archive.  :)
> 
>     I've been using smap on my border for quite some time, and it
> works
> beautifully.  The only real problem is inetd - recently, several
> Microsoft
> "bulk mail servers" have wreaked havoc with inetd, repeatedly trying
> to
> open connections to my border and finally forcing inetd to disable
> smap.
> Bloody broken servers, anyway...
> 
>     I'd like to use tcpserver to spawn smap, as it gives me more
> options
> and more robustness compared to inetd.  However, whenever I try to
> use tcpserver, I get log entries similar to:  "fwtk: binding to port
> 25 failed -
> port already in use".  I'm sorry I don't have the exact message,
> this has
> been a few weeks since I last tried.
> 
>     Have any of you encountered this problem, and if so, how have
> you
> solved it?  Conditions when I tested:
> 
> Linux 2.0.36 kernel
> Inetd entry for smap disabled, and inetd HUPped.
> Started tcpserver with:
>    /usr/local/bin/tcpserver -c30 -g12 -u8 0 smtp
> /usr/local/sbin/smap -daemon -port 25 &
> 
> Any suggestions/advice/LARTing greatly appreciated.  Thanks!  :)
> 
> Benny
> 
> 


From owner-fwtk-users@ex.tis.com Mon Jan 31 10:12 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA27685
	Mon, 31 Jan 2000 10:12:13 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA02700;
	Mon, 31 Jan 2000 07:15:49 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 07:12:42 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA01641
	for fwtk-users-outgoing; Mon, 31 Jan 2000 07:12:40 -0800 (PST)
Date: Mon, 31 Jan 2000 10:11:44 -0500 (EST)
From: Ted Keller <keller@bfg.com>
To: "=?iso-8859-1?Q?Jos=E9?= M. =?iso-8859-1?Q?Fandi=F1o?=" <jm.fandino@fadesa.es>
cc: FWTK List <fwtk-users@lists.nai.com>
Subject: Re: problem with http-gw and ftp-proxy
In-Reply-To: <389580FB.F9F825FE@fadesa.es>
Message-ID: <Pine.GSO.4.10.10001311010430.14678-100000@ns1.bfg.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from QUOTED-PRINTABLE to 8bit by relay2.nai.com id HAA01618
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=X-UNKNOWN
Content-Length: 1650

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Jose,

The http-gw already suports ftp type urls.  Specify the ftp proxy in your
favorite browser to point to the http-gw and it should work.  The entry
should be identical to the one you have for http:

ted keller


On Mon, 31 Jan 2000, [iso-8859-1] José M. [iso-8859-1] Fandiño wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> H.,
> 
> I'm trying setup the ftp-proxy characteristics in http-gw.
> 
> The FAQ say:
> 
> You should add a "ftp-proxy" line in your netperm-table. What "ftp-proxy
> foo" should do is to change the handling of ftp URLs from connecting to
> the target host to using the given ftp host. For example, if you send
> "ftp://target/dir/file" with a line in your netperm-table like "http-gw:
> ftp-proxy proxy" what will change is that the http-gw will connect to
> host "proxy" on the ftp port, then send "user     anonymous@target" as
> the user (expecting that there's a ftp-gw proxy in use.) Your
> netperm-table seems to be configured with the "ftp-proxy" having the
> name of a program to run; what you probably want is "http-gw: ftp-proxy
> 127.0.0.1" 
> 
> 
> then I put in the netperm-table:
> 
> ftp-gw:         permit-hosts 127.0.0.1 -dest * -log { retr stor } 
> http-gw:        ftp-proxy 127.0.0.1
> 
> and a "ftp localhost" give me the ftp-gw prompt and I can do a ftp to
> any host, but the http-gw don't use this characteristic.
> 
> any suggestions?
> 
> Thanks in advance.
> 
> --
> 


From owner-fwtk-users@ex.tis.com Mon Jan 31 10:18 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA27709
	Mon, 31 Jan 2000 10:18:34 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA04845;
	Mon, 31 Jan 2000 07:22:10 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 07:17:16 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA03159
	for fwtk-users-outgoing; Mon, 31 Jan 2000 07:17:11 -0800 (PST)
Message-ID: <08E056359810D2118E4900805FC1F945036105ED@dsntexsrv1.diasham.com>
From: "Gober, Lowman" <lowman@udscorp.com>
To: "'Jeremy Charles'" <jcharles@epicsystems.com>,
        "Huang Guangbin, Dr"
	 <gbhuang@gintic.gov.sg>
Cc: "'Innocenti Edoardo'" <edoinn@tin.it>, fwtk-users@lists.nai.com
Subject: RE: Compiling with RedHat 6.1
Date: Mon, 31 Jan 2000 09:16:37 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 240

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

i had to make the same modifications to auth source as well.  with the
modifications is compiled fine.

lowman

From owner-fwtk-users@ex.tis.com Mon Jan 31 11:09 EST 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA28127
	Mon, 31 Jan 2000 11:09:09 -0500 (EST)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA15122;
	Mon, 31 Jan 2000 08:12:40 -0800 (PST)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 31 Jan 2000 08:05:47 -0800
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA12789
	for fwtk-users-outgoing; Mon, 31 Jan 2000 08:05:45 -0800 (PST)
Message-ID: <3895B2D7.E13A96CE@fadesa.es>
Date: Mon, 31 Jan 2000 17:05:43 +0100
From: "=?iso-8859-1?Q?Jos=E9?= M. =?iso-8859-1?Q?Fandi=F1o?=" 
	<jm.fandino@fadesa.es>
Reply-To: jm.fandino@fadesa.es
Organization: Inmobiliaria FADESA
X-Mailer: Mozilla 4.7 [en] (X11; U; Linux 2.2.13 i686)
X-Accept-Language: es, en
MIME-Version: 1.0
To: Ted Keller <keller@bfg.com>
CC: FWTK List <fwtk-users@lists.nai.com>
Subject: problem with http-gw and ftp-proxy (II)
References: <Pine.GSO.4.10.10001311010430.14678-100000@ns1.bfg.com>
X-Logged: Logged by tierra.fadesa.es as SAA12735 at Mon Jan 31 18:52:52 2000
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by relay2.nai.com id IAA12731
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 2429

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

H.,


Ted Keller wrote:
> 
> Jose,
> 
> The http-gw already suports ftp type urls.  Specify the ftp proxy in your
> favorite browser to point to the http-gw and it should work.  The entry
> should be identical to the one you have for http:
> 
> ted keller

sorry, I don't express in a correct form.

yes, the http-gw support ftp type urls, but in a restrict mode. It not
retrieve the normal information of  ftp server (date, size, ...). This
be a problem for mirrors and any utilities that I need use. 
The possible solution could be the ftp-proxy method of http-gw. It call
for the ftp-gw at localhost and ftp-gw established the connection to ftp
server.
ftp-proxy seem easy of configure, but I don't get that it work.

 
> On Mon, 31 Jan 2000, [iso-8859-1] José M. [iso-8859-1] Fandiño wrote:
> 
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > H.,
> >
> > I'm trying setup the ftp-proxy characteristics in http-gw.
> >
> > The FAQ say:
> >
> > You should add a "ftp-proxy" line in your netperm-table. What "ftp-proxy
> > foo" should do is to change the handling of ftp URLs from connecting to
> > the target host to using the given ftp host. For example, if you send
> > "ftp://target/dir/file" with a line in your netperm-table like "http-gw:
> > ftp-proxy proxy" what will change is that the http-gw will connect to
> > host "proxy" on the ftp port, then send "user     anonymous@target" as
> > the user (expecting that there's a ftp-gw proxy in use.) Your
> > netperm-table seems to be configured with the "ftp-proxy" having the
> > name of a program to run; what you probably want is "http-gw: ftp-proxy
> > 127.0.0.1"
> >
> >
> > then I put in the netperm-table:
> >
> > ftp-gw:         permit-hosts 127.0.0.1 -dest * -log { retr stor }
> > http-gw:        ftp-proxy 127.0.0.1
> >
> > and a "ftp localhost" give me the ftp-gw prompt and I can do a ftp to
> > any host, but the http-gw don't use this characteristic.
> >
> > any suggestions?
> >
> > Thanks in advance.
> >
> > --
> >

-- 
-----BEGIN GEEK CODE BLOCK-----
Version: 3.1
GCC d- s+: a- C+>+++ UL++++ P+ L+++ E--- W++ N+ o+ K- w---
O M V- PS PE+ Y PGP+>+++ t+ 5 X+++ R- !tv b+++ DI-- D+++
G e- h++ !r !y+
------END GEEK CODE BLOCK------

