From owner-fwtk-users@ex.tis.com Mon May  1 09:20 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA02425
	Mon, 1 May 2000 09:20:20 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA21712;
	Mon, 1 May 2000 06:26:37 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 1 May 2000 05:32:30 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA18861
	for fwtk-users-outgoing; Mon, 1 May 2000 05:32:19 -0700 (PDT)
From: "tuxiaokun" <tuxiaokun@sina.com>
To: <fwtk-users@ex.tis.com>
Subject: help
Date: Sat, 29 Apr 2000 17:59:31 +0800
Message-ID: <NEBBLLIMGLPCPPPHNOOEEEAOCAAA.tuxiaokun@sina.com>
MIME-Version: 1.0
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Importance: Normal
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from base64 to 8bit by relay2.nai.com id FAA07128
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="ISO-8859-1"
Content-Length: 978

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



-----'‚ º" ºœ-----
…¢ºœ»À: hjj [mailto:huangjianjun@hisense.qd.sd.cn]
…¢ÀÕ ±º”: 2000ŸÍ4'¬29»' 11:59
 'ºœ»À: tuxiaokun@hisense.qd.sd.cn
÷—Ã’: help


Dear Ted:
Now I need your helps very much.
Yesterday,I used a security tool( ISS ) to scan FWTK,and the result tell me there is a
high vulnerability about smap.It said:
[ 
SMTP HELO buffer overflow can crash or obtain access
	]
I checked the source smap.c about HELO parts.I think the programe just receive a
command from stdin like :hello XXXX ,and then echo :helo XXXX .There seems nothing about 
buffer, so why this leak exist? The scan report that commands VRFY and EXPN of some version mail may have the same question.
So,I want to know what this really mean and how to recure it?

Eager for your reply and thanks advanced.

hjj.
 

                                                            

From owner-fwtk-users@ex.tis.com Mon May  1 15:34 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA03453
	Mon, 1 May 2000 15:34:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA00960;
	Mon, 1 May 2000 12:40:19 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 1 May 2000 11:48:05 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA25168
	for fwtk-users-outgoing; Mon, 1 May 2000 11:47:54 -0700 (PDT)
Date: Mon, 1 May 2000 14:46:58 -0400
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: tuxiaokun <tuxiaokun@sina.com>
Cc: fwtk-users@ex.tis.com
Subject: Re: help
Message-Id: <20000501144657.U5996@washington.cospo.osis.gov>
Mail-Followup-To: tuxiaokun <tuxiaokun@sina.com>, fwtk-users@ex.tis.com
References: <NEBBLLIMGLPCPPPHNOOEEEAOCAAA.tuxiaokun@sina.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <NEBBLLIMGLPCPPPHNOOEEEAOCAAA.tuxiaokun@sina.com>; from tuxiaokun@sina.com on Sat, Apr 29, 2000 at 05:59:31PM +0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1802

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Sat, Apr 29, 2000 at 05:59:31PM +0800, tuxiaokun wrote:
...
> Yesterday,I used a security tool( ISS ) to scan FWTK,and the result tell me there is a
> high vulnerability about smap.It said:
> [ 
> SMTP HELO buffer overflow can crash or obtain access
> 	]
> I checked the source smap.c about HELO parts.I think the programe just receive a
> command from stdin like :hello XXXX ,and then echo :helo XXXX .There seems nothing about 
> buffer, so why this leak exist? The scan report that commands VRFY and EXPN of some version mail may have the same question.
> So,I want to know what this really mean and how to recure it?

Security tools often report "false positives": you should check any
such reports out, but they may turn out to be false.

In this case, however, one of the fixes in the so-called "yao patch"
was that I did take out several possible buffer overflows.  But I did
not change any responses.  So, any checks that ISS did for buffer
overflows after installing the patch would probably still say "true",
but I am pretty sure that there would in fact be no buffer overflows
left.

It is also possible that ISS thinks it was talking to a vulnerable
version of 'sendmail'.  ;-)  The best way for you to know for sure what
it meant is to ask the program's authors, if you bought the current
version.  If you are using the unpaid version, then that is quite a few
years old, IIRC, and is probably not to be trusted at all these days.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Mon May  1 18:36 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA04085
	Mon, 1 May 2000 18:36:29 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA21176;
	Mon, 1 May 2000 15:42:16 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 1 May 2000 14:51:22 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA16569
	for fwtk-users-outgoing; Mon, 1 May 2000 14:51:11 -0700 (PDT)
Message-Id: <4.3.1.2.20000501170856.00c4b100@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 01 May 2000 17:41:08 -0400
To: "tuxiaokun" <tuxiaokun@sina.com>, <fwtk-users@ex.tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: help
In-Reply-To: <NEBBLLIMGLPCPPPHNOOEEEAOCAAA.tuxiaokun@sina.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 917

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 05:59 PM 4/29/00 +0800, tuxiaokun wrote:
>Yesterday,I used a security tool( ISS ) to scan FWTK,and the result tell 
>me there is a high vulnerability about smap.It said:
>[
>SMTP HELO buffer overflow can crash or obtain access
>         ]

smap reads the HELO command using a routine that knows how large the buffer 
is. Copies of the HELO string are allocated using malloc(). Chances are, 
your message warning about 'buffer overflow can crash' is issued for all 
SMTP servers.

>The scan report that commands VRFY and EXPN of some version mail may have 
>the same question.

Again, I don't think there's a bug here. Old versions of smap didn't verify 
the length of the recipient part when logging VRFY attempts; the current 
versions of smap aren't vulnerable here.
         -Rick


From owner-fwtk-users@ex.tis.com Tue May  2 12:07 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA06439
	Tue, 2 May 2000 12:07:06 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA15166;
	Tue, 2 May 2000 09:12:41 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 07:49:08 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA05567
	for fwtk-users-outgoing; Tue, 2 May 2000 07:49:01 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C48E@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: fwtk-users@lists.nai.com
Subject: Skey and adding users
Date: Tue, 2 May 2000 10:48:17 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 620

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have successfully complied the skey libraries (libskey.a using the skey
src rpm from www.beowolf.org) and made the necessary changes to the authsrv
Makefile. Authsrv compiled without any problems, but I can not change the
protocol to Skey in authmgr when adding a user (in authsrv either for that
matter). I did see skey compiled into authsrv. But it only allows me to use
'password' or 'none' when adding a user. What am I doing wrong or missing?
All help is appreciated.

Regards - Shon

From owner-fwtk-users@ex.tis.com Tue May  2 14:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA07001
	Tue, 2 May 2000 14:59:00 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA08046;
	Tue, 2 May 2000 12:05:02 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 11:15:53 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA29122
	for fwtk-users-outgoing; Tue, 2 May 2000 11:15:48 -0700 (PDT)
Message-Id: <200005021424.KAA00368@voyager.eagletrim.com>
From: "Wes Szumera" <wess@eagletrim.com>
Organization: Eagle Trim Inc.
To: fwtk-users@ex.tis.com
Date: Tue, 2 May 2000 14:15:19 -0400
MIME-Version: 1.0
Content-transfer-encoding: 7BIT
Subject: undelivered outbound mail
X-mailer: Pegasus Mail for Win32 (v3.01d)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 467

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

How do I properly deal with outbound mail that doesn't get delivered? 
 Over time, I get mail stuck in queue that sendmail tried to send and 
gave up on.  Can I assume that smap / smapd only asks sendmail 
once to send mail and that I need to process the backlog of mail that 
didn't make it out on the first try myself?

Thanks,

Wes 



From owner-fwtk-users@ex.tis.com Tue May  2 14:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA07004
	Tue, 2 May 2000 14:59:04 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA08040;
	Tue, 2 May 2000 12:05:02 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 11:19:34 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA29567
	for fwtk-users-outgoing; Tue, 2 May 2000 11:19:23 -0700 (PDT)
Date: Tue, 2 May 2000 14:18:33 -0400
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: screened host firewall <myfirewall@hotmail.com>
Cc: fwtk-users@ex.tis.com
Subject: Re: your mail
Message-Id: <20000502141833.I16177@washington.cospo.osis.gov>
Mail-Followup-To: screened host firewall <myfirewall@hotmail.com>,
	fwtk-users@ex.tis.com
References: <20000313093217.92168.qmail@hotmail.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <20000313093217.92168.qmail@hotmail.com>; from myfirewall@hotmail.com on Mon, Mar 13, 2000 at 05:32:17PM +0000
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 985

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Mon, Mar 13, 2000 at 05:32:17PM +0000, screened host firewall wrote:
> 1. Do FWTK support the security of WWW ?

Yes, via http-gw.

> 2. Do FWTK are programming-based just like Microsoft C++ or C ?

Question unanswerable.  Everyting on a computer, including FWTK, is
programming-based.  FWTK is programmed in C [real C, not MS C].  But it
is not a programming language.

> 3. Can I use FWTK as the software for "screened host firewall" ?

I assume that you are using this phrase as used in Chapman and Zwicky.
Yes, I believe you can - but you get better security from a dual-homed
host, which is what it's really intended for.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Tue May  2 14:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA07008
	Tue, 2 May 2000 14:59:14 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA08071;
	Tue, 2 May 2000 12:05:12 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 11:20:56 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA29784
	for fwtk-users-outgoing; Tue, 2 May 2000 11:20:46 -0700 (PDT)
Date: Tue, 2 May 2000 14:20:11 -0400
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Mike and Emily Jones <joneses4@home.com>
Cc: fwtk-users@lists.nai.com
Subject: Re: Make error
Message-Id: <20000502142011.J16177@washington.cospo.osis.gov>
Mail-Followup-To: Mike and Emily Jones <joneses4@home.com>,
	fwtk-users@lists.nai.com
References: <000001bf8b39$754b2940$0200000a@domain1.test.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <000001bf8b39$754b2940$0200000a@domain1.test.com>; from joneses4@home.com on Sat, Mar 11, 2000 at 03:08:52AM -0600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 958

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Sat, Mar 11, 2000 at 03:08:52AM -0600, Mike and Emily Jones wrote:
> I follow what the readme files say and when I type Make it says Stop. No
> rule to make target. "Makefile.config            I am running RH 6.1 and I
> replaced the Makefile.config with Makefile.config.linux as instructed. Also
> if I try to run the fixmake program it tells me there is no such file. Any
> help would be greatly appreciated before I throw the computer out the
> window. Just kidding I woulddn't do that, but I am frustrated. Thanks in
> advance.

Instead of:

	make Makefile.config

say:

	make -f Makefile.config

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Tue May  2 14:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA07011
	Tue, 2 May 2000 14:59:18 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA08064;
	Tue, 2 May 2000 12:05:12 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 11:14:33 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA28984
	for fwtk-users-outgoing; Tue, 2 May 2000 11:14:22 -0700 (PDT)
Date: Tue, 2 May 2000 14:13:42 -0400
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: po llito <po_lli_to@yahoo.com>
Cc: fwtk-users@tis.com
Subject: Re: Configuring a proxy with http-gw
Message-Id: <20000502141342.H16177@washington.cospo.osis.gov>
Mail-Followup-To: po llito <po_lli_to@yahoo.com>, fwtk-users@tis.com
References: <20000311004602.6572.qmail@web501.mail.yahoo.com>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <20000311004602.6572.qmail@web501.mail.yahoo.com>; from po_lli_to@yahoo.com on Fri, Mar 10, 2000 at 04:46:02PM -0800
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1953

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Cleaning up old mail ... looks like this never got answered.

On Fri, Mar 10, 2000 at 04:46:02PM -0800, po llito wrote:
...
> All I'm interested in is finding out how an unknown IP
> address can connect through the proxy server (which
> has an allowed IP) and can request the IP restricted
> http resource on behalf of the unknown IP address and
> return   
> the results to the unknown address.

The "internal" [hidden] addressed site makes a connection to the
firewall bastion host.  This fires up a single new instance of the
proxy program, http-gw, to service this connection.  The proxy creates
a new connection from its public Internet address to the public
resource - the internal address is not involved.  As far as the public
resource is concerned, its conversation is purely with the public
Internet address of the bastion host.  Any results are instantly
relayed back down to the "hidden" system.

> Can I use an automatic proxy configuration file for
> this (proxy.pac) with a Javascript function that can
> make the requests come from the proxy IP?

Yes, but why bother?  Just put the bastion host's internal name as the
proxy server in manual mode.

> Do I need to use http-gw in combination with Apache's
> mod_proxy to achieve the above effect?

No.  Just http-gw with your ordinary garden Web browser.

> Any examples of ntperm-table or httpd-conf that you
> can provide would be helpful.
> 
> I appreciate any input or pointers you can provide
> into this situation. I would like to achieve the above
> just using http-gw and Apache.

Apache is overkill, for the simple solution.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Tue May  2 15:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA07060
	Tue, 2 May 2000 15:10:12 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA10014;
	Tue, 2 May 2000 12:16:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 11:32:16 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA01636
	for fwtk-users-outgoing; Tue, 2 May 2000 11:32:05 -0700 (PDT)
From: -=ArkanoiD=- <ark@eltex.ru>
Message-Id: <200005021828.WAA10062@paranoid.eltex.spb.ru>
Subject: Re: help
In-Reply-To: <NEBBLLIMGLPCPPPHNOOEEEAOCAAA.tuxiaokun@sina.com> from tuxiaokun at "Apr 29, 2000 05:59:31 pm"
To: tuxiaokun@sina.com (tuxiaokun)
Date: Tue, 2 May 2000 22:28:41 +0400 (MSD)
Cc: fwtk-users@ex.tis.com
Reply-To: ark@eltex.ru
X-Mailer: ELM [version 2.4ME+ PL53 (25)]
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 1245

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

nuqneH,

Throw away ISS and never, NEVER trust security scanners if you don't know
exactly what they do.

Somebody (maybe you, tuxiaokun) WROTE:
[Charset ISO-8859-1 unsupported, filtering to ASCII...]
>  Dear Ted:
>  Now I need your helps very much.
>  Yesterday,I used a security tool( ISS ) to scan FWTK,and the result tell me there is a
>  high vulnerability about smap.It said:
>  [ 
>  SMTP HELO buffer overflow can crash or obtain access
>  	]
>  I checked the source smap.c about HELO parts.I think the programe just receive a
>  command from stdin like :hello XXXX ,and then echo :helo XXXX .There seems nothing about 
>  buffer, so why this leak exist? The scan report that commands VRFY and EXPN of some version mail may have the same question.
>  So,I want to know what this really mean and how to recure it?

-- 
                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

From owner-fwtk-users@ex.tis.com Tue May  2 16:30 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA07425
	Tue, 2 May 2000 16:30:51 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA22611;
	Tue, 2 May 2000 13:36:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 12:45:20 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA15126
	for fwtk-users-outgoing; Tue, 2 May 2000 12:45:14 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C48F@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: fwtk-users@ex.tis.com
Subject: SKey and adding users
Date: Tue, 2 May 2000 15:44:12 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 620

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have successfully complied the skey libraries (libskey.a using the skey
src rpm from www.beowolf.org) and made the necessary changes to the authsrv
Makefile. Authsrv compiled without any problems, but I can not change the
protocol to Skey in authmgr when adding a user (in authsrv either for that
matter). I did see skey compiled into authsrv. But it only allows me to use
'password' or 'none' when adding a user. What am I doing wrong or missing?
All help is appreciated.

Regards - Shon

From owner-fwtk-users@ex.tis.com Tue May  2 16:55 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA07487
	Tue, 2 May 2000 16:55:18 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA26141;
	Tue, 2 May 2000 14:01:22 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 13:16:58 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA19661
	for fwtk-users-outgoing; Tue, 2 May 2000 13:16:52 -0700 (PDT)
From: David Hamm <dhamm@itrepro.com>
Reply-To: dhamm@itrepro.com
Organization: Imaging Technologies Services
To: fwtk-users@ex.tis.com
Subject: smap open relay
Date: Tue, 2 May 2000 16:13:28 -0400
X-Mailer: KMail [version 1.0.20]
MIME-Version: 1.0
Message-Id: <00050216153306.21360@workbox.atlanta.itserve.com>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 514

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have smap and smapd running on my firewall so I tested it by telneting to
mail-abuse.org and it confirmed that my firewall did accept relay requests. 
Can I change this or must smap act as a relay to work?

 ---------------------------------
David Hamm
Systems Analyst
Imaging Technologies Services Inc.
email: dhamm@itrepro.com
voice: 404-870-6663
---------------------------------

From owner-fwtk-users@ex.tis.com Tue May  2 17:23 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA07623
	Tue, 2 May 2000 17:23:29 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA01462;
	Tue, 2 May 2000 14:29:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 13:44:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA23626
	for fwtk-users-outgoing; Tue, 2 May 2000 13:43:50 -0700 (PDT)
X-Authentication-Warning: the-wall.ues-software.com: mail set sender to <ko@ues-software.com> using -f
From: "Y. W. Ko" <ko@ues-software.com>
To: "Wes Szumera" <wess@eagletrim.com>, <fwtk-users@ex.tis.com>
Subject: RE: undelivered outbound mail
Date: Tue, 2 May 2000 16:37:23 -0400
Message-ID: <000201bfb476$38a21470$104262c7@uessoftware.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook 8.5, Build 4.71.2173.0
In-Reply-To: <200005021424.KAA00368@voyager.eagletrim.com>
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1300

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi Wes,

	There is a script called "mqueue" that comes with FWTK which kicks off
sendmail to process the queue every once in a while.

	Hope this helps,

		Ko


---------------------------------------------------------------------------
UES Software Inc.                               Tel: (410) 573-2037
175 Admiral Cochrane Drive, Suite 110           Fax: (410) 573-2041
Annapolis, MD 21401.                            E-mail: ko@ues-software.com

> -----Original Message-----
> From: owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com]On
> Behalf Of Wes Szumera
> Sent: Tuesday, May 02, 2000 2:15 PM
> To: fwtk-users@ex.tis.com
> Subject: undelivered outbound mail
>
>
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> How do I properly deal with outbound mail that doesn't get delivered?
>  Over time, I get mail stuck in queue that sendmail tried to send and
> gave up on.  Can I assume that smap / smapd only asks sendmail
> once to send mail and that I need to process the backlog of mail that
> didn't make it out on the first try myself?
>
> Thanks,
>
> Wes
>


From owner-fwtk-users@ex.tis.com Tue May  2 21:20 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA08174
	Tue, 2 May 2000 21:20:26 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA20727;
	Tue, 2 May 2000 18:26:15 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 17:40:53 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA17804
	for fwtk-users-outgoing; Tue, 2 May 2000 17:40:42 -0700 (PDT)
Date: Tue, 2 May 2000 20:38:22 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: David Hamm <dhamm@itrepro.com>
cc: fwtk-users@ex.tis.com
Subject: Re: smap open relay
In-Reply-To: <00050216153306.21360@workbox.atlanta.itserve.com>
Message-ID: <Pine.GSO.4.10.10005022036540.21324-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1061

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

David,

There are at least two anti relay patches to smap.  Joes Yao has one
posted to the fwtk.org site.  I have another version that was developed in
parallel.

Both of these prevent the relay issues  you are refering to - as well as
fixing a number of other issues with the smap code.

I can provide a copy if you are interested.

ted keller


On Tue, 2 May 2000, David Hamm wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I have smap and smapd running on my firewall so I tested it by telneting to
> mail-abuse.org and it confirmed that my firewall did accept relay requests. 
> Can I change this or must smap act as a relay to work?
> 
>  ---------------------------------
> David Hamm
> Systems Analyst
> Imaging Technologies Services Inc.
> email: dhamm@itrepro.com
> voice: 404-870-6663
> ---------------------------------
> 


From owner-fwtk-users@ex.tis.com Tue May  2 21:20 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA08173
	Tue, 2 May 2000 21:20:26 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA20723;
	Tue, 2 May 2000 18:26:14 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 17:32:29 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA17367
	for fwtk-users-outgoing; Tue, 2 May 2000 17:32:18 -0700 (PDT)
Date: Tue, 2 May 2000 20:30:40 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Wes Szumera <wess@eagletrim.com>
cc: fwtk-users@ex.tis.com
Subject: Re: undelivered outbound mail
In-Reply-To: <200005021424.KAA00368@voyager.eagletrim.com>
Message-ID: <Pine.GSO.4.10.10005022029200.21324-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 828

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Wes,

There are a few ways to handle this.....

1. run /usr/lib/sendmail -q15m  (note - no bd)

2. run /usr/lib/sendmail -q off of a cronjob

3. ...

ted keller


On Tue, 2 May 2000, Wes Szumera wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> How do I properly deal with outbound mail that doesn't get delivered? 
>  Over time, I get mail stuck in queue that sendmail tried to send and 
> gave up on.  Can I assume that smap / smapd only asks sendmail 
> once to send mail and that I need to process the backlog of mail that 
> didn't make it out on the first try myself?
> 
> Thanks,
> 
> Wes 
> 
> 


From owner-fwtk-users@ex.tis.com Tue May  2 23:09 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id XAA08408
	Tue, 2 May 2000 23:09:50 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA25563;
	Tue, 2 May 2000 20:15:47 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 2 May 2000 19:26:47 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA23627
	for fwtk-users-outgoing; Tue, 2 May 2000 19:26:36 -0700 (PDT)
Message-Id: <4.3.1.2.20000502220911.00c35710@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Tue, 02 May 2000 22:11:16 -0400
To: "Nixon, Anthony" <snixon@mei-charlotte.com>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: SKey and adding users
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C48F@email.domain.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 621

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 03:44 PM 5/2/00 -0400, Nixon, Anthony wrote:
>I did see skey compiled into authsrv. But it only allows me to use
>'password' or 'none' when adding a user. What am I doing wrong or missing?
>All help is appreciated.
Make sure that you define AUTHPROTO_SKEY in firewall.h. When you do that, 
it's best to use 'make clean;make' from the toplevel of fwtk. There are 
several components of authsrv that need that symbol to be defined in order 
for S/Key support to be included.
         -Rick


From owner-fwtk-users@ex.tis.com Wed May  3 04:33 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA09222
	Wed, 3 May 2000 04:33:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA03973;
	Wed, 3 May 2000 01:39:26 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 00:46:04 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id AAA02282
	for fwtk-users-outgoing; Wed, 3 May 2000 00:45:58 -0700 (PDT)
From: "Turcsanyi Zoltan" <zturcsanyi@bp.ganzansaldo.hu>
To: <fwtk-users@lists.nai.com>
Subject:  
Date: Wed, 3 May 2000 09:44:29 +0200
Message-ID: <NDBBJACEOKLEBNDJCKEAGECFICAA.zturcsanyi@bp.ganzansaldo.hu>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Importance: Normal
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 365

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have a task to make a connection across the fwtk firewall between two
pieces of a "strange" program. They communicate both TCP and UDP and use the
port TCP 5040:5060 and UDP 6040:6060. What can you suggest?

Thanks

Zoltan Turcsanyi


From owner-fwtk-users@ex.tis.com Wed May  3 09:26 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA10108
	Wed, 3 May 2000 09:26:52 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA14234;
	Wed, 3 May 2000 06:31:50 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 05:36:43 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA09184
	for fwtk-users-outgoing; Wed, 3 May 2000 05:36:18 -0700 (PDT)
Message-ID: <20000502190638.3215.qmail@web1805.mail.yahoo.com>
Date: Tue, 2 May 2000 12:06:38 -0700 (PDT)
From: Naresh Narang <nknarang@yahoo.com>
Subject: Re: undelivered outbound mail
To: Wes Szumera <wess@eagletrim.com>
Cc: fwtk-users@ex.tis.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 939

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I run "sendmail -q" from cron once in a week to send
all the mail that might possibly be queued up.

NKN

--- Wes Szumera <wess@eagletrim.com> wrote:
> [To be removed from this list send the message
> "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> How do I properly deal with outbound mail that
> doesn't get delivered? 
>  Over time, I get mail stuck in queue that sendmail
> tried to send and 
> gave up on.  Can I assume that smap / smapd only
> asks sendmail 
> once to send mail and that I need to process the
> backlog of mail that 
> didn't make it out on the first try myself?
> 
> Thanks,
> 
> Wes 
> 
> 
> 

__________________________________________________
Do You Yahoo!?
Send instant messages & get email alerts with Yahoo! Messenger.
http://im.yahoo.com/

From owner-fwtk-users@ex.tis.com Wed May  3 09:29 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA10115
	Wed, 3 May 2000 09:29:56 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA14714;
	Wed, 3 May 2000 06:35:31 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 05:53:32 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA10117
	for fwtk-users-outgoing; Wed, 3 May 2000 05:53:15 -0700 (PDT)
Message-ID: <20000502215848.23216.qmail@web1801.mail.yahoo.com>
Date: Tue, 2 May 2000 14:58:48 -0700 (PDT)
From: Naresh Narang <nknarang@yahoo.com>
Subject: Re: smap open relay
To: dhamm@itrepro.com
Cc: fwtk-users@ex.tis.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 942

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Relay must not be allowed. Install Yao Patch to stop
relay.

NKN

--- David Hamm <dhamm@itrepro.com> wrote:
> [To be removed from this list send the message
> "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I have smap and smapd running on my firewall so I
> tested it by telneting to
> mail-abuse.org and it confirmed that my firewall did
> accept relay requests. 
> Can I change this or must smap act as a relay to
> work?
> 
>  ---------------------------------
> David Hamm
> Systems Analyst
> Imaging Technologies Services Inc.
> email: dhamm@itrepro.com
> voice: 404-870-6663
> ---------------------------------
> 

__________________________________________________
Do You Yahoo!?
Send instant messages & get email alerts with Yahoo! Messenger.
http://im.yahoo.com/

From owner-fwtk-users@ex.tis.com Wed May  3 09:29 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA10114
	Wed, 3 May 2000 09:29:56 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA14732;
	Wed, 3 May 2000 06:35:31 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 05:53:37 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA10118
	for fwtk-users-outgoing; Wed, 3 May 2000 05:53:16 -0700 (PDT)
From: kmoriarty@factset.com
Subject: Re: undelivered outbound mail
To: "Wes Szumera" <wess@eagletrim.com>
Cc: fwtk-users@ex.tis.com
X-Mailer: Lotus Notes Release 5.0.2b  December 16, 1999
Message-ID: <OF54E2BE65.21D8FBAF-ON852568D3.006B309C@factset.com>
Date: Tue, 2 May 2000 15:31:59 -0400
X-MIMETrack: Serialize by Router on factnotes1/FactSet(Release 5.0.2b |December 16, 1999) at
 05/02/2000 03:32:00 PM
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1649

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi Wes,

You can call sendmail with the -q flag from a cron job periodically to
resend mail.

-Kathleen

_______________________

Kathleen M. Moriarty



                                                                                                   
                    "Wes Szumera"                                                                  
                    <wess@eagletr        To:     fwtk-users@ex.tis.com                             
                    im.com>              cc:     (bcc: Kathleen Moriarty/FactSet)                  
                                                                                                   
                    05/02/00             Subject:     undelivered outbound mail                    
                    02:15 PM                                                                       
                                                                                                   
                                                                                                   





[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

How do I properly deal with outbound mail that doesn't get delivered?
 Over time, I get mail stuck in queue that sendmail tried to send and
gave up on.  Can I assume that smap / smapd only asks sendmail
once to send mail and that I need to process the backlog of mail that
didn't make it out on the first try myself?

Thanks,

Wes

From owner-fwtk-users@ex.tis.com Wed May  3 09:30 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA10120
	Wed, 3 May 2000 09:30:08 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA14841;
	Wed, 3 May 2000 06:35:49 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 05:54:25 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA10220
	for fwtk-users-outgoing; Wed, 3 May 2000 05:54:14 -0700 (PDT)
Message-ID: <007501bfb497$27304740$8cce91d0@quaestor.net>
From: "Peter Ratkai" <pratkai@quaestcom.net>
To: <fwtk-users@ex.tis.com>
Subject: list archives
Date: Tue, 2 May 2000 18:33:06 -0600
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 468

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

Is there an fwtk mailinglist archive available now?

The one on http://www.support.nl/online/fwtkquery.html is not working , and
I've just faced a problem with pc anywhere. I don't want to ask about it
again, because i know there were lots of threads on this, but now i can't
find a searchable archive.

Thanks,
Regards,
Peter Ratkai

From owner-fwtk-users@ex.tis.com Wed May  3 10:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA10509
	Wed, 3 May 2000 10:59:48 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA27257;
	Wed, 3 May 2000 08:06:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 07:16:49 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA20913
	for fwtk-users-outgoing; Wed, 3 May 2000 07:16:38 -0700 (PDT)
Message-ID: <39103443.991D7B5F@v-one.com>
Date: Wed, 03 May 2000 10:14:27 -0400
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.72 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: Peter Ratkai <pratkai@quaestcom.net>
CC: fwtk-users@ex.tis.com
Subject: Re: list archives
References: <007501bfb497$27304740$8cce91d0@quaestor.net>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 395

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Peter Ratkai wrote:
> 
> Is there an fwtk mailinglist archive available now?
> 

Links for searchable archives are kept here:
http://www.fwtk.org/fwtk/download/downloading.html#3.5

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Wed May  3 11:05 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA10530
	Wed, 3 May 2000 11:05:47 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA27907;
	Wed, 3 May 2000 08:12:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 07:30:31 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA22803
	for fwtk-users-outgoing; Wed, 3 May 2000 07:30:20 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C490@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Rick Murphy'" <rmurphy@itm-inst.com>
Cc: fwtk-users@ex.tis.com
Subject: RE: SKey and adding users
Date: Wed, 3 May 2000 10:29:23 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1873

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have made the change to auth.h (that's actually where I found the line:
define AUTHPROTO_SKEY), but now when compiling authsrv I get several
undefined messages:

../../skey/libskey.a(skeysubr.o): In function `keycrunch'
skeysubr.o(.text+0x67): undefined reference to `MD4Init'
skeysubr.o(.text+0x6f): undefined reference to `MD4Update'
skeysubr.o(.text+0x79): undefined reference to `MD4Final'
../../skey/libskey.a(skeysubr.o): In function `f'
skeysubr.o(.text+0xbc): undefined reference to `MD4Init'
skeysubr.o(.text+0xc5): undefined reference to `MD4Update'
skeysubr.o(.text+0xcf): undefined reference to `MD4Final'
collect2: ld returned 1 exit status
make[1]: *** [authsrv] Error 1

I have commented the line back and recompiled to make sure that's what was
causing the error. Could you please help with this? I am afraid I am over my
head with this one.

Regards - Shon

> -----Original Message-----
> From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> Sent: Tuesday, May 02, 2000 10:11 PM
> To: Nixon, Anthony; fwtk-users@ex.tis.com
> Subject: Re: SKey and adding users
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> At 03:44 PM 5/2/00 -0400, Nixon, Anthony wrote:
> >I did see skey compiled into authsrv. But it only allows me to use
> >'password' or 'none' when adding a user. What am I doing 
> wrong or missing?
> >All help is appreciated.
> Make sure that you define AUTHPROTO_SKEY in firewall.h. When 
> you do that, 
> it's best to use 'make clean;make' from the toplevel of fwtk. 
> There are 
> several components of authsrv that need that symbol to be 
> defined in order 
> for S/Key support to be included.
>          -Rick
> 

From owner-fwtk-users@ex.tis.com Wed May  3 14:30 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA11165
	Wed, 3 May 2000 14:29:55 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA25429;
	Wed, 3 May 2000 11:35:45 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 10:20:30 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA13675
	for fwtk-users-outgoing; Wed, 3 May 2000 10:20:24 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C493@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: SKey and adding users
Date: Wed, 3 May 2000 13:19:36 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2613

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

My apologies for wasting your time. I have found the fwtk archives and found
the answer from Tin Le's post concerning including -L/usr/../skey -lskey
-lmd in the AUXLIB= -lcrypt statement. This has fixed the issue. Thanks to
this list and all parties who helped.

Regards - Shon

> -----Original Message-----
> From: Nixon, Anthony [mailto:snixon@mei-charlotte.com]
> Sent: Wednesday, May 03, 2000 10:29 AM
> To: 'Rick Murphy'
> Cc: fwtk-users@ex.tis.com
> Subject: RE: SKey and adding users
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I have made the change to auth.h (that's actually where I 
> found the line:
> define AUTHPROTO_SKEY), but now when compiling authsrv I get several
> undefined messages:
> 
> ../../skey/libskey.a(skeysubr.o): In function `keycrunch'
> skeysubr.o(.text+0x67): undefined reference to `MD4Init'
> skeysubr.o(.text+0x6f): undefined reference to `MD4Update'
> skeysubr.o(.text+0x79): undefined reference to `MD4Final'
> ../../skey/libskey.a(skeysubr.o): In function `f'
> skeysubr.o(.text+0xbc): undefined reference to `MD4Init'
> skeysubr.o(.text+0xc5): undefined reference to `MD4Update'
> skeysubr.o(.text+0xcf): undefined reference to `MD4Final'
> collect2: ld returned 1 exit status
> make[1]: *** [authsrv] Error 1
> 
> I have commented the line back and recompiled to make sure 
> that's what was
> causing the error. Could you please help with this? I am 
> afraid I am over my
> head with this one.
> 
> Regards - Shon
> 
> > -----Original Message-----
> > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > Sent: Tuesday, May 02, 2000 10:11 PM
> > To: Nixon, Anthony; fwtk-users@ex.tis.com
> > Subject: Re: SKey and adding users
> > 
> > 
> > [To be removed from this list send the message "unsubscribe 
> > fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > At 03:44 PM 5/2/00 -0400, Nixon, Anthony wrote:
> > >I did see skey compiled into authsrv. But it only allows me to use
> > >'password' or 'none' when adding a user. What am I doing 
> > wrong or missing?
> > >All help is appreciated.
> > Make sure that you define AUTHPROTO_SKEY in firewall.h. When 
> > you do that, 
> > it's best to use 'make clean;make' from the toplevel of fwtk. 
> > There are 
> > several components of authsrv that need that symbol to be 
> > defined in order 
> > for S/Key support to be included.
> >          -Rick
> > 
> 

From owner-fwtk-users@ex.tis.com Wed May  3 15:51 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA11541
	Wed, 3 May 2000 15:51:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA09298;
	Wed, 3 May 2000 12:57:29 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 3 May 2000 12:08:16 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA01653
	for fwtk-users-outgoing; Wed, 3 May 2000 12:08:10 -0700 (PDT)
From: David Hamm <dhamm@itrepro.com>
Reply-To: dhamm@itrepro.com
Organization: Imaging Technologies Services
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: nospam patch
Date: Wed, 3 May 2000 14:45:22 -0400
X-Mailer: KMail [version 1.0.20]
MIME-Version: 1.0
Message-Id: <00050315064702.22948@workbox.atlanta.itserve.com>
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 657

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I'm trying to patch fwtk with the nospam patches.  I have no problem patching
smap but when I try to patch Makefile I get the following errors.  
]$ patch -p1 < ../../nospam/Makefile.diff
patching file `Makefile'
Hunk #1 FAILED at 13.
Hunk #2 FAILED at 32.
2 out of 2 hunks FAILED -- saving rejects to Makefile.rej 

Any help would be appreciated.

 --
---------------------------------
David Hamm
Systems Analyst
Imaging Technologies Services Inc.
email: dhamm@itrepro.com
voice: 404-870-6663
---------------------------------

From owner-fwtk-users@ex.tis.com Thu May  4 12:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA15016
	Thu, 4 May 2000 12:08:00 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA18473;
	Thu, 4 May 2000 09:14:17 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 07:50:31 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA17552
	for fwtk-users-outgoing; Thu, 4 May 2000 07:50:25 -0700 (PDT)
X-SOCIETY-Name: <fwtk-users@lists.nai.com>
Date: Thu, 4 May 2000 15:47:03 +0200
From: Dirk Schietsch <DSC@society.de>
X-Mailer: The Bat! (v1.41) UNREG / CD5BF9353B3B7091
Reply-To: Dirk Schietsch <DSC@society.de>
Organization: SOCIETY Kommunikationssysteme GmbH
X-Priority: 3 (Normal)
Message-ID: <16657.000504@society.de>
To: fwtk-users@lists.nai.com
Subject: Help on Configuring Logging in FWTK
Mime-Version: 1.0
Content-Transfer-Encoding: 8bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=ISO-8859-1
Content-Length: 1077

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello there,

we would need some assistance with the configuration of Logging in the
Firewall Toolkit 2.1. We hope to get some assistance of experienced
users on this list.

Here is the Problem:

We use the TIS Firewall Toolkit for quite a while now and it works
fine for us and I got everything I needed at hands until now.

Now we would like to control the surfing activities of our employees
to see what kind of Data is surfed in the Internet (work-relatet or
more private) so we would like to get a logging of the called
Website-Names in the FWTK-Log.

Until now we only got a logging of the calling Mashines Name/IP-Adress
but not of the destination.

So we would like to ask if there is some Rule to enable a logging of
the surfing Destinations. ?

Thankx for your help in advance

With best Regards,

Dirk Schietsch
-- 
SOCIETY Kommunikationssysteme GmbH
Secunda Straße 8
53332 Bornheim / Rheinland
Tel.: 02222 / 702-0
Fax.: 02222 / 919900


From owner-fwtk-users@ex.tis.com Thu May  4 16:19 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA15891
	Thu, 4 May 2000 16:19:34 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA08998;
	Thu, 4 May 2000 13:25:57 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 11:51:56 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA12433
	for fwtk-users-outgoing; Thu, 4 May 2000 11:51:42 -0700 (PDT)
Message-ID: <008501bfb5f8$5e9c9460$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "Dirk Schietsch" <DSC@society.de>, <fwtk-users@lists.nai.com>
References: <16657.000504@society.de>
Subject: Re: Help on Configuring HTTP Logging in FWTK
Date: Thu, 4 May 2000 14:41:23 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 931

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Try editting your inetd.conf and changing the http-gw
line by adding a -log option paramater.
ie
http-gw    stream    tcp    nowait    root    /usr/local/etc/http-gw -log
http-gw
LarryJackson@iName.com
----- Original Message -----
From: Dirk Schietsch <DSC@society.de>

> Now we would like to control the surfing activities of our employees
> to see what kind of Data is surfed in the Internet (work-relatet or
> more private) so we would like to get a logging of the called
> Website-Names in the FWTK-Log.
>
> Until now we only got a logging of the calling Mashines Name/IP-Adress
> but not of the destination.
>
> So we would like to ask if there is some Rule to enable a logging of
> the surfing Destinations. ?
>
> Thankx for your help in advance
>
> With best Regards,
>
> Dirk Schietsch
> --
>


From owner-fwtk-users@ex.tis.com Thu May  4 18:40 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA16290
	Thu, 4 May 2000 18:40:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA17119;
	Thu, 4 May 2000 15:46:42 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 14:43:29 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA01640
	for fwtk-users-outgoing; Thu, 4 May 2000 14:43:23 -0700 (PDT)
Message-ID: <CAE0A17F1713D311A44500105A16C90B652925@bush.cambric.com>
From: Malcolm Tester <MTester@cambric.com>
To: fwtk-users@lists.nai.com
Subject: Some minor http-gw problems
Date: Thu, 4 May 2000 15:53:31 -0600 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1234

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi,

I've been noticing some weird problems with http-gw.  It doesn't seem to
affect usage, but it certainly fills the logs up.
The message is:

<date> <server> http-gw[pid]: n2a get_local_info: open to get interface
configuration: no such file or directory.

Any ideas?

Thanks,
Malcolm

Malcolm W. Tester II
Cambric Corporation
110 West Business Park Drive
Draper, Utah 84020
http://www.cambric.com

Internet: mtester@cambric.com
Voice:         (801) 816-8966
Fax:           (801) 816-8908


This message is intended only for the use of the individual or entity to
whom it is addressed and may contain information that is privileged,
confidential and exempt from disclosure under applicable law.  If the reader
of this message is not the intended recipient, or the employee or agent
responsible for delivering the message to the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this
communication in error, please delete it from your system and notify the
sender identified above by e-mail.

From owner-fwtk-users@ex.tis.com Thu May  4 21:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA16735
	Thu, 4 May 2000 21:08:37 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA21073;
	Thu, 4 May 2000 18:14:52 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 17:19:32 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA09156
	for fwtk-users-outgoing; Thu, 4 May 2000 17:19:25 -0700 (PDT)
Message-Id: <0005059574.AA957485577@internet-mail.precisionvalve.com.au>
X-Mailer: ccMail Link to SMTP R8.30.00.7
Date: Fri, 05 May 2000 10:12:56 +1000
From: "RHANOUSE"<rhanouse@precisionvalve.com.au>
To: <fwtk-users@lists.nai.com>
Subject: Test FireWall
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Description: "cc:Mail Note Part"
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 306

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi All
Are there any utilitys that you can use to test the setup of your own FWTK
FireWall ? Or any thing that can show me if i have any hole on my firewall ?

Thanks

Roman



From owner-fwtk-users@ex.tis.com Thu May  4 21:19 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA16742
	Thu, 4 May 2000 21:19:11 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA23459;
	Thu, 4 May 2000 18:25:34 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 17:38:39 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA12957
	for fwtk-users-outgoing; Thu, 4 May 2000 17:38:26 -0700 (PDT)
Message-Id: <0005059574.AA957486724@internet-mail.precisionvalve.com.au>
X-Mailer: ccMail Link to SMTP R8.30.00.7
Date: Fri, 05 May 2000 10:32:04 +1000
From: "RHANOUSE"<rhanouse@precisionvalve.com.au>
To: <fwtk-users@ex.tis.com>
Subject: Test FireWall
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Description: "cc:Mail Note Part"
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 296

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi All
Are there any utilitys that we can use to test the out setup of the FWTK ? Or
any thing that can show me if i have any holes on my firewall ?

Thanks

Roman



From owner-fwtk-users@ex.tis.com Thu May  4 22:46 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA16949
	Thu, 4 May 2000 22:46:26 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA06454;
	Thu, 4 May 2000 19:52:29 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 18:58:21 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA28621
	for fwtk-users-outgoing; Thu, 4 May 2000 18:58:10 -0700 (PDT)
Message-ID: <00f701bfb633$f4b122a0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Cc: "Malcolm Tester" <MTester@cambric.com>
References: <CAE0A17F1713D311A44500105A16C90B652925@bush.cambric.com>
Subject: Re: Some minor http-gw problems
Date: Thu, 4 May 2000 21:48:04 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 705

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

From: Malcolm Tester <MTester@cambric.com>
To: <fwtk-users@lists.nai.com>
> 
> I've been noticing some weird problems with http-gw.  It doesn't seem to
> affect usage, but it certainly fills the logs up.
> The message is:
> 
> <date> <server> http-gw[pid]: n2a get_local_info: open to get interface
> configuration: no such file or directory.
> 
> Any ideas?
> 
I just searched the http-gw source code for this message 
and could not find it.  I'd assume its either an inetd or socket error.

What operating system and version op FWTK are you using?

LarryJackson@iName.com



From owner-fwtk-users@ex.tis.com Thu May  4 22:54 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA16964
	Thu, 4 May 2000 22:54:21 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA07566;
	Thu, 4 May 2000 20:00:45 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 19:14:46 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA00945
	for fwtk-users-outgoing; Thu, 4 May 2000 19:14:32 -0700 (PDT)
Message-Id: <4.3.1.2.20000504210328.00ca1100@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Thu, 04 May 2000 22:11:21 -0400
To: Malcolm Tester <MTester@cambric.com>, fwtk-users@lists.nai.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: Some minor http-gw problems
In-Reply-To: <CAE0A17F1713D311A44500105A16C90B652925@bush.cambric.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 645

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 03:53 PM 5/4/00 -0600, Malcolm Tester wrote:
>I've been noticing some weird problems with http-gw.  It doesn't seem to
>affect usage, but it certainly fills the logs up.
>The message is:
>
><date> <server> http-gw[pid]: n2a get_local_info: open to get interface
>configuration: no such file or directory.
>
>Any ideas?

Something in your operating system called 'n2a' (probably a resolver 
routine) isn't able to open a file it needs. Are you running http-gw 
chrooted? What OS and release is it?
         -Rick


From owner-fwtk-users@ex.tis.com Thu May  4 23:21 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id XAA17028
	Thu, 4 May 2000 23:21:08 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA11158;
	Thu, 4 May 2000 20:27:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 4 May 2000 19:42:30 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA05531
	for fwtk-users-outgoing; Thu, 4 May 2000 19:42:23 -0700 (PDT)
Message-ID: <CAE0A17F1713D311A44500105A16C90B652928@bush.cambric.com>
From: Malcolm Tester <MTester@cambric.com>
To: fwtk-users@lists.nai.com
Subject: RE: Some minor http-gw problems
Date: Thu, 4 May 2000 20:52:21 -0600 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="windows-1252"
Content-Length: 1950

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Solaris 2.6 with all the latest and greatest recommended/security patches.
Http-gw runs as root.
Running ldd on http-gw shows:
	libresolv.so.2
	libsocket.so.1
	libnsl.so.1
	libc.so.1
	libdl.so.1
	libmp.so.2
which all exist...

Malcolm

Malcolm W. Tester II
Cambric Corporation
110 West Business Park Drive
Draper, Utah 84020
http://www.cambric.com

Internet: mtester@cambric.com
Voice:         (801) 816-8966
Fax:           (801) 816-8908


This message is intended only for the use of the individual or entity to
whom it is addressed and may contain information that is privileged,
confidential and exempt from disclosure under applicable law.  If the reader
of this message is not the intended recipient, or the employee or agent
responsible for delivering the message to the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this
communication in error, please delete it from your system and notify the
sender identified above by e-mail.



> -----Original Message-----
> From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> Sent: Thursday, May 04, 2000 8:11 PM
> To: Malcolm Tester; fwtk-users@lists.nai.com
> Subject: Re: Some minor http-gw problems
> 
> 
> At 03:53 PM 5/4/00 -0600, Malcolm Tester wrote:
> >I've been noticing some weird problems with http-gw.  It 
> doesn't seem to
> >affect usage, but it certainly fills the logs up.
> >The message is:
> >
> ><date> <server> http-gw[pid]: n2a get_local_info: open to 
> get interface
> >configuration: no such file or directory.
> >
> >Any ideas?
> 
> Something in your operating system called 'n2a' (probably a resolver 
> routine) isn't able to open a file it needs. Are you running http-gw 
> chrooted? What OS and release is it?
>          -Rick
> 

From owner-fwtk-users@ex.tis.com Fri May  5 06:41 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA17990
	Fri, 5 May 2000 06:41:20 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA20849;
	Fri, 5 May 2000 03:47:45 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 02:51:03 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA15996
	for fwtk-users-outgoing; Fri, 5 May 2000 02:50:52 -0700 (PDT)
X-Authentication-Warning: www1.isolaandisola.com: mailuser set sender to <wj@isolaandisola.com> using -f
Message-ID: <475EA20DB21ED4118C5200D0B74766C91463@medusa.isolaandisola.com>
From: William Jackson <wj@isolaandisola.com>
To: "'Naresh Narang'" <nknarang@yahoo.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: smap open relay
Date: Fri, 5 May 2000 11:35:46 +0200 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1784

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

hello there

I saw your suggestion about the yao patch

I have patched the smap.c file but when I try to complie it I get the error:

smap.o: In function `from_address_ok':
/usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to `res_query'
/usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to `res_query'
collect2: ld returned 1 exit status

the res_query function is included via the resolv.h header file

#include <resolv.h>

which I have in the usr/include directory with a definition of res_query

any ideas?

cheers


-----Original Message-----
From: Naresh Narang [mailto:nknarang@yahoo.com]
Sent: 02 May 2000 23:59
To: dhamm@itrepro.com
Cc: fwtk-users@ex.tis.com
Subject: Re: smap open relay


[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

Relay must not be allowed. Install Yao Patch to stop
relay.

NKN

--- David Hamm <dhamm@itrepro.com> wrote:
> [To be removed from this list send the message
> "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I have smap and smapd running on my firewall so I
> tested it by telneting to
> mail-abuse.org and it confirmed that my firewall did
> accept relay requests. 
> Can I change this or must smap act as a relay to
> work?
> 
>  ---------------------------------
> David Hamm
> Systems Analyst
> Imaging Technologies Services Inc.
> email: dhamm@itrepro.com
> voice: 404-870-6663
> ---------------------------------
> 

__________________________________________________
Do You Yahoo!?
Send instant messages & get email alerts with Yahoo! Messenger.
http://im.yahoo.com/

From owner-fwtk-users@ex.tis.com Fri May  5 07:14 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA18122
	Fri, 5 May 2000 07:14:38 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA23295;
	Fri, 5 May 2000 04:21:04 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 03:36:56 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA19581
	for fwtk-users-outgoing; Fri, 5 May 2000 03:36:45 -0700 (PDT)
Message-ID: <23429C708328D211B21200A0C9B2176130F234@prospero.herefordshire.gov.uk>
From: "Randal, Phil" <prandal@herefordshire.gov.uk>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: smap open relay
Date: Fri, 5 May 2000 11:38:15 +0100 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2414

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Add -lresolv to your makefile

------------------------------------------------------------
Phil Randal
Network Engineer
Herefordshire Council, UK

> -----Original Message-----
> From: William Jackson [mailto:wj@isolaandisola.com]
> Sent: 05 May 2000 10:36
> To: 'Naresh Narang'
> Cc: 'fwtk-users@ex.tis.com'
> Subject: RE: smap open relay
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> hello there
> 
> I saw your suggestion about the yao patch
> 
> I have patched the smap.c file but when I try to complie it I 
> get the error:
> 
> smap.o: In function `from_address_ok':
> /usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to 
> `res_query'
> /usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to 
> `res_query'
> collect2: ld returned 1 exit status
> 
> the res_query function is included via the resolv.h header file
> 
> #include <resolv.h>
> 
> which I have in the usr/include directory with a definition 
> of res_query
> 
> any ideas?
> 
> cheers
> 
> 
> -----Original Message-----
> From: Naresh Narang [mailto:nknarang@yahoo.com]
> Sent: 02 May 2000 23:59
> To: dhamm@itrepro.com
> Cc: fwtk-users@ex.tis.com
> Subject: Re: smap open relay
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Relay must not be allowed. Install Yao Patch to stop
> relay.
> 
> NKN
> 
> --- David Hamm <dhamm@itrepro.com> wrote:
> > [To be removed from this list send the message
> > "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > I have smap and smapd running on my firewall so I
> > tested it by telneting to
> > mail-abuse.org and it confirmed that my firewall did
> > accept relay requests. 
> > Can I change this or must smap act as a relay to
> > work?
> > 
> >  ---------------------------------
> > David Hamm
> > Systems Analyst
> > Imaging Technologies Services Inc.
> > email: dhamm@itrepro.com
> > voice: 404-870-6663
> > ---------------------------------
> > 
> 
> __________________________________________________
> Do You Yahoo!?
> Send instant messages & get email alerts with Yahoo! Messenger.
> http://im.yahoo.com/
> 

From owner-fwtk-users@ex.tis.com Fri May  5 14:58 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA19843
	Fri, 5 May 2000 14:58:31 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA15021;
	Fri, 5 May 2000 12:04:14 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 11:05:03 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA10600
	for fwtk-users-outgoing; Fri, 5 May 2000 11:04:57 -0700 (PDT)
Message-ID: <39130CC4.BACC66D4@lynx.com>
Date: Fri, 05 May 2000 11:02:44 -0700
From: "H.T. Sun" <sun@Lynx.COM>
Organization: Lynx Real-Time Systems
X-Mailer: Mozilla 4.7 [en] (X11; U; Linux 2.2.12-20 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: smap won't log headers in /var/spool/smap
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=big5
Content-Length: 246

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

   Could anyone out there tell me how I can ask smap to
    log the headers of every single email ?

   Thanks


From owner-fwtk-users@ex.tis.com Fri May  5 15:24 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA19963
	Fri, 5 May 2000 15:24:05 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA18090;
	Fri, 5 May 2000 12:30:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 11:45:08 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA13239
	for fwtk-users-outgoing; Fri, 5 May 2000 11:44:57 -0700 (PDT)
Message-ID: <006001bfb6c0$889f98c0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: <fwtk-users@lists.nai.com>
Cc: =?iso-8859-1?Q?Marcin_CIE=A6LAK?= <saper@sgh.waw.pl>
References: <Pine.GSO.4.05.10004241150440.11572-100000@akson.sgh.waw.pl>
Subject: Re: http-gw: A new patch for JavaScript quoting
Date: Fri, 5 May 2000 14:34:17 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 782

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Should everyone automatically install the patch?

How do you know if I need this patch?

What symptoms were you seeing?

Thanks,
LarryJackson@iName.com

From: Marcin CIE¦LAK <saper@sgh.waw.pl>
To: <fwtk-users@lists.nai.com>
>
> I have developed a bit better solution for
> JavaScript quoting in http-gw.
> Apparently, the http-gw seemed to remove
> the final quote in situations like:
>
> <a href=Missing_first quote">
> <a href=\"Some_guys__put_a_whole_code_in_js_variable\">
>
> The patch postpones a write of the
> final quote, _not_ removing the final quote from
> the attribute's value.
>
>               << Marcin Cie¶lak // saper@sgh.waw.pl >>



From owner-fwtk-users@ex.tis.com Fri May  5 15:29 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA19977
	Fri, 5 May 2000 15:29:17 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA18672;
	Fri, 5 May 2000 12:35:11 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 11:52:06 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA13833
	for fwtk-users-outgoing; Fri, 5 May 2000 11:51:54 -0700 (PDT)
Message-ID: <007101bfb6c1$874a4c80$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: <fwtk-users@lists.nai.com>
Cc: "Joseph S D Yao" <jsdy@cospo.osis.gov>
References: <200004141349240410.0011F73B@mail.wol.net.pk> <20000414122951.Q29615@washington.cospo.osis.gov>
Subject: Re: FTP from browser
Date: Fri, 5 May 2000 14:41:29 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1354

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Has anyone patched the http-gw proxy to handle FTP better?

Specifically I'm looking for file information like size and permission.
I know this is not standard from O/S to O/S but lots of prgrams handle this.

I've also had problems with it adding a / to the end of text files and
treating them like directories instead of displaying the text file.

Thanks,
LarryJackson@iName.com

From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: }{ce||enT <xcelent@wol.net.pk>
Cc: <fwtk-users@lists.nai.com>
Sent: Friday, April 14, 2000 12:29 PM
>
> On Fri, Apr 14, 2000 at 01:49:24PM +0500, }{ce||enT wrote:
> >
> > I have configured FWTK's FTP-gw and works fine with dos prompt but when
i
> > do FTP from web browser it says U dont have permission to access this
site.
> >
> > Normally when i DO ftp From other machine whose gateway is different ,
it works fine ...
> >
> > Can any one tell me what should i do ???
> >
> > xcelent
>
> FTP from a Web browser does NOT use ftp-gw.  It uses http-gw.  Make
> sure that you are running http-gw on port 80 on your bastion host.
> Configure your browser to use your bastion host on port 80 for HTTP,
> HTTPS ["Security"], FTP, and also Gopher.
>
> Joe Yao jsdy@cospo.osis.gov - Joseph S. D. Yao



From owner-fwtk-users@ex.tis.com Fri May  5 16:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA20203
	Fri, 5 May 2000 16:10:44 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA25203;
	Fri, 5 May 2000 13:16:21 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 12:06:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA15259
	for fwtk-users-outgoing; Fri, 5 May 2000 12:06:37 -0700 (PDT)
Message-ID: <008101bfb6c3$933400c0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: "FWTK List" <fwtk-users@lists.nai.com>
Subject: Re: http-gw giving Network error: net_flags[4] set (read)
Date: Fri, 5 May 2000 14:56:08 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 869

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Rick Murphy <rmurphy@itm-inst.com> on 01-24-00  replied:
>
> At 01:53 PM 1/24/00 -0600, Lidgate, Chris A wrote:
> >I've been checking the fwtk syslog file and notice 800 - 2000 daily
> >entries which read:
> >
> >         http-gw[xxxx]: Network error: net_flags[4] set (read)

> That means that some routine in the http-gw tried to read from a socket
> that had already been closed. (Similar to the '(write)' error, except that
> those were attempted writes). They're harmless. (But they do indicate a
bug
> somewhere - an error occurred but http-gw didn't remember that it no
longer
> had a connection.)
>         -Rick

Does anyone have any patches or info on these errors?
I'm still getting 100's of them a day.

LarryJackson@iName.com


From owner-fwtk-users@ex.tis.com Fri May  5 22:16 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA21218
	Fri, 5 May 2000 22:16:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA01026;
	Fri, 5 May 2000 19:22:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 5 May 2000 18:04:53 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA23255
	for fwtk-users-outgoing; Fri, 5 May 2000 18:04:32 -0700 (PDT)
Message-ID: <004e01bfb6c0$0639f1a0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: <fwtk-users@lists.nai.com>
Cc: "Turcsanyi Zoltan" <zturcsanyi@bp.ganzansaldo.hu>
References: <NDBBJACEOKLEBNDJCKEAGECFICAA.zturcsanyi@bp.ganzansaldo.hu>
Subject: Re:  Opening strange TCP & UDP ports
Date: Fri, 5 May 2000 14:30:43 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1228

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Use plug-gw to connect the TCP ports and
 use UDPrelay to connect the UDP ports.

But a couple of comments & suggestions....

This solution will work but also will expose more of your systems
to possible attacks.  If you do this you might want to implement
further security measures to encapsulate these connections.

IIRC his is a similar to handling IRC or Streaming media.
Its always best to have a proxy, but then you need to know
everything about the data and they only work for TCP.

I have a similar problem with an internet phone app.
My best solution, which I have not implemented yet,
was to write a script to activate UDPrelay which would
be triggered via inetd by connecting on a certain TCP port.
That way I would not leave the UDP ports open all the time.

LarryJackson@iName.com

From: Turcsanyi Zoltan <zturcsanyi@bp.ganzansaldo.hu>
>
> I have a task to make a connection across the fwtk firewall between two
> pieces of a "strange" program. They communicate both TCP and UDP and use
the
> port TCP 5040:5060 and UDP 6040:6060. What can you suggest?
>
> Thanks
>
> Zoltan Turcsanyi


From owner-fwtk-users@ex.tis.com Sat May  6 10:27 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA22488
	Sat, 6 May 2000 10:27:19 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA19604;
	Sat, 6 May 2000 07:33:23 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 6 May 2000 06:20:22 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA09847
	for fwtk-users-outgoing; Sat, 6 May 2000 06:19:40 -0700 (PDT)
Date: Sat, 6 May 2000 15:17:55 +0200 (MET DST)
From: =?ISO-8859-2?Q?Marcin_CIE=A6LAK?= <saper@sgh.waw.pl>
To: Larry Jackson <LarryJackson@iName.com>
cc: fwtk-users@lists.nai.com
Subject: Re: http-gw: A new patch for JavaScript quoting
In-Reply-To: <006001bfb6c0$889f98c0$fc00a8c0@k62350>
Message-ID: <Pine.GSO.4.05.10005061512270.27044-100000@akson.sgh.waw.pl>
MIME-Version: 1.0
Content-Transfer-Encoding: 8BIT
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=ISO-8859-2
Content-Length: 953

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Fri, 5 May 2000, Larry Jackson wrote:

 -> How do you know if I need this patch?

I had a problem with http://www.intel.com/ ISPnet site (unfortunately,
one has to be registered there) - it had lots of stuff put into
a JavaScript variable like,
A
var blah = " ....
      <A HREF=\"link\">

All quotes there were quoted :) and http-gw change it to:

     <A HREF=\"link\> 

causing obvious errors. 

My patch fixes the reason, - http-gw used to add " at the end of quoted
strings, and it used strange mechanism to avoid it when it was
unnecessary, which resulted in chopping off the final quote.  

I assume my patch is safe for general deployment, so you may apply it
anyway, since today's JavaScript mangling techniques are getting
more and more complicated.

-- 
              << Marcin Cie¶lak // saper@sgh.waw.pl >>


From owner-fwtk-users@ex.tis.com Sat May  6 19:24 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA23465
	Sat, 6 May 2000 19:24:18 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA01322;
	Sat, 6 May 2000 16:30:40 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sat, 6 May 2000 14:59:05 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA26978
	for fwtk-users-outgoing; Sat, 6 May 2000 14:58:59 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C495@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Transparency?
Date: Sat, 6 May 2000 17:58:10 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 820

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have tried to get the transparency patch to install with no luck using the
command patch -p <transp.pch as per the instruction with the patch in the
fwtk source root /usr/src/fwtk. I keep getting the message that -p needs an
additional argument. If I try to drop the -p switch, no joy also. I have
tried to do it by the instruction (btm) and am having no luck. Could someone
point me in the right direction or does this patch not work? Anyone have any
luck with it yet? I am using RH 6.2 Intel and have successfully compiled the
entire fwtk including skey. Would like to have the additional functionality
(actually need it is a better word). All help is appreciated.

Best Regards - Shon 

From owner-fwtk-users@ex.tis.com Sun May  7 06:22 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA24624
	Sun, 7 May 2000 06:22:22 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA20362;
	Sun, 7 May 2000 03:28:44 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 7 May 2000 02:05:08 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA17970
	for fwtk-users-outgoing; Sun, 7 May 2000 02:04:57 -0700 (PDT)
X-Sender: neuro@it-world.nu@192.168.2.1
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.0
Date: Sun, 07 May 2000 11:00:21 +0200
To: fwtk-users@lists.nai.com
From: Robban <neuro@it-world.nu>
Subject: FWTK and NAPSTER
Mime-Version: 1.0
Message-Id: <200005071101397.SM01104@neuro>
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 465

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello all!

I know this is a kind of odd question, and I'm sure the most of you are
wondering how serious I am. ;p
But here it comes: Is there any way to get Napster to work when I'm behind
an FWTK?
They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
strange to me,
two proxies on one machine).

Best Regards
Robban


From owner-fwtk-users@ex.tis.com Sun May  7 06:44 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id GAA24640
	Sun, 7 May 2000 06:44:24 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id DAA21185;
	Sun, 7 May 2000 03:50:51 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 7 May 2000 02:50:17 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA18952
	for fwtk-users-outgoing; Sun, 7 May 2000 02:50:11 -0700 (PDT)
X-Sender: neuro@it-world.nu@192.168.2.1
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.0
Date: Sun, 07 May 2000 11:47:20 +0200
To: fwtk-users@ex.tis.com
From: Robban <neuro@it-world.nu>
Subject: FWTK and NAPSTER
Mime-Version: 1.0
Message-Id: <200005071148962.SM01104@neuro>
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 466

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello all!

I know this is a kind of odd question, and I'm sure the most of you are
wondering how serious I am. ;p
But here it comes: Is there any way to get Napster to work when I'm behind
an FWTK?
They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
strange to me,
two proxies on one machine).

Best Regards
Robban 


From owner-fwtk-users@ex.tis.com Sun May  7 10:52 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA24907
	Sun, 7 May 2000 10:52:13 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA01571;
	Sun, 7 May 2000 07:58:36 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 7 May 2000 06:56:42 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA28270
	for fwtk-users-outgoing; Sun, 7 May 2000 06:56:31 -0700 (PDT)
Date: Sun, 7 May 2000 09:54:55 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Robban <neuro@it-world.nu>
cc: fwtk-users@lists.nai.com
Subject: Re: FWTK and NAPSTER
In-Reply-To: <200005071101397.SM01104@neuro>
Message-ID: <Pine.GSO.4.10.10005070953550.6274-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 888

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Don't know anything about napster - but there is no problem of running
socks and fwtk on the same machine.  Socks listens for connections on port
1080 (by default). The tool kit listens on their dedicated ports.

ted keller


On Sun, 7 May 2000, Robban wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hello all!
> 
> I know this is a kind of odd question, and I'm sure the most of you are
> wondering how serious I am. ;p
> But here it comes: Is there any way to get Napster to work when I'm behind
> an FWTK?
> They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
> strange to me,
> two proxies on one machine).
> 
> Best Regards
> Robban
> 


From owner-fwtk-users@ex.tis.com Sun May  7 14:48 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA25367
	Sun, 7 May 2000 14:48:05 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA13984;
	Sun, 7 May 2000 11:54:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 7 May 2000 10:52:25 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA10445
	for fwtk-users-outgoing; Sun, 7 May 2000 10:52:14 -0700 (PDT)
From: -=ArkanoiD=- <ark@eltex.ru>
Message-Id: <200005071749.VAA26523@paranoid.eltex.spb.ru>
Subject: Re: FWTK and NAPSTER
In-Reply-To: <200005071101397.SM01104@neuro> from Robban at "May 7, 2000 11:00:21 am"
To: neuro@it-world.nu (Robban)
Date: Sun, 7 May 2000 21:49:57 +0400 (MSD)
Cc: fwtk-users@lists.nai.com
Reply-To: ark@eltex.ru
X-Mailer: ELM [version 2.4ME+ PL53 (25)]
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 858

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

nuqneH,

You _can_. But i don't think you want to.

Somebody (maybe you, Robban) WROTE:
>  
>  Hello all!
>  
>  I know this is a kind of odd question, and I'm sure the most of you are
>  wondering how serious I am. ;p
>  But here it comes: Is there any way to get Napster to work when I'm behind
>  an FWTK?
>  They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
>  strange to me,
>  two proxies on one machine).

-- 
                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

From owner-fwtk-users@ex.tis.com Mon May  8 11:29 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA28643
	Mon, 8 May 2000 11:28:34 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA15822;
	Mon, 8 May 2000 08:34:08 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 06:01:48 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA06231
	for fwtk-users-outgoing; Mon, 8 May 2000 06:01:17 -0700 (PDT)
Date: Fri, 5 May 2000 08:46:32 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: William Jackson <wj@isolaandisola.com>
cc: "'Naresh Narang'" <nknarang@yahoo.com>,
        "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: smap open relay
In-Reply-To: <475EA20DB21ED4118C5200D0B74766C91463@medusa.isolaandisola.com>
Message-ID: <Pine.GSO.4.10.10005050846090.4203-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2181

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Add -lresolv to your Makefile.  These are the resolver library routines.

ted keller


On Fri, 5 May 2000, William Jackson wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> hello there
> 
> I saw your suggestion about the yao patch
> 
> I have patched the smap.c file but when I try to complie it I get the error:
> 
> smap.o: In function `from_address_ok':
> /usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to `res_query'
> /usr/src/fwtk/fwtk/smap/smap.c:2050: undefined reference to `res_query'
> collect2: ld returned 1 exit status
> 
> the res_query function is included via the resolv.h header file
> 
> #include <resolv.h>
> 
> which I have in the usr/include directory with a definition of res_query
> 
> any ideas?
> 
> cheers
> 
> 
> -----Original Message-----
> From: Naresh Narang [mailto:nknarang@yahoo.com]
> Sent: 02 May 2000 23:59
> To: dhamm@itrepro.com
> Cc: fwtk-users@ex.tis.com
> Subject: Re: smap open relay
> 
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Relay must not be allowed. Install Yao Patch to stop
> relay.
> 
> NKN
> 
> --- David Hamm <dhamm@itrepro.com> wrote:
> > [To be removed from this list send the message
> > "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > I have smap and smapd running on my firewall so I
> > tested it by telneting to
> > mail-abuse.org and it confirmed that my firewall did
> > accept relay requests. 
> > Can I change this or must smap act as a relay to
> > work?
> > 
> >  ---------------------------------
> > David Hamm
> > Systems Analyst
> > Imaging Technologies Services Inc.
> > email: dhamm@itrepro.com
> > voice: 404-870-6663
> > ---------------------------------
> > 
> 
> __________________________________________________
> Do You Yahoo!?
> Send instant messages & get email alerts with Yahoo! Messenger.
> http://im.yahoo.com/
> 

From owner-fwtk-users@ex.tis.com Mon May  8 21:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA00700
	Mon, 8 May 2000 21:10:13 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA01009;
	Mon, 8 May 2000 18:14:58 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 16:21:16 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA22244
	for fwtk-users-outgoing; Mon, 8 May 2000 16:21:00 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C49A@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: FWTK and IPChains
Date: Mon, 8 May 2000 14:53:30 -0400 
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 308

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Just a question here from someone who is definitely NOT a guru, but has any
one used the fwtk with an ipchains implementation? What are the pros and
cons and is it even worth it?

From owner-fwtk-users@ex.tis.com Mon May  8 22:27 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA00928
	Mon, 8 May 2000 22:27:14 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA03956;
	Mon, 8 May 2000 19:32:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 17:49:53 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA00078
	for fwtk-users-outgoing; Mon, 8 May 2000 17:49:32 -0700 (PDT)
Date: Mon, 8 May 2000 07:20:57 -0400
From: Joseph S D Yao <jsdy@cospo.osis.gov>
To: Robban <neuro@it-world.nu>
Cc: fwtk-users@ex.tis.com
Subject: Re: FWTK and NAPSTER
Message-Id: <20000508072057.F27123@washington.cospo.osis.gov>
Mail-Followup-To: Robban <neuro@it-world.nu>, fwtk-users@ex.tis.com
References: <200005071148962.SM01104@neuro>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
In-Reply-To: <200005071148962.SM01104@neuro>; from neuro@it-world.nu on Sun, May 07, 2000 at 11:47:20AM +0200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 863

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

On Sun, May 07, 2000 at 11:47:20AM +0200, Robban wrote:
> I know this is a kind of odd question, and I'm sure the most of you are
> wondering how serious I am. ;p
> But here it comes: Is there any way to get Napster to work when I'm behind
> an FWTK?
> They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
> strange to me,
> two proxies on one machine).

Certainly.  FWTK to seal off your site and protect it.  And SOCKS to
open up all sorts of holes to reduce the protection considerably.

-- 
Joe Yao				jsdy@cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.

From owner-fwtk-users@ex.tis.com Mon May  8 22:27 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA00925
	Mon, 8 May 2000 22:27:11 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA03964;
	Mon, 8 May 2000 19:32:34 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 18:04:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA00550
	for fwtk-users-outgoing; Mon, 8 May 2000 18:03:49 -0700 (PDT)
Message-ID: <39176380.54637C7B@quanta.co.nz>
Date: Tue, 09 May 2000 13:01:52 +1200
From: Scott Newton <scott@quanta.co.nz>
Organization: Quanta Systems Ltd
X-Mailer: Mozilla 4.7 [en] (WinNT; I)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: http-gw error
References: <200005071148962.SM01104@neuro>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 939

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi

Every now and then we get the following error occuring:

May  9 13:04:57 qweb inetd[415]: web/tcp server failing (looping), service
terminated

Although the error message is fairly obvious, I'm not sure what it's looping with.

Can anyone help.

Thanks
Scott



Robban wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Hello all!
>
> I know this is a kind of odd question, and I'm sure the most of you are
> wondering how serious I am. ;p
> But here it comes: Is there any way to get Napster to work when I'm behind
> an FWTK?
> They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
> strange to me,
> two proxies on one machine).
>
> Best Regards
> Robban

--
Scott Newton
Quanta Systems Ltd



From owner-fwtk-users@ex.tis.com Mon May  8 22:27 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA00931
	Mon, 8 May 2000 22:27:22 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA03960;
	Mon, 8 May 2000 19:32:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 18:02:28 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA00488
	for fwtk-users-outgoing; Mon, 8 May 2000 18:02:07 -0700 (PDT)
Date: Mon, 8 May 2000 16:56:23 -0700 (PDT)
From: David Lang <dlang@diginsite.com>
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Re: FWTK and IPChains
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C49A@email.domain.com>
Message-ID: <Pine.LNX.4.21.0005081652540.9802-100000@dlang.diginsite.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1898

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

-----BEGIN PGP SIGNED MESSAGE-----

On home firewalls (where I trust the people on the inside) I tend to use
ipchains to masquerade the connections from the inside, and only use the
FWTK for incoming connections from the internet (telnet, ftp with strong
authentication and plug-gw to connecto to internal web servers)

If you are in an environment where you want/need to limit what the inside
people do (either becouse you don't turst them or you want to defend
against possible trojens running on their machines and therefor don't want
to give unlimited outbound access) I wouldn't do the masquerading and
would route all connections through the proxies, at this point I would
just use ipchains to protect the firewall itself from attack.

David Lang

 On Mon, 8 May 2000, Nixon, Anthony wrote:

> Date: Mon, 8 May 2000 14:53:30 -0400 
> From: "Nixon, Anthony" <snixon@mei-charlotte.com>
> To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
> Subject: FWTK and IPChains
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Just a question here from someone who is definitely NOT a guru, but has any
> one used the fwtk with an ipchains implementation? What are the pros and
> cons and is it even worth it?
> 

-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.2

iQEVAwUBORdUNz7msCGEppcbAQF6zwf/UnlYz8vgeMR4YcO0N63zbIokn81oc6Fr
ppPK8hrMJXks6iriyjvodsRfSD2EDTN+YImZOJ+CyYqVte75Mzv6QEmH5b0KUl9T
FNpPkTUsVtwn2XpZs2g3Ov8YfuNT6xLb+cW3j3QwLLMXUdOcnWshxiiGGp7kG+lm
23vCmyQi1VOMlCqAGXoRCmjFUkCZ09euM80UDpk+9lw9rb2/w4/O9rHYWSEZWJzn
e5X2T4NbOdKAOVfLzwf/FdgSHfy5SkFRshPW+cn9ESM14v94wzn9woeyu20jRRFD
hmzWoTQqjBuJOzgq6Yk1kZ5MiFxHecMLAE0rgF44tDVKiaIFz23JLQ==
=Z2lQ
-----END PGP SIGNATURE-----


From owner-fwtk-users@ex.tis.com Tue May  9 00:40 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA01189
	Tue, 9 May 2000 00:40:19 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA09789;
	Mon, 8 May 2000 21:45:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 8 May 2000 20:03:26 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id UAA06347
	for fwtk-users-outgoing; Mon, 8 May 2000 20:03:05 -0700 (PDT)
Message-Id: <4.3.1.2.20000508225718.00c29ea0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 08 May 2000 23:00:39 -0400
To: Scott Newton <scott@quanta.co.nz>, fwtk-users@ex.tis.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: http-gw error
In-Reply-To: <39176380.54637C7B@quanta.co.nz>
References: <200005071148962.SM01104@neuro>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 510

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 01:01 PM 5/9/00 +1200, Scott Newton wrote:
>May  9 13:04:57 qweb inetd[415]: web/tcp server failing (looping), service
>terminated
That's in the FAQ - running the http proxy without inetd is highly 
recommended. If you insist in running it that way, increase your inetd's 
process limits.
(See the faq at <http://www.fwtk.org/fwtk/faq/faq.html#2.4.1> for help.)
         -Rick


From owner-fwtk-users@ex.tis.com Tue May  9 09:48 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA08355
	Tue, 9 May 2000 09:48:12 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA19660;
	Tue, 9 May 2000 06:54:04 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 05:31:26 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA17163
	for fwtk-users-outgoing; Tue, 9 May 2000 05:31:06 -0700 (PDT)
Date: Tue, 9 May 2000 08:28:25 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Scott Newton <scott@quanta.co.nz>
cc: fwtk-users@ex.tis.com
Subject: Re: http-gw error
In-Reply-To: <39176380.54637C7B@quanta.co.nz>
Message-ID: <Pine.GSO.4.10.10005090826500.15239-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1486

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

You may want to run http-gw as a daemon instead of from inetd.  Most
inetd's monitor the number of connections per minute (or some unit of
time) and if those connections exceed your os's threshhold, it assumes
that you are under attack - and shuts down the service for a while.

ted keller


On Tue, 9 May 2000, Scott Newton wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi
> 
> Every now and then we get the following error occuring:
> 
> May  9 13:04:57 qweb inetd[415]: web/tcp server failing (looping), service
> terminated
> 
> Although the error message is fairly obvious, I'm not sure what it's looping with.
> 
> Can anyone help.
> 
> Thanks
> Scott
> 
> 
> 
> Robban wrote:
> 
> > [To be removed from this list send the message "unsubscribe fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > Hello all!
> >
> > I know this is a kind of odd question, and I'm sure the most of you are
> > wondering how serious I am. ;p
> > But here it comes: Is there any way to get Napster to work when I'm behind
> > an FWTK?
> > They wanted me to run SOCKS, but can I run both FWTK and SOCKS (sounds
> > strange to me,
> > two proxies on one machine).
> >
> > Best Regards
> > Robban
> 
> --
> Scott Newton
> Quanta Systems Ltd
> 
> 


From owner-fwtk-users@ex.tis.com Tue May  9 09:49 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA08361
	Tue, 9 May 2000 09:49:06 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA19647;
	Tue, 9 May 2000 06:53:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 05:07:37 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA16646
	for fwtk-users-outgoing; Tue, 9 May 2000 05:07:27 -0700 (PDT)
From: "Alexander Oesterle \(TCNS GmbH\)" <alexander.oesterle@tcns.de>
To: <fwtk-users@ex.tis.com>
Subject: WG: http-gw and Port 443
Date: Tue, 9 May 2000 07:34:36 +0200
Message-ID: <BNEPJJMJEAELANBJPLJBIEDPCAAA.alexander.oesterle@tcns.de>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6700
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 388

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



Hi there,
sorry for my Newbie Questions but we have really a problem with it.
Our http-gw works really fine, but its impossible to select https:// sites.

Is there a solution to get SSL Connection through the http-gw ??
Any Advice is welcome

Regards Alex


From owner-fwtk-users@ex.tis.com Tue May  9 12:00 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA09157
	Tue, 9 May 2000 12:00:06 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA25161;
	Tue, 9 May 2000 09:02:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 06:49:42 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA19516
	for fwtk-users-outgoing; Tue, 9 May 2000 06:49:21 -0700 (PDT)
Message-ID: <3918169D.4F9911F9@v-one.com>
Date: Tue, 09 May 2000 09:46:05 -0400
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.72 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: "Alexander Oesterle (TCNS GmbH)" <alexander.oesterle@tcns.de>
CC: fwtk-users@ex.tis.com
Subject: Re: http-gw and Port 443
References: <BNEPJJMJEAELANBJPLJBIEDPCAAA.alexander.oesterle@tcns.de>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 596

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



"Alexander Oesterle (TCNS GmbH)" wrote:
> 
> Hi there,
> sorry for my Newbie Questions but we have really a problem with it.
> Our http-gw works really fine, but its impossible to select https:// sites.
> 
> Is there a solution to get SSL Connection through the http-gw ??

Yep:
	2.4.2 How do I get SSL/HTTPS working with the toolkit?
	http://www.fwtk.org/fwtk/faq/faq.html#2.4.2

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Tue May  9 12:04 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA09176
	Tue, 9 May 2000 12:04:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA25413;
	Tue, 9 May 2000 09:07:02 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 07:44:42 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA21455
	for fwtk-users-outgoing; Tue, 9 May 2000 07:44:11 -0700 (PDT)
Message-ID: <01BFB9D5.B1BBA2E0.Alexander.Oesterle@spidersoft.de>
From: Alexander Oesterle <Alexander.Oesterle@spidersoft.de>
Reply-To: "alexander.oesterle@spidersoft.de"
	 <alexander.oesterle@spidersoft.de>
To: "'Keith Young'" <kyoung@v-one.com>,
        "Alexander Oesterle (TCNS GmbH)"
	 <alexander.oesterle@tcns.de>
Cc: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: AW: http-gw and Port 443
Date: Tue, 9 May 2000 16:43:24 +0200
Organization: SPIDERSOFT GmbH
X-Mailer: Microsoft Internet E-Mail/MAPI - 8.0.0.4211
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by relay2.nai.com id HAA21429
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="iso-8859-1"
Content-Length: 1590

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

HI Keith, thanx for your help.

Error ---------------------------------------- No default server configured to handle your request CONNECT swoa.consors.de:443 HTTP/1.0

this is the message i get from every https:// site i connect to...
Whats wrong with my fwtk configuration ??

Thanx and regards

> -----Ursprüngliche Nachricht-----
> Von:	Keith Young [SMTP:kyoung@v-one.com]
> Gesendet am:	Dienstag, 9. Mai 2000 15:46
> An:	Alexander Oesterle (TCNS GmbH)
> Cc:	fwtk-users@ex.tis.com
> Betreff:	Re: http-gw and Port 443
> 
> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> 
> "Alexander Oesterle (TCNS GmbH)" wrote:
> > 
> > Hi there,
> > sorry for my Newbie Questions but we have really a problem with it.
> > Our http-gw works really fine, but its impossible to select https:// sites.
> > 
> > Is there a solution to get SSL Connection through the http-gw ??
> 
> Yep:
> 	2.4.2 How do I get SSL/HTTPS working with the toolkit?
> 	http://www.fwtk.org/fwtk/faq/faq.html#2.4.2
> 
> -- 
> --Keith Young
> -Director of Customer Care/Support, V-ONE Corp.
> -kyoung@v-one.com

HI Keith, thanx for your help.

Error ---------------------------------------- No default server configured to handle your request CONNECT swoa.consors.de:443 HTTP/1.0

this is the message i get from every https:// site i connect to...
Whats wrong with my fwtk configuration ??

Thanx and regards


From owner-fwtk-users@ex.tis.com Tue May  9 12:52 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA09342
	Tue, 9 May 2000 12:52:19 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA27246;
	Tue, 9 May 2000 09:57:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 08:22:31 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA23074
	for fwtk-users-outgoing; Tue, 9 May 2000 08:22:20 -0700 (PDT)
Message-ID: <39182CF1.B2089160@ssreng.com>
Date: Tue, 09 May 2000 08:21:21 -0700
From: Todd Matthews <todd@ssreng.com>
X-Mailer: Mozilla 4.73 [en] (WinNT; U)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Java Error
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 285

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

When I try to view a slideshow at www.nosa.org I  get the following
message:

Applet fprotate Java.lang.NullPointerException

Has anyone seen this before?


From owner-fwtk-users@ex.tis.com Tue May  9 14:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA09741
	Tue, 9 May 2000 14:10:58 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA00663;
	Tue, 9 May 2000 11:16:10 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 9 May 2000 09:41:26 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA26667
	for fwtk-users-outgoing; Tue, 9 May 2000 09:41:05 -0700 (PDT)
Message-ID: <006501bfb9d3$d51f4ea0$fc00a8c0@k62350>
From: "Larry Jackson" <LarryJackson@iName.com>
To: <fwtk-users@ex.tis.com>
Cc: <todd@ssreng.com>
References: <39182CF1.B2089160@ssreng.com>
Subject: Re: Java Error
Date: Tue, 9 May 2000 12:30:04 -0400
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 533

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

From: Todd Matthews <todd@ssreng.com>
To: <fwtk-users@ex.tis.com>
> When I try to view a slideshow at www.nosa.org I  get the following
> message:
>
> Applet fprotate Java.lang.NullPointerException
>
>  Has anyone seen this before

Works fine on mine, OpenBSD firewall running FWTK v2.1
to IE5 inside.
There is a http java quoting patch you could try or use a different browser.
LarryJackson@iName.com



From owner-fwtk-users@ex.tis.com Wed May 10 10:18 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA13962
	Wed, 10 May 2000 10:18:11 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA16244;
	Wed, 10 May 2000 07:21:15 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 10 May 2000 05:23:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA15011
	for fwtk-users-outgoing; Wed, 10 May 2000 05:22:49 -0700 (PDT)
Message-Id: <3.0.3.32.20000509115814.00e82384@mail.denver.gd-is.com>
X-Sender: dsmith@mail.denver.gd-is.com
X-Mailer: QUALCOMM Windows Eudora Light Version 3.0.3 (32)
Date: Tue, 09 May 2000 11:58:14 -0600
To: "Alexander Oesterle \(TCNS GmbH\)" <alexander.oesterle@tcns.de>,
        <fwtk-users@ex.tis.com>
From: Donald J Smith <donald.j.smith@gd-is.com>
Subject: Re: WG: http-gw and Port 443
In-Reply-To: <BNEPJJMJEAELANBJPLJBIEDPCAAA.alexander.oesterle@tcns.de>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 1457

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 07:34 AM 5/9/00 +0200, Alexander Oesterle \(TCNS GmbH\) wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in
the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>
>
>Hi there,
>sorry for my Newbie Questions but we have really a problem with it.
>Our http-gw works really fine, but its impossible to select https:// sites.
using netscape point the proxy for security at your firewall port 80 if
thats what your using for you
fwtk http-gw.
>
>Is there a solution to get SSL Connection through the http-gw ??
>Any Advice is welcome
>
>Regards Alex
>
>
------------------------------------------------------------------------------
Don Smith                               General Dynamics Information Systems
Systems Administrator                   8005 South Chester St
                                        EngleWood, Co. 80112
Phone (303) 649-7554
FAX   (303) 649-7504			donald.j.smith@gd-is.com
Error msgs that I love: 
"Keyboard not found press F1 to continue" (pc bios)
"Harddrive controller failure insert new disk and press any key to
continue" (pc bios)
"The disk is write protected Remove the write protect or
use another disk." (nt)
User must change his password before he logs in the first time. (nt)
------------------------------------------------------------------------------


From owner-fwtk-users@ex.tis.com Wed May 10 19:20 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA15969
	Wed, 10 May 2000 19:20:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA13371;
	Wed, 10 May 2000 16:25:33 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 10 May 2000 14:28:54 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA29098
	for fwtk-users-outgoing; Wed, 10 May 2000 14:28:43 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4AB@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: authmgr?
Date: Wed, 10 May 2000 17:27:35 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 911

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have compiled fwtk on RH 6.1 w/ skey support. I can get authsrv to run but
not authmgr? I add users, change authentication protocols, etc in authsrv
without problems. But when trying to run authmgr, I keep getting "Cannot
open auth service". I have added authsrv 7777/tcp to /etc/services and
changed inetd.conf to read:

auth	stream tcp wait root /usr/local/etc/authsrv authsrv


netperm-table reads:

authsrv:	hosts	127.0.0.1
authsrv:	hosts	localhost  <-- tried it with and without this
statement
authsrv:	database	/usr/local/etc/authsrv.db
authsrv:	badsleep	259200
authsrv:	nobogus	true

*:	authserver	127.0.0.1	7777

Don't know what else to do? Checked netstat -a and found auth waiting for
input but... Have recompiled and still no joy. Any help would be
appreciated.

Shon


From owner-fwtk-users@ex.tis.com Wed May 10 19:20 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA15974
	Wed, 10 May 2000 19:20:22 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA13375;
	Wed, 10 May 2000 16:25:33 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 10 May 2000 13:39:59 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA20939
	for fwtk-users-outgoing; Wed, 10 May 2000 13:39:28 -0700 (PDT)
Message-ID: <3919C838.795FC292@v-one.com>
Date: Wed, 10 May 2000 16:36:08 -0400
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.73 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: "alexander.oesterle@spidersoft.de" <alexander.oesterle@spidersoft.de>
CC: "Alexander Oesterle (TCNS GmbH)" <alexander.oesterle@tcns.de>,
        "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Subject: Re: AW: http-gw and Port 443
References: <01BFB9D5.B1BBA2E0.Alexander.Oesterle@spidersoft.de>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 564

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Alexander Oesterle wrote:
> 
> Error ---------------------------------------- No default server configured to handle your request CONNECT swoa.consors.de:443 HTTP/1.0
> 
> this is the message i get from every https:// site i connect to...
> Whats wrong with my fwtk configuration ??

What does your "http-gw" section look like in your netperm-table?

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Thu May 11 00:07 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA16753
	Thu, 11 May 2000 00:07:03 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA18245;
	Wed, 10 May 2000 21:12:41 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 10 May 2000 19:26:03 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA17261
	for fwtk-users-outgoing; Wed, 10 May 2000 19:25:52 -0700 (PDT)
Message-ID: <391A19EA.21265D6C@ronex.com>
Date: Wed, 10 May 2000 19:24:42 -0700
From: Robert Schols <robert@ronex.com>
X-Mailer: Mozilla 4.7 [en]C-CCK-MCD NSCPCD47  (Win98; I)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk mailing list <fwtk-users@ex.tis.com>
Subject: through ftp-gw to port != 21
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 442

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I can't imagine I am the first with this problem. But I can't find the answer anywhere.

How do I ftp through the ftp-gw to a port other than 21?

It doesn't work with WS_FTP that I use on Win98. I can also not find out how to do it manually with ftp from the command line from some linux machine.

Robert Schols

From owner-fwtk-users@ex.tis.com Thu May 11 08:41 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA18609
	Thu, 11 May 2000 08:41:57 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA21368;
	Thu, 11 May 2000 05:47:33 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 11 May 2000 04:04:35 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA20283
	for fwtk-users-outgoing; Thu, 11 May 2000 04:04:24 -0700 (PDT)
Message-ID: <C2416AA8DBFED1119B9500805F657E04023FFC36@xchange02.fcd.esys.com>
From: "Unrath, Mark" <munrath@fallschurch.esys.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Passing SMTP
Date: Thu, 11 May 2000 06:57:10 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 385

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

All,

I'm new to the FWTK and was wondering if anyone could pass some tips along
or configuration issues with regards to passing SMTP through the firewall.
Some do's and don'ts if you will.

Running Red Hat Linux 6.5 on a Compaq Deskpro.

Thanks,
Mark 




From owner-fwtk-users@ex.tis.com Thu May 11 10:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA19067
	Thu, 11 May 2000 10:08:39 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA23177;
	Thu, 11 May 2000 07:12:10 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 11 May 2000 05:27:18 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA21056
	for fwtk-users-outgoing; Thu, 11 May 2000 05:26:57 -0700 (PDT)
Date: Wed, 10 May 2000 18:51:26 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Re: authmgr?
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4AB@email.domain.com>
Message-ID: <Pine.GSO.4.10.10005101851140.24254-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1203

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Did you define authmgr in your /etc/services?

ted keller


On Wed, 10 May 2000, Nixon, Anthony wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I have compiled fwtk on RH 6.1 w/ skey support. I can get authsrv to run but
> not authmgr? I add users, change authentication protocols, etc in authsrv
> without problems. But when trying to run authmgr, I keep getting "Cannot
> open auth service". I have added authsrv 7777/tcp to /etc/services and
> changed inetd.conf to read:
> 
> auth	stream tcp wait root /usr/local/etc/authsrv authsrv
> 
> 
> netperm-table reads:
> 
> authsrv:	hosts	127.0.0.1
> authsrv:	hosts	localhost  <-- tried it with and without this
> statement
> authsrv:	database	/usr/local/etc/authsrv.db
> authsrv:	badsleep	259200
> authsrv:	nobogus	true
> 
> *:	authserver	127.0.0.1	7777
> 
> Don't know what else to do? Checked netstat -a and found auth waiting for
> input but... Have recompiled and still no joy. Any help would be
> appreciated.
> 
> Shon
> 


From owner-fwtk-users@ex.tis.com Thu May 11 10:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA19094
	Thu, 11 May 2000 10:12:19 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA23314;
	Thu, 11 May 2000 07:18:17 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 11 May 2000 05:51:20 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA21415
	for fwtk-users-outgoing; Thu, 11 May 2000 05:50:49 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4AC@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Ted Keller'" <keller@bfg.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Thu, 11 May 2000 08:49:35 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2266

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

No, afraid not (did not see that in any of the documentation I have). Now I
am confused. In one of the documents I have that shows how to set up the
/etc/services file, it shows both auth 113/tcp and authsrv 7777/tcp listed
and in another document I see just auth changed to auth 7777/tcp. I would
like to have authentication working, but also want to use the ident-spoofer
or at a minimum identd. I really do not know how to pull this off? I see
that the old inetd.conf used auth to control identd. How do I do it now with
auth going to authsrv and exactly which scheme should I use in the services
file? If I do need to add authmgr to the /etc/services file, which port do I
use (same as authsrv?) and do I define it in netperm-table also.

Thanks much for your help - Shon


> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Wednesday, May 10, 2000 6:51 PM
> To: Nixon, Anthony
> Cc: 'fwtk-users@ex.tis.com'
> Subject: Re: authmgr?
> 
> 
> Did you define authmgr in your /etc/services?
> 
> ted keller
> 
> 
> On Wed, 10 May 2000, Nixon, Anthony wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > I have compiled fwtk on RH 6.1 w/ skey support. I can get 
> authsrv to run but
> > not authmgr? I add users, change authentication protocols, 
> etc in authsrv
> > without problems. But when trying to run authmgr, I keep 
> getting "Cannot
> > open auth service". I have added authsrv 7777/tcp to 
> /etc/services and
> > changed inetd.conf to read:
> > 
> > auth	stream tcp wait root /usr/local/etc/authsrv authsrv
> > 
> > 
> > netperm-table reads:
> > 
> > authsrv:	hosts	127.0.0.1
> > authsrv:	hosts	localhost  <-- tried it with and without this
> > statement
> > authsrv:	database	/usr/local/etc/authsrv.db
> > authsrv:	badsleep	259200
> > authsrv:	nobogus	true
> > 
> > *:	authserver	127.0.0.1	7777
> > 
> > Don't know what else to do? Checked netstat -a and found 
> auth waiting for
> > input but... Have recompiled and still no joy. Any help would be
> > appreciated.
> > 
> > Shon
> > 
> 

From owner-fwtk-users@ex.tis.com Thu May 11 13:49 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA19806
	Thu, 11 May 2000 13:49:05 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA26325;
	Thu, 11 May 2000 10:54:53 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 11 May 2000 09:10:54 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA25206
	for fwtk-users-outgoing; Thu, 11 May 2000 09:10:33 -0700 (PDT)
Message-ID: <391ADAA9.C9183C57@v-one.com>
Date: Thu, 11 May 2000 12:07:05 -0400
From: Keith Young <kyoung@v-one.com>
Organization: V-ONE
X-Mailer: Mozilla 4.73 [en] (Win98; U)
X-Accept-Language: en
MIME-Version: 1.0
To: Robert Schols <robert@ronex.com>
CC: fwtk mailing list <fwtk-users@ex.tis.com>
Subject: Re: through ftp-gw to port != 21
References: <391A19EA.21265D6C@ronex.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 707

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Robert Schols wrote:
> 
> How do I ftp through the ftp-gw to a port other than 21?

ftp your.firewall.machine
User(): anonymous@ftp.remote.machine ####

> It doesn't work with WS_FTP that I use on Win98. 

Hmm... WF_FTP LE has boxes for both "firewall port" and "remote port".
Have you tried to set "firewall port" to 21 and "remote port" to the
actual ### of the FTP server?

> I can also not find out how to do it manually with ftp from the command line from some linux machine.

See above.

-- 
--Keith Young
-Director of Customer Care/Support, V-ONE Corp.
-kyoung@v-one.com

From owner-fwtk-users@ex.tis.com Thu May 11 16:38 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA20432
	Thu, 11 May 2000 16:38:10 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA28442;
	Thu, 11 May 2000 13:42:33 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 11 May 2000 11:59:48 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA27047
	for fwtk-users-outgoing; Thu, 11 May 2000 11:59:27 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B0@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Cc: "'Ted Keller'" <keller@bfg.com>
Subject: RE: authmgr?
Date: Thu, 11 May 2000 14:57:58 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1783

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have tried both adding authmgr 7777/tcp using the same port number as
authsrv and giving it a different port (authmgr 7778/tcp) but neither works.
Help?


> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Wednesday, May 10, 2000 6:51 PM
> To: Nixon, Anthony
> Cc: 'fwtk-users@ex.tis.com'
> Subject: Re: authmgr?
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Did you define authmgr in your /etc/services?
> 
> ted keller
> 
> 
> On Wed, 10 May 2000, Nixon, Anthony wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > I have compiled fwtk on RH 6.1 w/ skey support. I can get 
> authsrv to run but
> > not authmgr? I add users, change authentication protocols, 
> etc in authsrv
> > without problems. But when trying to run authmgr, I keep 
> getting "Cannot
> > open auth service". I have added authsrv 7777/tcp to 
> /etc/services and
> > changed inetd.conf to read:
> > 
> > auth	stream tcp wait root /usr/local/etc/authsrv authsrv
> > 
> > 
> > netperm-table reads:
> > 
> > authsrv:	hosts	127.0.0.1
> > authsrv:	hosts	localhost  <-- tried it with and without this
> > statement
> > authsrv:	database	/usr/local/etc/authsrv.db
> > authsrv:	badsleep	259200
> > authsrv:	nobogus	true
> > 
> > *:	authserver	127.0.0.1	7777
> > 
> > Don't know what else to do? Checked netstat -a and found 
> auth waiting for
> > input but... Have recompiled and still no joy. Any help would be
> > appreciated.
> > 
> > Shon
> > 
> 

From owner-fwtk-users@ex.tis.com Fri May 12 09:42 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA24863
	Fri, 12 May 2000 09:42:09 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA03753;
	Fri, 12 May 2000 06:47:03 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 04:26:47 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA02420
	for fwtk-users-outgoing; Fri, 12 May 2000 04:26:26 -0700 (PDT)
Message-Id: <4.3.1.2.20000511221659.00c98470@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Thu, 11 May 2000 22:20:16 -0400
To: "Nixon, Anthony" <snixon@mei-charlotte.com>,
        "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: RE: authmgr?
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B0@email.domain.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 847

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 02:57 PM 5/11/00 -0400, Nixon, Anthony wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>I have tried both adding authmgr 7777/tcp using the same port number as
>authsrv and giving it a different port (authmgr 7778/tcp) but neither works.
>Help?
Authmgr tries to connect to the authserver using the port in the netperm-table.
You should have
*: authserver 127.0.0.1 7777
or equivalent in your netperm-table. Try adding
authmgr: authserver 127.0.0.1 7777
early on; that'll guarantee that authmgr gets the right port. The authmgr 
doesn't use anything in the services file to figure out how to talk to authsrv.
         -Rick


From owner-fwtk-users@ex.tis.com Fri May 12 11:18 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA25143
	Fri, 12 May 2000 11:18:52 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA05778;
	Fri, 12 May 2000 08:23:51 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 06:35:00 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA03495
	for fwtk-users-outgoing; Fri, 12 May 2000 06:34:48 -0700 (PDT)
Message-ID: <200005120921320610.004A4B96@192.168.2.1>
In-Reply-To: <Pine.LNX.4.21.0001250710120.5604-100000@tmp1-6606.rochester.rr.com>
References: <Pine.LNX.4.21.0001250710120.5604-100000@tmp1-6606.rochester.rr.com>
X-Mailer: Calypso Version 3.10.03.02 (2)
Date: Fri, 12 May 2000 09:21:32 -0400
Reply-To: Spencer_Yost@salemleasing.com
From: "Spencer Yost, V.P. Information Systems" <Spencer_Yost@salemleasing.com>
To: fwtk-users@tis.com
Subject: ftp-gw Authentication????
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 902

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have remote users needing to ftp through our fwtk firewall server.   I
set it up and it works fine, except ftp-gw does NOT require authentication
at the firewall level.  It simply passes asks for the USER (user@site)
command and then passes the ftp request through to the internal server.
There is no authentication to the firewall itself.  Here are my ftp-gw
entries in my netperm-table:

ftp-gw:         permit-hosts remote.site -authall -log { retr stor }
ftp-gw:         permit-hosts internal.sub.net.*      valid.sites


I expected ftp-gw to require authentication with authsrv, and then pass
requests and force a separate login to the internal server.    Am I
mis-reading the documentation or am I mis-configuring?

Thanks in advance,

Spencer Yost
Salem Carriers


From owner-fwtk-users@ex.tis.com Fri May 12 11:19 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA25147
	Fri, 12 May 2000 11:19:14 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA05774;
	Fri, 12 May 2000 08:23:51 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 06:34:58 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA03486
	for fwtk-users-outgoing; Fri, 12 May 2000 06:34:38 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B1@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Rick Murphy'" <rmurphy@itm-inst.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Fri, 12 May 2000 09:33:24 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2075

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Thanks for help Rick, it is appreciated. Unfortunately, it seems that this
did not work either. I have tried both authmgr: authserver 127.0.0.1 7777
and authmgr: authserver localhost 7777 statements and still no joy. I have
also tried several instances of:

authsrv: permit-hosts *
authsrv: permit-hosts localhost
authsrv: permit-hosts 127.0.0.1
authsrv: hosts 127.0.0.1 and localhost, etc...


but none of them helped either. Still the same message "Can not open auth
service". What exactly is /etc/services supposed to look like concerning
both the authsrv and auth line because I have both:

authsrv	7777/tcp
auth		113/tcp  authentication tap ident

in my services file and I have changed the auth statement in inetd.conf to
point to authsrv and not in.identd. Again, authsrv works just dandy, but
authmgr does not. When I first invoke ./authmgr, the program runs (I get hd
activity). But then gives me the above message. After that, nothing, just
the same old message...


Shon

> -----Original Message-----
> From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> Sent: Thursday, May 11, 2000 10:20 PM
> To: Nixon, Anthony; 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> At 02:57 PM 5/11/00 -0400, Nixon, Anthony wrote:
> >[To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> >BODY of a mail message to majordomo@ex.tis.com.]
> >
> >I have tried both adding authmgr 7777/tcp using the same 
> port number as
> >authsrv and giving it a different port (authmgr 7778/tcp) 
> but neither works.
> >Help?
> Authmgr tries to connect to the authserver using the port in 
> the netperm-table.
> You should have
> *: authserver 127.0.0.1 7777
> or equivalent in your netperm-table. Try adding
> authmgr: authserver 127.0.0.1 7777
> early on; that'll guarantee that authmgr gets the right port. 
> The authmgr 
> doesn't use anything in the services file to figure out how 
> to talk to authsrv.
>          -Rick
> 

From owner-fwtk-users@ex.tis.com Fri May 12 13:31 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA25636
	Fri, 12 May 2000 13:31:19 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA09792;
	Fri, 12 May 2000 10:34:55 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 08:55:22 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA06470
	for fwtk-users-outgoing; Fri, 12 May 2000 08:55:01 -0700 (PDT)
Message-Id: <4.3.1.2.20000512114219.00c3b890@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Fri, 12 May 2000 11:44:53 -0400
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: RE: authmgr?
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B1@email.domain.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1234

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 09:33 AM 5/12/00 -0400, Nixon, Anthony wrote:
>Thanks for help Rick, it is appreciated. Unfortunately, it seems that this
>did not work either. I have tried both authmgr: authserver 127.0.0.1 7777
>and authmgr: authserver localhost 7777 statements and still no joy.

Try wildcarding it:
*: authserver 127.0.0.1 7777

>  I have
>also tried several instances of:
>
>authsrv: permit-hosts *
>authsrv: permit-hosts localhost
>authsrv: permit-hosts 127.0.0.1
>authsrv: hosts 127.0.0.1 and localhost, etc...

Those look right (except the last one.) Really should be just 'permit-hosts 
127.0.0.1' though.

>but none of them helped either. Still the same message "Can not open auth
>service". What exactly is /etc/services supposed to look like concerning
>both the authsrv and auth line because I have both:
>
>authsrv 7777/tcp
>auth            113/tcp  authentication tap ident

That's all you should need; actually 'auth' (identd) hasn't anything to do 
with it - that's a separate protocol not provided by FWTK.

How are you running authsrv? What happens when you 'telnet localhost 7777'?
         -Rick


From owner-fwtk-users@ex.tis.com Fri May 12 13:31 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA25639
	Fri, 12 May 2000 13:31:30 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA09798;
	Fri, 12 May 2000 10:35:03 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 09:03:30 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA06694
	for fwtk-users-outgoing; Fri, 12 May 2000 09:03:09 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B2@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Rick Murphy'" <rmurphy@itm-inst.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Fri, 12 May 2000 12:01:41 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1688

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I did. That section of the netperm-table file actually reads:

*:		authserver 127.0.0.1 7777
authmgr:	authserver 127.0.0.1 7777 (have tried swaping there position
also)


> -----Original Message-----
> From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> Sent: Friday, May 12, 2000 11:45 AM
> To: Nixon, Anthony
> Cc: 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> At 09:33 AM 5/12/00 -0400, Nixon, Anthony wrote:
> >Thanks for help Rick, it is appreciated. Unfortunately, it 
> seems that this
> >did not work either. I have tried both authmgr: authserver 
> 127.0.0.1 7777
> >and authmgr: authserver localhost 7777 statements and still no joy.
> 
> Try wildcarding it:
> *: authserver 127.0.0.1 7777
> 
> >  I have
> >also tried several instances of:
> >
> >authsrv: permit-hosts *
> >authsrv: permit-hosts localhost
> >authsrv: permit-hosts 127.0.0.1
> >authsrv: hosts 127.0.0.1 and localhost, etc...
> 
> Those look right (except the last one.) Really should be just 
> 'permit-hosts 
> 127.0.0.1' though.
> 
> >but none of them helped either. Still the same message "Can 
> not open auth
> >service". What exactly is /etc/services supposed to look 
> like concerning
> >both the authsrv and auth line because I have both:
> >
> >authsrv 7777/tcp
> >auth            113/tcp  authentication tap ident
> 
> That's all you should need; actually 'auth' (identd) hasn't 
> anything to do 
> with it - that's a separate protocol not provided by FWTK.
> 
> How are you running authsrv? What happens when you 'telnet 
> localhost 7777'?
>          -Rick
> 

From owner-fwtk-users@ex.tis.com Sat May 13 00:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA00816
	Sat, 13 May 2000 00:10:24 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA15586;
	Fri, 12 May 2000 21:15:52 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 19:12:03 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA13812
	for fwtk-users-outgoing; Fri, 12 May 2000 19:11:31 -0700 (PDT)
Message-Id: <4.3.1.2.20000512220005.00c88b70@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Fri, 12 May 2000 22:02:31 -0400
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: RE: authmgr?
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B2@email.domain.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 594

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
>I did. That section of the netperm-table file actually reads:

OK, but what about the other questions:

> > How are you running authsrv? What happens when you 'telnet
> > localhost 7777'?
> >          -Rick
> >
If your netperm-table is set up right, then you probably don't have 
anything listening on the authsrv port - either your inetd.conf line for 
authsrv is wrong or you haven't HUP'd inetd.
         -Rick


From owner-fwtk-users@ex.tis.com Sat May 13 00:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id AAA00817
	Sat, 13 May 2000 00:10:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id VAA15592;
	Fri, 12 May 2000 21:16:03 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 19:33:09 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id TAA14112
	for fwtk-users-outgoing; Fri, 12 May 2000 19:32:58 -0700 (PDT)
Date: Fri, 12 May 2000 21:31:45 -0500
From: "Mark D. Roth" <roth@uiuc.edu>
To: fwtk-users@lists.nai.com
Subject: ANNOUNCE: pam_authsrv Module
Message-ID: <20000512213145.A19662@segfault.cso.uiuc.edu>
Mime-Version: 1.0
X-Mailer: Mutt 1.0i
Organization: University of Illinois at Urbana-Champaign
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed; boundary="uAKRQypu60I7Lcqm"
Content-Length: 7310

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


--uAKRQypu60I7Lcqm
Content-Type: text/plain; charset=us-ascii

I've just thrown together a PAM module to do authsrv authentication.
It works under both RedHat Linux 6.1 and Solaris 7.

A tar archive of the source is attached.  Extract it into
fwtk/tools/server and read the included README for more information.

Enjoy.

-- 
Mark D. Roth <roth@uiuc.edu>
System Administrator, CCSO Production Systems Group
http://www.uiuc.edu/ph/www/roth

--uAKRQypu60I7Lcqm
Content-Type: application/x-tar-gz
Content-Disposition: attachment; filename="pam_authsrv-20000512.tar.gz"
Content-Transfer-Encoding: base64
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--uAKRQypu60I7Lcqm--

From owner-fwtk-users@ex.tis.com Sat May 13 02:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id CAA01008
	Sat, 13 May 2000 02:08:14 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id XAA17529;
	Fri, 12 May 2000 23:13:23 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 12 May 2000 21:14:31 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id VAA15551
	for fwtk-users-outgoing; Fri, 12 May 2000 21:14:10 -0700 (PDT)
Message-ID: <002f01bfbc90$c44c23e0$06c7c7c7@seclab.sharif.ac.ir>
From: "Hossein Pourreza" <pourreza@hadid.sharif.ac.ir>
To: <Spencer_Yost@salemleasing.com>, <fwtk-users@tis.com>
References: <Pine.LNX.4.21.0001250710120.5604-100000@tmp1-6606.rochester.rr.com> <200005120921320610.004A4B96@192.168.2.1>
Subject: Re: ftp-gw Authentication????
Date: Sat, 13 May 2000 08:37:12 +0430
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2314.1300
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2314.1300
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1747

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Spencer,
You must configure your authsvr in netpermtable and add entries to services
and inetd files as follows:
in inetd.conf you must add"
authsrv    stream    tcp    nowait    root    /usr/local/etc/authsrv
authsrv
in services file you must add:
authsrv    7777/tcp
after updating files you must run the "killall -HUP inetd" command.
in netpermatable you must add following lines:
authsrv:    database    /usr/local/etc/authsrv.db
authsrv:    permit-hosts    yourhostname
----- Original Message -----
From: Spencer Yost, V.P. Information Systems <Spencer_Yost@salemleasing.com>
To: <fwtk-users@tis.com>
Sent: Friday, May 12, 2000 5:51 PM
Subject: ftp-gw Authentication????


> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> I have remote users needing to ftp through our fwtk firewall server.   I
> set it up and it works fine, except ftp-gw does NOT require authentication
> at the firewall level.  It simply passes asks for the USER (user@site)
> command and then passes the ftp request through to the internal server.
> There is no authentication to the firewall itself.  Here are my ftp-gw
> entries in my netperm-table:
>
> ftp-gw:         permit-hosts remote.site -authall -log { retr stor }
> ftp-gw:         permit-hosts internal.sub.net.*      valid.sites
>
>
> I expected ftp-gw to require authentication with authsrv, and then pass
> requests and force a separate login to the internal server.    Am I
> mis-reading the documentation or am I mis-configuring?
>
> Thanks in advance,
>
> Spencer Yost
> Salem Carriers


From owner-fwtk-users@ex.tis.com Sun May 14 08:29 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA04649
	Sun, 14 May 2000 08:29:30 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA25378;
	Sun, 14 May 2000 05:33:39 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 14 May 2000 02:57:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id CAA24156
	for fwtk-users-outgoing; Sun, 14 May 2000 02:56:51 -0700 (PDT)
X-Authentication-Warning: zerberus.promos-consult.de: smap set sender to <priebe@promos-consult.de> using -f
From: Andreas Priebe <Andreas.Priebe@promos-consult.de>
Message-Id: <200005140950.LAA08017@dimon.promos-consult.de>
Subject: ftp Error 500
To: fwtk-users@ex.tis.com
Date: Sun, 14 May 2000 11:50:43 +0200 (CEST)
X-Mailer: ELM [version 2.4ME+ PL65 (25)]
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1155

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I use squid 2 as a local cache and proxy which directs all requests
to my fwtk (2.1) host.

HTTP works fine, but requests via ftp fail with the following error
(example is from lynx, but netscape gives the same):

lynx ftp://ftp.de.debian.org/debian/indices/Packages-Master-i386.gz

                                FTP Error- 500
     _________________________________________________________________
   
500 'PORT 195,145,209,129,8,45PORT 149,225,88,230,0,8' not understood.
     _________________________________________________________________
  
Here 195.145.209.129 is the fwtk host.
Tests showed that it makes no difference if I go through squid or directly
to the fwtk host.

Any ideas?

TIA,

Andreas
-- 
****************************************************************************
* Andreas Priebe                E-Mail:   Andreas.Priebe@promos-consult.de *
* Promos consult GmbH & Co KG   Tel/FAX:             030 243 117 -13 / -29 *
****************************************************************************

From owner-fwtk-users@ex.tis.com Sun May 14 23:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id XAA06263
	Sun, 14 May 2000 23:10:16 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA01637;
	Sun, 14 May 2000 20:15:03 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 14 May 2000 18:26:02 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA29518
	for fwtk-users-outgoing; Sun, 14 May 2000 18:25:41 -0700 (PDT)
Date: Sun, 14 May 2000 21:23:53 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: "Unrath, Mark" <munrath@fallschurch.esys.com>
cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Re: Passing SMTP
In-Reply-To: <C2416AA8DBFED1119B9500805F657E04023FFC36@xchange02.fcd.esys.com>
Message-ID: <Pine.GSO.4.10.10005142111500.9142-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2426

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Mark.

Here are some thoughts....

1. update the smap-gw with the anti-relay patches.... available at
www.fwtk.org (or ask for my version).  These will go along way in
improving the functionality of the software.

2. smap likes to relay to an internal machine.  This kind of implies a
split DNS configuration for your e-mail environment.  The external DNS
points to to your firewall, the smap/smapd/sendmail configuration then
relays this mail to an internal host for final delivery.  Obviously, you
don't want the internal domain pointing to your firewall.

3. The internal domain should use a "smart host" type of feature to relay
to the firewall all non-local domains.  The firewall can then act as the
delivery agent.

4. Mail will probably represent about 30% of all internet traffic - plan
accordingly.

5. Make some rules with regard to maximum message size.  Let you user know
about them - and that messages exceeding this limit will be rejected.
This is important to eliminate a common Dos issue at the firewall/mail
service.

6. You will be blasted with spam mail - and a lot of it.  Think about how
you want to manage it....  Some of the anti-spam patches will be
important.

7. Users will get on list servers - then leave the company without
unsubscribing.  Again, block pateches will be important.

8. It's always best to run smap/smapd/sendmail in a chroot environment.
Standard smapd does not support that.  Sendmail chroot environment is not
trivial to develop - but probably worth it.

9. Make sure you implement a "flushing" facility for e-mail that cannot be
delivered on the first try.  Since sendmail is not run as daemon, it's
standard delay queue processing is not performed.  You need to
periodically run a /usr/lib/sendmail -q (or equivalent) to flush this
queue out.


I'm sure there are more....

ted keller


On Thu, 11 May 2000, Unrath, Mark wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> All,
> 
> I'm new to the FWTK and was wondering if anyone could pass some tips along
> or configuration issues with regards to passing SMTP through the firewall.
> Some do's and don'ts if you will.
> 
> Running Red Hat Linux 6.5 on a Compaq Deskpro.
> 
> Thanks,
> Mark 
> 
> 
> 


From owner-fwtk-users@ex.tis.com Sun May 14 23:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id XAA06264
	Sun, 14 May 2000 23:10:16 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id UAA01633;
	Sun, 14 May 2000 20:15:02 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Sun, 14 May 2000 18:36:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA29670
	for fwtk-users-outgoing; Sun, 14 May 2000 18:36:13 -0700 (PDT)
Date: Sun, 14 May 2000 21:32:55 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Hossein Pourreza <pourreza@hadid.sharif.ac.ir>
cc: Spencer_Yost@salemleasing.com, fwtk-users@tis.com
Subject: Re: ftp-gw Authentication????
In-Reply-To: <002f01bfbc90$c44c23e0$06c7c7c7@seclab.sharif.ac.ir>
Message-ID: <Pine.GSO.4.10.10005142132090.9142-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2127

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Also - make sure you restart inetd - kill -HUP.... to enable the new inetd
settings for authserv


ted keller


On Sat, 13 May 2000, Hossein Pourreza wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Spencer,
> You must configure your authsvr in netpermtable and add entries to services
> and inetd files as follows:
> in inetd.conf you must add"
> authsrv    stream    tcp    nowait    root    /usr/local/etc/authsrv
> authsrv
> in services file you must add:
> authsrv    7777/tcp
> after updating files you must run the "killall -HUP inetd" command.
> in netpermatable you must add following lines:
> authsrv:    database    /usr/local/etc/authsrv.db
> authsrv:    permit-hosts    yourhostname
> ----- Original Message -----
> From: Spencer Yost, V.P. Information Systems <Spencer_Yost@salemleasing.com>
> To: <fwtk-users@tis.com>
> Sent: Friday, May 12, 2000 5:51 PM
> Subject: ftp-gw Authentication????
> 
> 
> > [To be removed from this list send the message "unsubscribe fwtk-users" in
> the
> > BODY of a mail message to majordomo@ex.tis.com.]
> >
> > I have remote users needing to ftp through our fwtk firewall server.   I
> > set it up and it works fine, except ftp-gw does NOT require authentication
> > at the firewall level.  It simply passes asks for the USER (user@site)
> > command and then passes the ftp request through to the internal server.
> > There is no authentication to the firewall itself.  Here are my ftp-gw
> > entries in my netperm-table:
> >
> > ftp-gw:         permit-hosts remote.site -authall -log { retr stor }
> > ftp-gw:         permit-hosts internal.sub.net.*      valid.sites
> >
> >
> > I expected ftp-gw to require authentication with authsrv, and then pass
> > requests and force a separate login to the internal server.    Am I
> > mis-reading the documentation or am I mis-configuring?
> >
> > Thanks in advance,
> >
> > Spencer Yost
> > Salem Carriers
> 


From owner-fwtk-users@ex.tis.com Mon May 15 10:57 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA08323
	Mon, 15 May 2000 10:57:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA08138;
	Mon, 15 May 2000 08:03:27 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 05:54:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA05758
	for fwtk-users-outgoing; Mon, 15 May 2000 05:54:33 -0700 (PDT)
X-Authentication-Warning: proxy.hundert6.de: mail set sender to <jan@radio.hundert6.de> using -f
Message-ID: <391FF360.B5E9E976@radio.hundert6.de>
Date: Mon, 15 May 2000 14:53:52 +0200
From: Jan Muenther <jan@radio.hundert6.de>
Organization: Radio Hundert,6
X-Mailer: Mozilla 4.72 [en] (X11; I; FreeBSD 4.0-RELEASE i386)
X-Accept-Language: en
MIME-Version: 1.0
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: anti-relaying
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 840

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello  fellow FWTK users,
I`ve only just started out working for a firm which uses the FWTK and
have noted our SMTP service is vulnerable to relaying.
Guess what: I want to switch it off. As far as I have understood, there
is no built-in support in smap for this, so I need to get one of the
patches supllied by third parties. Which I did, namely the smapx.pch and
yao-smap.pch.
Trying to apply the smapx.pch path to smap.c brought out a mass of
errors - looking at the patch file, I think it`s because it wants to
patch smapx.c, too, which simply isn`t there....
Now, please, I have just one, probably frequently asked question: which
is the best - and quickest to set up - method to deny relaying?

Bye, Jan


From owner-fwtk-users@ex.tis.com Mon May 15 10:57 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA08324
	Mon, 15 May 2000 10:57:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA08142;
	Mon, 15 May 2000 08:03:27 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 06:36:33 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA06327
	for fwtk-users-outgoing; Mon, 15 May 2000 06:36:22 -0700 (PDT)
X-Authentication-Warning: wall.pdv.de: mail set sender to <Birk.Bohne@pdv.de> using -f
Message-ID: <6CC81B07CB44D311A1D20001FA7E99560A61D9@exchange.pdv.de>
From: "Birk.Bohne" <Birk.Bohne@pdv.de>
To: "Firewall Toolkit (M-list)" <fwtk-users@ex.tis.com>
Subject: Compile under Freebsd 3.4
Date: Mon, 15 May 2000 14:44:46 +0200
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.0.1460.8)
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by relay2.nai.com id FAA05685
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1158

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

last week i¥ve tried to "make" FWTK 2.1 under Freebsd 3.4. These error
messages don¥t help me much(Programming isn¥t my profession and Freebsd not
yet...). I have installed FBSD with the sources and the daemon.c and the
signal.h are in the right place. In my opinion its not a problem of missing
files, but of misconfiguration of the makefiles. Anyone who uses FWTK under
FBSD 3.4? Is it possible to get a sample makefile? 

Thanx in advance...
Greetings from germany

>>>>>
for a in lib auth smap smapd netacl plug-gw ftp-gw tn-gw rlogin-gw http-gw
x-gw;
 do  ( cd $a; echo all: `pwd`; make all );  done
all: /usr/tmp/fwtk/source/fwtk/lib
cc -I.. -g  -c config.c
cc -I.. -g  -c daemon.c
In file included from daemon.c:14:
/usr/include/sys/signal.h:163: parse error before `size_t'
/usr/include/sys/signal.h:163: warning: no semicolon at end of struct or
union
/usr/include/sys/signal.h:165: parse error before `}'
*** Error code 1

Stop.
*** Error code 1

Stop.
>>>>>



Birk Bohne
PDV Systeme
mailto:birk.bohne@pdv.de 

From owner-fwtk-users@ex.tis.com Mon May 15 10:58 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA08322
	Mon, 15 May 2000 10:57:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA08136;
	Mon, 15 May 2000 08:03:27 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 05:32:13 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA05557
	for fwtk-users-outgoing; Mon, 15 May 2000 05:31:52 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B3@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Rick Murphy'" <rmurphy@itm-inst.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Mon, 15 May 2000 08:30:39 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1598

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

You are correct about telneting into authsrv. I tried 'telnet localhost
7777' and got connection refused. When telneting locally without specifying
the port (telnet localhost), I got in. My inetd.conf file reads as such for
auth:

auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv

I have also tried changing it to:

authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv

and when I did, telneting into localhost 7777 locked up the system. When
performing a netstat -a, I do see auth 'LISTENING' along with http, telnet,
and ftp-gw. I have rebooted several times, restarted the inetd daemon, and
kill -HUP # (ps -A reported inetd as pid 591), etc. Is my inetd.conf
statement correct (the upper statement)? Again, thanks very much for your
help Rick.

> -----Original Message-----
> From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> Sent: Friday, May 12, 2000 10:03 PM
> To: Nixon, Anthony
> Cc: 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> >I did. That section of the netperm-table file actually reads:
> 
> OK, but what about the other questions:
> 
> > > How are you running authsrv? What happens when you 'telnet
> > > localhost 7777'?
> > >          -Rick
> > >
> If your netperm-table is set up right, then you probably don't have 
> anything listening on the authsrv port - either your 
> inetd.conf line for 
> authsrv is wrong or you haven't HUP'd inetd.
>          -Rick
> 

From owner-fwtk-users@ex.tis.com Mon May 15 13:22 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA09286
	Mon, 15 May 2000 13:22:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA13755;
	Mon, 15 May 2000 10:27:37 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 08:50:43 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA09156
	for fwtk-users-outgoing; Mon, 15 May 2000 08:50:32 -0700 (PDT)
Message-ID: <CAE0A17F1713D311A44500105A16C90B6529C7@bush.cambric.com>
From: Malcolm Tester <MTester@cambric.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Transparency of FWTK with MS Proxy 2.0
Date: Mon, 15 May 2000 09:59:32 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1918

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi,

In order to accomodate my Windoze users, I need to proxy client_pc->MS Proxy
2.0->fwtk->outside world.  Http, https, nntp, even real audio works fine.
However, I am running into problems with ftp and telnet.  On a UNIX client
(i.e. bypassing the MSP), I can use the gate-ftp to get out fine and using
an expect script, I can use Telnet.  I installed the transparency
patch...which installed perfectly...but it doesn't seem to make a difference
(doesn't work).  The UNIX client just hangs at Trying xxx.xxx.xxx.xxx....  I
also installed the secondary Transparency patch, with no difference, though
I didn't expect any since that seems to be more of a compile issue.  I'm
assuming that when MSP tries to pass a telnet or ftp connection through,
it's getting hung up on the firewall, which is sitting there waiting for a
"connect" command.

Preferably, i would like to get the transparency patch working, which I
assume would fix the problem.  If not though, is there some other way to get
around it?

The fwtk is 2.1 running on Solaris 2.6.

Regards and Tia,


Malcolm W. Tester II
Cambric Corporation
110 West Business Park Drive
Draper, Utah 84020
http://www.cambric.com


This message is intended only for the use of the individual or entity to
whom it is addressed and may contain information that is privileged,
confidential and exempt from disclosure under applicable law.  If the reader
of this message is not the intended recipient, or the employee or agent
responsible for delivering the message to the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this
communication in error, please delete it from your system and notify the
sender identified above by e-mail.

From owner-fwtk-users@ex.tis.com Mon May 15 13:23 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA09290
	Mon, 15 May 2000 13:22:54 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA13767;
	Mon, 15 May 2000 10:27:40 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 08:53:56 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA09273
	for fwtk-users-outgoing; Mon, 15 May 2000 08:53:26 -0700 (PDT)
Date: Mon, 15 May 2000 11:50:47 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
cc: "'Rick Murphy'" <rmurphy@itm-inst.com>,
        "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B3@email.domain.com>
Message-ID: <Pine.GSO.4.10.10005151125210.17315-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1953

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Anthony,

Do you have auth defined as port 7777 in your /etc/services file?

ted keller


On Mon, 15 May 2000, Nixon, Anthony wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> You are correct about telneting into authsrv. I tried 'telnet localhost
> 7777' and got connection refused. When telneting locally without specifying
> the port (telnet localhost), I got in. My inetd.conf file reads as such for
> auth:
> 
> auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
> 
> I have also tried changing it to:
> 
> authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv
> 
> and when I did, telneting into localhost 7777 locked up the system. When
> performing a netstat -a, I do see auth 'LISTENING' along with http, telnet,
> and ftp-gw. I have rebooted several times, restarted the inetd daemon, and
> kill -HUP # (ps -A reported inetd as pid 591), etc. Is my inetd.conf
> statement correct (the upper statement)? Again, thanks very much for your
> help Rick.
> 
> > -----Original Message-----
> > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > Sent: Friday, May 12, 2000 10:03 PM
> > To: Nixon, Anthony
> > Cc: 'fwtk-users@ex.tis.com'
> > Subject: RE: authmgr?
> > 
> > 
> > At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> > >I did. That section of the netperm-table file actually reads:
> > 
> > OK, but what about the other questions:
> > 
> > > > How are you running authsrv? What happens when you 'telnet
> > > > localhost 7777'?
> > > >          -Rick
> > > >
> > If your netperm-table is set up right, then you probably don't have 
> > anything listening on the authsrv port - either your 
> > inetd.conf line for 
> > authsrv is wrong or you haven't HUP'd inetd.
> >          -Rick
> > 
> 


From owner-fwtk-users@ex.tis.com Mon May 15 13:30 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA09315
	Mon, 15 May 2000 13:30:38 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA14097;
	Mon, 15 May 2000 10:34:37 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 09:12:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA09955
	for fwtk-users-outgoing; Mon, 15 May 2000 09:11:40 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B6@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Ted Keller'" <keller@bfg.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Mon, 15 May 2000 12:08:55 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2738

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Yes. I have tried both auth 7777/tcp and authsrv 7777/tcp. At this moment
they both exist in the services file pointed to the same port (7777/tcp). I
get Connection closed by foreign host every time whether telneting locally
or from another system. I also added -auth to the telnet section of the
netperm-table to see what would happen. I get the same result - Connection
closed by foreign host. When I remove the switch, telnet works fine.

> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Monday, May 15, 2000 11:51 AM
> To: Nixon, Anthony
> Cc: 'Rick Murphy'; 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> Anthony,
> 
> Do you have auth defined as port 7777 in your /etc/services file?
> 
> ted keller
> 
> 
> On Mon, 15 May 2000, Nixon, Anthony wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > You are correct about telneting into authsrv. I tried 
> 'telnet localhost
> > 7777' and got connection refused. When telneting locally 
> without specifying
> > the port (telnet localhost), I got in. My inetd.conf file 
> reads as such for
> > auth:
> > 
> > auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
> > 
> > I have also tried changing it to:
> > 
> > authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv
> > 
> > and when I did, telneting into localhost 7777 locked up the 
> system. When
> > performing a netstat -a, I do see auth 'LISTENING' along 
> with http, telnet,
> > and ftp-gw. I have rebooted several times, restarted the 
> inetd daemon, and
> > kill -HUP # (ps -A reported inetd as pid 591), etc. Is my inetd.conf
> > statement correct (the upper statement)? Again, thanks very 
> much for your
> > help Rick.
> > 
> > > -----Original Message-----
> > > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > > Sent: Friday, May 12, 2000 10:03 PM
> > > To: Nixon, Anthony
> > > Cc: 'fwtk-users@ex.tis.com'
> > > Subject: RE: authmgr?
> > > 
> > > 
> > > At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> > > >I did. That section of the netperm-table file actually reads:
> > > 
> > > OK, but what about the other questions:
> > > 
> > > > > How are you running authsrv? What happens when you 'telnet
> > > > > localhost 7777'?
> > > > >          -Rick
> > > > >
> > > If your netperm-table is set up right, then you probably 
> don't have 
> > > anything listening on the authsrv port - either your 
> > > inetd.conf line for 
> > > authsrv is wrong or you haven't HUP'd inetd.
> > >          -Rick
> > > 
> > 
> 

From owner-fwtk-users@ex.tis.com Mon May 15 13:59 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA09418
	Mon, 15 May 2000 13:59:01 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA15408;
	Mon, 15 May 2000 11:03:58 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 09:37:26 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA10991
	for fwtk-users-outgoing; Mon, 15 May 2000 09:37:15 -0700 (PDT)
Message-ID: <3920266F.34BF83DF@educ.emse.fr>
Date: Mon, 15 May 2000 18:31:43 +0200
From: Lionel GAULIARDON <lgauliar@educ.emse.fr>
X-Mailer: Mozilla 4.5 [en] (X11; I; SunOS 5.6 sun4m)
X-Accept-Language: en
MIME-Version: 1.0
To: "'fwtk-users''" <fwtk-users@ex.tis.com>
Subject: Problem with Authsrv
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 417

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

I saw in authsrv's man, we can used deny-hosts such that :

netperm-table:
    authsrv: deny-hosts 195.1**.***.***

Is everybody tried that because :-(((   It is wrong for me !

What do you think about : -directory, -extnd, -securidhost,
-permit-unknow ?????

    Thanks, Lionel


From owner-fwtk-users@ex.tis.com Mon May 15 14:03 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA09435
	Mon, 15 May 2000 14:03:32 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA15579;
	Mon, 15 May 2000 11:08:18 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 09:46:15 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA11417
	for fwtk-users-outgoing; Mon, 15 May 2000 09:45:55 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B7@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Ted Keller'" <keller@bfg.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Mon, 15 May 2000 12:44:31 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2653

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Checking the messages log file I see this message several times before
telnet connects:

/usr/local/etc/authsrv (pid 776): exit status 1
fwtksyserr: cannot get peer name: Transport endpoint is not connected

then after that I get:

auth/tcp server failing (looping or being flooded), service terminated for
10 min

But I do get access to the telnet proxy.

> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Monday, May 15, 2000 11:51 AM
> To: Nixon, Anthony
> Cc: 'Rick Murphy'; 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> Anthony,
> 
> Do you have auth defined as port 7777 in your /etc/services file?
> 
> ted keller
> 
> 
> On Mon, 15 May 2000, Nixon, Anthony wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > You are correct about telneting into authsrv. I tried 
> 'telnet localhost
> > 7777' and got connection refused. When telneting locally 
> without specifying
> > the port (telnet localhost), I got in. My inetd.conf file 
> reads as such for
> > auth:
> > 
> > auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
> > 
> > I have also tried changing it to:
> > 
> > authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv
> > 
> > and when I did, telneting into localhost 7777 locked up the 
> system. When
> > performing a netstat -a, I do see auth 'LISTENING' along 
> with http, telnet,
> > and ftp-gw. I have rebooted several times, restarted the 
> inetd daemon, and
> > kill -HUP # (ps -A reported inetd as pid 591), etc. Is my inetd.conf
> > statement correct (the upper statement)? Again, thanks very 
> much for your
> > help Rick.
> > 
> > > -----Original Message-----
> > > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > > Sent: Friday, May 12, 2000 10:03 PM
> > > To: Nixon, Anthony
> > > Cc: 'fwtk-users@ex.tis.com'
> > > Subject: RE: authmgr?
> > > 
> > > 
> > > At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> > > >I did. That section of the netperm-table file actually reads:
> > > 
> > > OK, but what about the other questions:
> > > 
> > > > > How are you running authsrv? What happens when you 'telnet
> > > > > localhost 7777'?
> > > > >          -Rick
> > > > >
> > > If your netperm-table is set up right, then you probably 
> don't have 
> > > anything listening on the authsrv port - either your 
> > > inetd.conf line for 
> > > authsrv is wrong or you haven't HUP'd inetd.
> > >          -Rick
> > > 
> > 
> 

From owner-fwtk-users@ex.tis.com Mon May 15 15:48 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA09919
	Mon, 15 May 2000 15:48:47 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA19841;
	Mon, 15 May 2000 12:54:30 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 11:27:39 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA16420
	for fwtk-users-outgoing; Mon, 15 May 2000 11:27:28 -0700 (PDT)
Message-ID: <20000515182541.67878.qmail@hotmail.com>
X-Originating-IP: [24.232.47.25]
From: "=?iso-8859-1?B?Sm9z6SBGcmFuY2lzY28gQnJ1c2Nv?=" <j_brusco@hotmail.com>
To: fwtk-users@ex.tis.com
Subject: smap
Date: Mon, 15 May 2000 15:25:41 ART
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1; format=flowed
Content-Length: 473

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi.

I need help.

I need to pass the outgoing e-mail through a linux firewall with smap
hiding the name and address of my mail server in the header. What can i do 
to obtain this?

Thanks.

José.
________________________________________________________________________
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com


From owner-fwtk-users@ex.tis.com Mon May 15 15:48 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA09920
	Mon, 15 May 2000 15:48:49 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA19845;
	Mon, 15 May 2000 12:54:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 11:17:18 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA15940
	for fwtk-users-outgoing; Mon, 15 May 2000 11:17:08 -0700 (PDT)
X-Authentication-Warning: cor_smtp: smap set sender to <chris.hutchison@brewers.com> using -f
Message-ID: <037D9C3BD3CDD311B45A009027DE2EF85472FA@DIAMOND>
From: "Hutchison, Chris" <chris.hutchison@brewers.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: audio and video streaming through HTTP-GW
Date: Mon, 15 May 2000 14:17:41 -0400
X-MS-TNEF-Correlator: <037D9C3BD3CDD311B45A009027DE2EF85472FA@DIAMOND>
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 3756

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Is there a way to Stop / Monitor / Log audio & video streaming through the
HTTP-GW?

Also, is there a way to control access to HTTP-GW using NT authentication
instead of authsrv?

I am running TIS toolkit 2.1 on Solaris 2.6.

Thanks in advance
Chris

begin 600 winmail.dat
M>)\^(C$2`0:0"``$```````!``$``0>0!@`(````Y`0```````#H``$(@`<`
M&````$E032Y-:6-R;W-O9G0@36%I;"Y.;W1E`#$(`06``P`.````T`<%``\`
M#@`1`"D``0`T`0$@@`,`#@```-`'!0`/``X`$0`O``$`.@$!"8`!`"$```!%
M1$-!0D5!035&,D%$-#$Q0C0Y1#`P0S`T1C$P0C)"-P!L!P$$@`$`*@```&%U
M9&EO(&%N9"!V:61E;R!S=')E86UI;F<@=&AR;W5G:"!(5%10+4=7`-(.`0V`
M!``"`````@`"``$#D`8`B`@``#(````#``*`""`&``````#`````````1@``
M``!2A0``\!,``!X``X`((`8``````,````````!&`````%2%```!````!```
M`#@N-0`+``V`""`&``````#`````````1@`````&A0````````,`#(`((`8`
M`````,````````!&``````&%````````"P`!@`@@!@``````P````````$8`
M`````X4````````+``B`""`&``````#`````````1@`````.A0````````,`
M"8`((`8``````,````````!&`````!"%`````````P`*@`@@!@``````P```
M`````$8`````$84````````#``N`""`&``````#`````````1@`````8A0``
M`````!X`!(`((`8``````,````````!&`````#:%```!`````0`````````>
M``6`""`&``````#`````````1@`````WA0```0````$`````````'@`&@`@@
M!@``````P````````$8`````.(4```$````!``````````L`9(`+(`8`````
M`,````````!&``````"(````````"P!E@`L@!@``````P````````$8`````
M!8@````````"`0D0`0```$\!``!+`0``E`$``$Q:1G7QYVAY`P`*`')C<&<Q
M,C46,@#X"V!N#A`P,S-/`?<"I`/C`@!C:`K`<[!E=#`@!Q,"@'T*@9)V")!W
M:PN`9#0,8$YC`%`+`PNU($D$('0":`2092!A('=A&GD3\&\&`!3`<"`O.P70
M`B!I%,`%P!5`3&\B9Q10=61I%-`F("<2(`$`%-!S=`EP86V/"X`6(!0``V!U
M9V@3\@`@2%144"U'5PX_"J(*A`J`06QS;_PL(`0`$_X%H`(P`V`#(#T`T&,'
MD!HQ%-`8A2!U\P"0%Y%.5!8Q%`$",`W@7F$=T`(@&A``@'074&2((&]F'6-S
M<G88^X))%%!M(')U;@,`^1>15$D%\!3`!O`28`5`V#(N,1[0`Z!3!O`*P%,:
M(2'@-BX9"E00\&[.:P0@"X`44&1V`'`;X+T9!$,7T`0`&001X0`F,``>`'``
M`0```"H```!A=61I;R!A;F0@=FED96\@<W1R96%M:6YG('1H<F]U9V@@2%14
M4"U'5P````(!<0`!````%@````&_OIHU29T;BUHJ91'4G1<`P$_R.D8```,`
M)@```````P`V```````+``(``0````(!,0`!````/@$``%!#1$9%0C`Y``$`
M`@"#`````````#BANQ`%Y1`:H;L(`"LJ5L(``$5-4TU$0BY$3$P`````````
M`!M5^B"J9A'-F\@`J@`OQ%H,````1$E!34].1``O;SU"<F5W97)S(%)E=&%I
M;"!);F,N+V]U/4)222]C;CU296-I<&EE;G1S+V-N/4-H<FES($AU=&-H:7-O
M;@`N``````````[Z/:]-L]`1@+4`(*_Z"?8!`/L=Z#8P$M`1@(0`(*_Z"?8`
M```0]"$````````N``````````[Z/:]-L]`1@+4`(*_Z"?8!`/L=Z#8P$M`1
M@(0`(*_Z"?8````0]"(``!````#MRKZJ7RK4$;2=`,!/$+*W*@```&%U9&EO
M(&%N9"!V:61E;R!S=')E86UI;F<@=&AR;W5G:"!(5%10+4=7`````P#>/Z]O
M``!``#D`4$O=VYF^OP$#`/$_"00``!X`,4`!````$````$-(4DE3($A55$-(
M25-/3@`#`!I``````!X`,$`!````$````$-(4DE3($A55$-(25-/3@`#`!E`
M``````,`_3_D!````P"`$/____\"`4<``0```#D```!C/4-!.V$](#MP/4)R
M97=E<G,@4F5T86EL($D[;#U$24%-3TY$+3`P,#4Q-3$X,3<T,5HM,C$P-@``
M```"`?D_`0```%L`````````W*=`R,!"$!JTN0@`*R_A@@$`````````+T\]
M0E)%5T524R!2151!24P@24Y#+B]/53U"4DDO0TX]4D5#25!)14Y44R]#3CU#
M2%))4R!(551#2$E33TX``!X`^#\!````$0```$AU=&-H:7-O;BP@0VAR:7,`
M````'@`X0`$````0````0TA225,@2%540TA)4T].``(!^S\!````6P``````
M``#<IT#(P$(0&K2Y"``K+^&"`0`````````O3SU"4D5715)3(%)%5$%)3"!)
M3D,N+T]5/4)222]#3CU214-)4$E%3E13+T-./4-(4DE3($A55$-(25-/3@``
M'@#Z/P$````1````2'5T8VAI<V]N+"!#:')I<P`````>`#E``0```!````!#
M2%))4R!(551#2$E33TX`0``',,C:8%:9OK\!0``(,%C9/M^9OK\!'@`]``$`
M```!`````````!X`'0X!````*@```&%U9&EO(&%N9"!V:61E;R!S=')E86UI
M;F<@=&AR;W5G:"!(5%10+4=7````'@`U$`$````Q````/#`S-T0Y0S-"1#-#
M1$0S,3%"-#5!,#`Y,#(W1$4R148X-30W,D9!0$1)04U/3D0^``````L`*0`!
M````"P`C```````#``80Q[45<@,`!Q#&`````P`0$``````#`!$0`````!X`
M"!`!````90```$E35$A%4D5!5T%95$]35$]0+TU/3DE43U(O3$]'055$24\F
M5DE$14]35%)%04U)3D=42%)/54=(5$A%2%144"U'5S]!3%-/+$E35$A%4D5!
M5T%95$]#3TY44D],04-#15-35$\``````@%_``$````Q````/#`S-T0Y0S-"
M1#-#1$0S,3%"-#5!,#`Y,#(W1$4R148X-30W,D9!0$1)04U/3D0^`````/O+
`
end

From owner-fwtk-users@ex.tis.com Mon May 15 18:42 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA10395
	Mon, 15 May 2000 18:42:55 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA24255;
	Mon, 15 May 2000 15:48:29 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 14:05:20 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA21128
	for fwtk-users-outgoing; Mon, 15 May 2000 14:05:10 -0700 (PDT)
X-Authentication-Warning: wall.pdv.de: mail set sender to <Birk.Bohne@pdv.de> using -f
Message-ID: <6CC81B07CB44D311A1D20001FA7E99560A61DD@exchange.pdv.de>
From: "Birk.Bohne" <Birk.Bohne@pdv.de>
To: "Firewall Toolkit (M-list)" <fwtk-users@ex.tis.com>
Subject: RE: Compile under Freebsd 3.4
Date: Mon, 15 May 2000 17:05:14 +0200
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.0.1460.8)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 449

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

i found the solution in the mailinglist archive @
http://marc.theaimsgroup.com/?l=fwtk-users&m=91945418429090&w=2

The problem must occur since FBSD3.0 and the solution is

#include <sys/types.h>

to daemon.c right before the

#include <sys/signal.h>

Greetings

Birk Bohne
PDV Systeme
mailto:birk.bohne@pdv.de 

From owner-fwtk-users@ex.tis.com Mon May 15 18:52 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA10405
	Mon, 15 May 2000 18:52:50 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA24595;
	Mon, 15 May 2000 15:58:23 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 14:33:22 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA21767
	for fwtk-users-outgoing; Mon, 15 May 2000 14:33:01 -0700 (PDT)
Date: Mon, 15 May 2000 17:30:23 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Malcolm Tester <MTester@cambric.com>
cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Re: Transparency of FWTK with MS Proxy 2.0
In-Reply-To: <CAE0A17F1713D311A44500105A16C90B6529C7@bush.cambric.com>
Message-ID: <Pine.GSO.4.10.10005151711190.4889-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2465

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Malcolm,

For ftp, the problem may be related to the data port connection.  The
msproxy server may be wanting to use the defined port 20 - as opposed to a
negotiated high port number.  There are a set of patches in the archives
which will use the defined port number.

ted keller


On Mon, 15 May 2000, Malcolm Tester wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> 
> Hi,
> 
> In order to accomodate my Windoze users, I need to proxy client_pc->MS Proxy
> 2.0->fwtk->outside world.  Http, https, nntp, even real audio works fine.
> However, I am running into problems with ftp and telnet.  On a UNIX client
> (i.e. bypassing the MSP), I can use the gate-ftp to get out fine and using
> an expect script, I can use Telnet.  I installed the transparency
> patch...which installed perfectly...but it doesn't seem to make a difference
> (doesn't work).  The UNIX client just hangs at Trying xxx.xxx.xxx.xxx....  I
> also installed the secondary Transparency patch, with no difference, though
> I didn't expect any since that seems to be more of a compile issue.  I'm
> assuming that when MSP tries to pass a telnet or ftp connection through,
> it's getting hung up on the firewall, which is sitting there waiting for a
> "connect" command.
> 
> Preferably, i would like to get the transparency patch working, which I
> assume would fix the problem.  If not though, is there some other way to get
> around it?
> 
> The fwtk is 2.1 running on Solaris 2.6.
> 
> Regards and Tia,
> 
> 
> Malcolm W. Tester II
> Cambric Corporation
> 110 West Business Park Drive
> Draper, Utah 84020
> http://www.cambric.com
> 
> 
> This message is intended only for the use of the individual or entity to
> whom it is addressed and may contain information that is privileged,
> confidential and exempt from disclosure under applicable law.  If the reader
> of this message is not the intended recipient, or the employee or agent
> responsible for delivering the message to the intended recipient, you are
> hereby notified that any dissemination, distribution or copying of this
> communication is strictly prohibited.  If you have received this
> communication in error, please delete it from your system and notify the
> sender identified above by e-mail.
> 


From owner-fwtk-users@ex.tis.com Mon May 15 18:55 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA10423
	Mon, 15 May 2000 18:55:53 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA24706;
	Mon, 15 May 2000 16:01:27 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 14:38:12 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA21857
	for fwtk-users-outgoing; Mon, 15 May 2000 14:37:51 -0700 (PDT)
Date: Mon, 15 May 2000 17:35:49 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B7@email.domain.com>
Message-ID: <Pine.GSO.4.10.10005151731250.4889-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 3660

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hmmm....

Does this machine run the tool kit natively? or are you running it over
something like ipchains - or fwadmin?  Also, are there any routers between
this machine and your client which may have acess control lists on it.

The first message seems to indicate that the connect partially made it -
but the server couldn't resolve the information from the client.  The
second message seems to indicate that the server couldn't complete the
connection to the client.

You may want to run a tcpdump on this connection and see the packets
coming and going.  I suspect that you not see the syn - syn - ack sequence
being completed properly.

ted keller


On Mon, 15 May 2000, Nixon, Anthony wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Checking the messages log file I see this message several times before
> telnet connects:
> 
> /usr/local/etc/authsrv (pid 776): exit status 1
> fwtksyserr: cannot get peer name: Transport endpoint is not connected
> 
> then after that I get:
> 
> auth/tcp server failing (looping or being flooded), service terminated for
> 10 min
> 
> But I do get access to the telnet proxy.
> 
> > -----Original Message-----
> > From: Ted Keller [mailto:keller@bfg.com]
> > Sent: Monday, May 15, 2000 11:51 AM
> > To: Nixon, Anthony
> > Cc: 'Rick Murphy'; 'fwtk-users@ex.tis.com'
> > Subject: RE: authmgr?
> > 
> > 
> > Anthony,
> > 
> > Do you have auth defined as port 7777 in your /etc/services file?
> > 
> > ted keller
> > 
> > 
> > On Mon, 15 May 2000, Nixon, Anthony wrote:
> > 
> > > [To be removed from this list send the message "unsubscribe 
> > fwtk-users" in the
> > > BODY of a mail message to majordomo@ex.tis.com.]
> > > 
> > > You are correct about telneting into authsrv. I tried 
> > 'telnet localhost
> > > 7777' and got connection refused. When telneting locally 
> > without specifying
> > > the port (telnet localhost), I got in. My inetd.conf file 
> > reads as such for
> > > auth:
> > > 
> > > auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
> > > 
> > > I have also tried changing it to:
> > > 
> > > authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv
> > > 
> > > and when I did, telneting into localhost 7777 locked up the 
> > system. When
> > > performing a netstat -a, I do see auth 'LISTENING' along 
> > with http, telnet,
> > > and ftp-gw. I have rebooted several times, restarted the 
> > inetd daemon, and
> > > kill -HUP # (ps -A reported inetd as pid 591), etc. Is my inetd.conf
> > > statement correct (the upper statement)? Again, thanks very 
> > much for your
> > > help Rick.
> > > 
> > > > -----Original Message-----
> > > > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > > > Sent: Friday, May 12, 2000 10:03 PM
> > > > To: Nixon, Anthony
> > > > Cc: 'fwtk-users@ex.tis.com'
> > > > Subject: RE: authmgr?
> > > > 
> > > > 
> > > > At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> > > > >I did. That section of the netperm-table file actually reads:
> > > > 
> > > > OK, but what about the other questions:
> > > > 
> > > > > > How are you running authsrv? What happens when you 'telnet
> > > > > > localhost 7777'?
> > > > > >          -Rick
> > > > > >
> > > > If your netperm-table is set up right, then you probably 
> > don't have 
> > > > anything listening on the authsrv port - either your 
> > > > inetd.conf line for 
> > > > authsrv is wrong or you haven't HUP'd inetd.
> > > >          -Rick
> > > > 
> > > 
> > 
> 


From owner-fwtk-users@ex.tis.com Mon May 15 19:01 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA10442
	Mon, 15 May 2000 19:01:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA24897;
	Mon, 15 May 2000 16:06:42 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 14:43:10 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA22025
	for fwtk-users-outgoing; Mon, 15 May 2000 14:42:49 -0700 (PDT)
Message-ID: <CAE0A17F1713D311A44500105A16C90B6529D4@bush.cambric.com>
From: Malcolm Tester <MTester@cambric.com>
To: Ted Keller <keller@bfg.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: Transparency of FWTK with MS Proxy 2.0
Date: Mon, 15 May 2000 15:51:48 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="windows-1252"
Content-Length: 4186

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hmm, What about the UNIX client though?  The transparency patch doesn't seem
to work with that either.  I assumed that by installing the transparency
patch, I could then use (on the internal UNIX client) the normal "ftp"
command.  I.e. "ftp ftp.some.where.com"  with the /etc/defaultrouter == the
firewall.  That doesn't work for ftp or telnet.  Which, if I can get it to
work properly, I think might go a long while to solving MS proxy's problem
too.  I'll try the ideas you described below.  Maybe I'm not understanding
the proper use of the transparency patch, too.

Regards,
Malcolm Tester

Malcolm W. Tester II
Cambric Corporation
110 West Business Park Drive
Draper, Utah 84020
http://www.cambric.com

This message is intended only for the use of the individual or entity to
whom it is addressed and may contain information that is privileged,
confidential and exempt from disclosure under applicable law.  If the reader
of this message is not the intended recipient, or the employee or agent
responsible for delivering the message to the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this
communication in error, please delete it from your system and notify the
sender identified above by e-mail.



> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Monday, May 15, 2000 3:30 PM
> To: Malcolm Tester
> Cc: 'fwtk-users@ex.tis.com'
> Subject: Re: Transparency of FWTK with MS Proxy 2.0
> 
> 
> Malcolm,
> 
> For ftp, the problem may be related to the data port connection.  The
> msproxy server may be wanting to use the defined port 20 - as 
> opposed to a
> negotiated high port number.  There are a set of patches in 
> the archives
> which will use the defined port number.
> 
> ted keller
> 
> 
> On Mon, 15 May 2000, Malcolm Tester wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > 
> > Hi,
> > 
> > In order to accomodate my Windoze users, I need to proxy 
> client_pc->MS Proxy
> > 2.0->fwtk->outside world.  Http, https, nntp, even real 
> audio works fine.
> > However, I am running into problems with ftp and telnet.  
> On a UNIX client
> > (i.e. bypassing the MSP), I can use the gate-ftp to get out 
> fine and using
> > an expect script, I can use Telnet.  I installed the transparency
> > patch...which installed perfectly...but it doesn't seem to 
> make a difference
> > (doesn't work).  The UNIX client just hangs at Trying 
> xxx.xxx.xxx.xxx....  I
> > also installed the secondary Transparency patch, with no 
> difference, though
> > I didn't expect any since that seems to be more of a 
> compile issue.  I'm
> > assuming that when MSP tries to pass a telnet or ftp 
> connection through,
> > it's getting hung up on the firewall, which is sitting 
> there waiting for a
> > "connect" command.
> > 
> > Preferably, i would like to get the transparency patch 
> working, which I
> > assume would fix the problem.  If not though, is there some 
> other way to get
> > around it?
> > 
> > The fwtk is 2.1 running on Solaris 2.6.
> > 
> > Regards and Tia,
> > 
> > 
> > Malcolm W. Tester II
> > Cambric Corporation
> > 110 West Business Park Drive
> > Draper, Utah 84020
> > http://www.cambric.com
> > 
> > 
> > This message is intended only for the use of the individual 
> or entity to
> > whom it is addressed and may contain information that is privileged,
> > confidential and exempt from disclosure under applicable 
> law.  If the reader
> > of this message is not the intended recipient, or the 
> employee or agent
> > responsible for delivering the message to the intended 
> recipient, you are
> > hereby notified that any dissemination, distribution or 
> copying of this
> > communication is strictly prohibited.  If you have received this
> > communication in error, please delete it from your system 
> and notify the
> > sender identified above by e-mail.
> > 
> 

From owner-fwtk-users@ex.tis.com Mon May 15 21:45 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA11073
	Mon, 15 May 2000 21:45:41 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA29147;
	Mon, 15 May 2000 18:51:39 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 17:46:13 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA27840
	for fwtk-users-outgoing; Mon, 15 May 2000 17:46:02 -0700 (PDT)
Message-Id: <4.3.1.2.20000515202704.00c55490@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 15 May 2000 20:29:56 -0400
To: Lionel GAULIARDON <lgauliar@educ.emse.fr>,
        "'fwtk-users''" <fwtk-users@ex.tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: Problem with Authsrv
In-Reply-To: <3920266F.34BF83DF@educ.emse.fr>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 931

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 06:31 PM 5/15/00 +0200, Lionel GAULIARDON wrote:
>I saw in authsrv's man, we can used deny-hosts such that :
>
>netperm-table:
>     authsrv: deny-hosts 195.1**.***.***
>
>Is everybody tried that because :-(((   It is wrong for me !

authsrv 'deny-hosts' lines only apply to authsrv; what you have done is to 
deny authentication server connections from those hosts - that does not 
permit users from those hosts from connecting to http-gw, ftp-gw, etc. - or 
from authenticating from those hosts. Normally all you have for authsrv is
authsrv: permit-hosts 127.0.0.1
authsrv: deny-hosts *
if you want to deny 195.1.0.0/16 from using, say, telnet:
tn-gw: deny-hosts 195.1.*
         -Rick




>What do you think about : -directory, -extnd, -securidhost,
>-permit-unknow ?????
>
>     Thanks, Lionel


From owner-fwtk-users@ex.tis.com Mon May 15 21:45 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA11072
	Mon, 15 May 2000 21:45:41 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA29151;
	Mon, 15 May 2000 18:51:40 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 15 May 2000 17:31:18 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA27660
	for fwtk-users-outgoing; Mon, 15 May 2000 17:31:07 -0700 (PDT)
Message-Id: <4.3.1.2.20000515201052.00c5eba0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 15 May 2000 20:17:06 -0400
To: "Nixon, Anthony" <snixon@mei-charlotte.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: RE: authmgr?
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
In-Reply-To: <C901B1D9820CD411A11E0060B03CEAB605C4B3@email.domain.com>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1110

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 08:30 AM 5/15/00 -0400, Nixon, Anthony wrote:
>auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
>authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv

1. Dump the 'auth' line - if that's identd (port 113), there's nothing in 
FWTK that needs you to make that change. You should have the following in 
your /etc/services:
% grep auth /etc/services
auth            113/tcp         authentication
authsrv         7777/tcp

2. If your 'authsrv' line in /etc/services says 7777/tcp, and you have the 
authsrv line above in your inetd.conf, there should be a listener on port 
7777 - again, ***NOT*** auth, but 7777. If not, try kill -HUP <pid of 
inetd> to get inetd to start listening to it.
% netstat -a | grep auth
tcp        0      0  *.authsrv              *.*                    LISTEN
tcp        0      0  *.auth                 *.*                    LISTEN

3. '/usr/loca/etc' should be /usr/local/etc, but I suspect that's a typo.
         -Rick


From owner-fwtk-users@ex.tis.com Tue May 16 07:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id HAA13210
	Tue, 16 May 2000 07:12:43 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id EAA03046;
	Tue, 16 May 2000 04:18:49 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 16 May 2000 03:26:15 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id DAA02255
	for fwtk-users-outgoing; Tue, 16 May 2000 03:26:09 -0700 (PDT)
X-Authentication-Warning: proxy.hundert6.de: mail set sender to <jan@radio.hundert6.de> using -f
Message-ID: <39212218.87FC0F43@radio.hundert6.de>
Date: Tue, 16 May 2000 12:25:28 +0200
From: Jan Muenther <jan@radio.hundert6.de>
Organization: Radio Hundert,6
X-Mailer: Mozilla 4.72 [en] (X11; I; FreeBSD 4.0-RELEASE i386)
X-Accept-Language: en
MIME-Version: 1.0
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: smap refuses connections after applying yao-patch
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 587

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello there,
I have a problem with smap after applying the yao-patch and
recompiling. smap starts without complainig but doesn`t accept
connections anymore. Assuming the problem might be ACL-caused, I
specified the internal domains in smap: domains and some hosts in
smap: hosts. But still to no effect. 
I originally expected the newly compiled binary to run with the
original configuration. Well, it doesn`t.
Does anyone know the solution?

Greetings, Jan

From owner-fwtk-users@ex.tis.com Tue May 16 09:01 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14054
	Tue, 16 May 2000 09:01:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA05032;
	Tue, 16 May 2000 06:08:11 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 16 May 2000 05:18:25 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA03873
	for fwtk-users-outgoing; Tue, 16 May 2000 05:18:09 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4B8@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'Ted Keller'" <keller@bfg.com>,
        "'rmurphy@itm-inst.com'"
	 <rmurphy@itm-inst.com>
Cc: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: authmgr?
Date: Tue, 16 May 2000 08:16:45 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 5240

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have complied with Rick Murphy's email and made the suggested changes to
/etc/inetd.conf and /etc/services. I now know that inetd is the problem and
not authsrv. If I run authsrv in daemon mode (/usr/local/etc/authsrv -daemon
7777 &), then all works fine. If I run it under inetd, with the services
file reading authsrv 7777/tcp and

authsrv  stream  tcp  wait  root /usr/local/etc/authsrv  authsrv in my
inetd.conf file, it does not work. Doing netstat -a shows it listening
(authsrv), but it hangs on use. Such as when I telnet. I have a welcome
message displayed (tn-welcome.txt). The message displays, but hangs when
authentication is called for. I had hoped that I would not have to run it as
a daemon, but that seems the only way to make it work. Much thanks to Rick
Murphy and Ted Keller for their excellent help and patience in trying to
solve this mystery. I was greatly appreciated. If you do think of anything
else that I could try, please do not hesitate to email me.


Best Regards - Shon

> -----Original Message-----
> From: Ted Keller [mailto:keller@bfg.com]
> Sent: Monday, May 15, 2000 5:36 PM
> To: Nixon, Anthony
> Cc: 'fwtk-users@ex.tis.com'
> Subject: RE: authmgr?
> 
> 
> [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hmmm....
> 
> Does this machine run the tool kit natively? or are you 
> running it over
> something like ipchains - or fwadmin?  Also, are there any 
> routers between
> this machine and your client which may have acess control lists on it.
> 
> The first message seems to indicate that the connect 
> partially made it -
> but the server couldn't resolve the information from the client.  The
> second message seems to indicate that the server couldn't complete the
> connection to the client.
> 
> You may want to run a tcpdump on this connection and see the packets
> coming and going.  I suspect that you not see the syn - syn - 
> ack sequence
> being completed properly.
> 
> ted keller
> 
> 
> On Mon, 15 May 2000, Nixon, Anthony wrote:
> 
> > [To be removed from this list send the message "unsubscribe 
> fwtk-users" in the
> > BODY of a mail message to majordomo@ex.tis.com.]
> > 
> > Checking the messages log file I see this message several 
> times before
> > telnet connects:
> > 
> > /usr/local/etc/authsrv (pid 776): exit status 1
> > fwtksyserr: cannot get peer name: Transport endpoint is not 
> connected
> > 
> > then after that I get:
> > 
> > auth/tcp server failing (looping or being flooded), service 
> terminated for
> > 10 min
> > 
> > But I do get access to the telnet proxy.
> > 
> > > -----Original Message-----
> > > From: Ted Keller [mailto:keller@bfg.com]
> > > Sent: Monday, May 15, 2000 11:51 AM
> > > To: Nixon, Anthony
> > > Cc: 'Rick Murphy'; 'fwtk-users@ex.tis.com'
> > > Subject: RE: authmgr?
> > > 
> > > 
> > > Anthony,
> > > 
> > > Do you have auth defined as port 7777 in your /etc/services file?
> > > 
> > > ted keller
> > > 
> > > 
> > > On Mon, 15 May 2000, Nixon, Anthony wrote:
> > > 
> > > > [To be removed from this list send the message "unsubscribe 
> > > fwtk-users" in the
> > > > BODY of a mail message to majordomo@ex.tis.com.]
> > > > 
> > > > You are correct about telneting into authsrv. I tried 
> > > 'telnet localhost
> > > > 7777' and got connection refused. When telneting locally 
> > > without specifying
> > > > the port (telnet localhost), I got in. My inetd.conf file 
> > > reads as such for
> > > > auth:
> > > > 
> > > > auth  stream  tcp  wait  root  /usr/local/etc/authsrv  authsrv
> > > > 
> > > > I have also tried changing it to:
> > > > 
> > > > authsrv  stream  tcp  wait  root  /usr/loca/etc/authsrv  authsrv
> > > > 
> > > > and when I did, telneting into localhost 7777 locked up the 
> > > system. When
> > > > performing a netstat -a, I do see auth 'LISTENING' along 
> > > with http, telnet,
> > > > and ftp-gw. I have rebooted several times, restarted the 
> > > inetd daemon, and
> > > > kill -HUP # (ps -A reported inetd as pid 591), etc. Is 
> my inetd.conf
> > > > statement correct (the upper statement)? Again, thanks very 
> > > much for your
> > > > help Rick.
> > > > 
> > > > > -----Original Message-----
> > > > > From: Rick Murphy [mailto:rmurphy@itm-inst.com]
> > > > > Sent: Friday, May 12, 2000 10:03 PM
> > > > > To: Nixon, Anthony
> > > > > Cc: 'fwtk-users@ex.tis.com'
> > > > > Subject: RE: authmgr?
> > > > > 
> > > > > 
> > > > > At 12:01 PM 5/12/00 -0400, Nixon, Anthony wrote:
> > > > > >I did. That section of the netperm-table file actually reads:
> > > > > 
> > > > > OK, but what about the other questions:
> > > > > 
> > > > > > > How are you running authsrv? What happens when you 'telnet
> > > > > > > localhost 7777'?
> > > > > > >          -Rick
> > > > > > >
> > > > > If your netperm-table is set up right, then you probably 
> > > don't have 
> > > > > anything listening on the authsrv port - either your 
> > > > > inetd.conf line for 
> > > > > authsrv is wrong or you haven't HUP'd inetd.
> > > > >          -Rick
> > > > > 
> > > > 
> > > 
> > 
> 

From owner-fwtk-users@ex.tis.com Tue May 16 09:23 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA14172
	Tue, 16 May 2000 09:22:50 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA05684;
	Tue, 16 May 2000 06:29:28 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 16 May 2000 05:45:37 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id FAA04316
	for fwtk-users-outgoing; Tue, 16 May 2000 05:45:26 -0700 (PDT)
Message-Id: <4.3.1.2.20000515203551.00c583f0@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 15 May 2000 20:39:48 -0400
To: "Hutchison, Chris" <chris.hutchison@brewers.com>,
        "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: audio and video streaming through HTTP-GW
In-Reply-To: <037D9C3BD3CDD311B45A009027DE2EF85472FA@DIAMOND>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 777

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 02:17 PM 5/15/00 -0400, Hutchison, Chris wrote:
>[To be removed from this list send the message "unsubscribe fwtk-users" in the
>BODY of a mail message to majordomo@ex.tis.com.]
>
>Is there a way to Stop / Monitor / Log audio & video streaming through the
>HTTP-GW?

You can block destinations, but that's about it. If the traffic you're 
trying to block uses a unique MIME type, you could easily block that - 
unfortunately, they often overload useful types for their data.

>Also, is there a way to control access to HTTP-GW using NT authentication
>instead of authsrv?

http-gw doesn't support any form of user authentication.
         -Rick

From owner-fwtk-users@ex.tis.com Tue May 16 10:19 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA14615
	Tue, 16 May 2000 10:19:43 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA07473;
	Tue, 16 May 2000 07:26:08 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 16 May 2000 06:36:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA05862
	for fwtk-users-outgoing; Tue, 16 May 2000 06:35:55 -0700 (PDT)
Message-ID: <39214D7D.5DA2FDB3@educ.emse.fr>
Date: Tue, 16 May 2000 15:30:37 +0200
From: Lionel GAULIARDON <lgauliar@educ.emse.fr>
X-Mailer: Mozilla 4.5 [en] (X11; I; SunOS 5.6 sun4m)
X-Accept-Language: en
MIME-Version: 1.0
To: "'fwtk-users''" <fwtk-users@ex.tis.com>
Subject: noproxy => http-gw
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 445

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

Is everybody uses noproxy's option for http-gw.

I saw this option in the source of httpgw (hmain.c) but it doesn't
explain in the doc and man.
I am studient and work with FWTK since 5 weeks, in object to improve
(upgrade) documentation.

Thank for your answers (and sorry for my poor English)

    Lionel



From owner-fwtk-users@ex.tis.com Wed May 17 14:06 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA25288
	Wed, 17 May 2000 14:06:05 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA16155;
	Wed, 17 May 2000 11:12:31 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 17 May 2000 09:38:26 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA14971
	for fwtk-users-outgoing; Wed, 17 May 2000 09:38:20 -0700 (PDT)
Message-ID: <CAE0A17F1713D311A44500105A16C90B652A10@bush.cambric.com>
From: Malcolm Tester <MTester@cambric.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: RE: Transparency of FWTK with MS Proxy 2.0
Date: Wed, 17 May 2000 10:47:33 -0600
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2448.0)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="windows-1252"
Content-Length: 2705

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


A little more info on the transparency patch.  After looking at the source,
it appears that the transparancy patch only works for linux or FreeBSD type
systems.  I modified lib/hnam.c to work for Solaris, though I think it would
work for all SYSV type systems. Except maybe HPUX.  Anyway, the patch works,
as I can tell by using syslog to debug the variables.  However, the code
that calls the getdsthost() actually loops if it works properly (doesn't
loop if getdsthost() returns NULL), so I think the original transparency
patch is flawed.

Does anyone know who wrote the transparancy patch?  Maybe that person could
shed a little more light on the subject.

The modifications I made follow.  After applying the trans patch from the
fwtk.org site, edit lib/hnam.c and under the #define for Free_BSD in
getdsthost(), add this code:

#if defined(SOLARIS)
        if(getsockname(fd, (struct sockaddr*)&sin, &sl) < 0)
                return NULL;
        if(ptr)
                * ptr = ntohs(sin.sin_port);
        sprintf(buf, "%s", inet_ntoa(sin.sin_addr));
        gethostname(hostbuf, 254);
        hp = gethostbyname(hostbuf);
	  syslog(LOG_ALERT, "Checking Hostname: %s\n", hostbuf); 
        while(hp->h_addr_list[i]) {
                bzero((char*)&sin, sizeof(struct sockaddr_in));
                memcpy(&sin.sin_addr, hp->h_addr_list[i++],
                        sizeof(hp->h_addr_list[i++]));
                if(!(strcmp(buf, inet_ntoa(sin.sin_addr)) == 0))
                        local_h++;
	          syslog(LOG_ALERT, "StrCmp, count: %i, buf: %s :and inet:
%s\n", local_h, buf, inet_ntoa(sin.sin_addr));
        }
        if(local_h)
                return (NULL);
        else {
                syslog(LOG_ALERT, "Transparancy succeeded for %s", buf);
                return (buf);
        }
#endif /* SOLARIS */




regards,
Malcolm

Malcolm W. Tester II
Cambric Corporation
110 West Business Park Drive
Draper, Utah 84020
http://www.cambric.com

This message is intended only for the use of the individual or entity to
whom it is addressed and may contain information that is privileged,
confidential and exempt from disclosure under applicable law.  If the reader
of this message is not the intended recipient, or the employee or agent
responsible for delivering the message to the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is strictly prohibited.  If you have received this
communication in error, please delete it from your system and notify the
sender identified above by e-mail.

From owner-fwtk-users@ex.tis.com Wed May 17 19:19 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id TAA04774
	Wed, 17 May 2000 19:19:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id QAA18764;
	Wed, 17 May 2000 16:25:11 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 17 May 2000 15:35:19 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA17963
	for fwtk-users-outgoing; Wed, 17 May 2000 15:35:13 -0700 (PDT)
Message-ID: <20000517223431.14812.qmail@web113.yahoomail.com>
Date: Wed, 17 May 2000 15:34:31 -0700 (PDT)
From: Rude Yak <rudeyak@yahoo.com>
Subject: smap.c , solaris 2.6, and timeout
To: fwtk-users@ex.tis.com
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed; boundary="0-1967513926-958602871=:12624"
Content-Length: 6084

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

--0-1967513926-958602871=:12624
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline


  It looks like setting smap's timeout in Solaris does some very interesting
things to the read() system call.  Specifically, it looks (at least to us here)
as if the alarm() call that results in SIGALRM to be sent also causes the next
call to read() to return EINTR and thus cause smap to fail when crlfgets()
calls ferror(fd).  Has anyone else run into this?  Typically, the symptom
should be seeing lots of mysterious "smap: SMTP QUIT with no message" errors in
the fwtk log for relatively large file transfers.  
  Looking through the source, Joe Yao (have to give credit where credit is due)
made some comments a while back that led me to believe that this problem has
been reviewed before but possibly not patched.  We're taking Joe's advice here
and considering implementing the timeout feature in a slightly different way -
I was wondering if anyone else has done anything similar (see attachment). 
Note that calling alarm() inside every invocation of crlfgets() has grave
performance implications: the overhead between running/resetting alarm() every
time through the loop versus once in 10 times was over 200% (26 seconds for a
1.8MB file vs. < 7 seconds on average).

  Any comments from the gallery?  

__________________________________________________
Do You Yahoo!?
Send instant messages & get email alerts with Yahoo! Messenger.
http://im.yahoo.com/
--0-1967513926-958602871=:12624
Content-Type: application/x-unknown; name=smapdiffs
Content-Transfer-Encoding: base64
Content-Description: smapdiffs
Content-Disposition: attachment; filename=smapdiffs
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--0-1967513926-958602871=:12624--

From owner-fwtk-users@ex.tis.com Wed May 17 20:25 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA04973
	Wed, 17 May 2000 20:25:33 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA20212;
	Wed, 17 May 2000 17:32:17 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 17 May 2000 16:43:51 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id QAA19054
	for fwtk-users-outgoing; Wed, 17 May 2000 16:43:40 -0700 (PDT)
Date: Wed, 17 May 2000 19:40:50 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Rude Yak <rudeyak@yahoo.com>
cc: fwtk-users@ex.tis.com
Subject: Re: smap.c , solaris 2.6, and timeout
In-Reply-To: <20000517223431.14812.qmail@web113.yahoomail.com>
Message-ID: <Pine.GSO.4.10.10005171934100.4348-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 2510

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Rude,

I also run on a Solaris sytem - and implemented timeout functions quite a
bit different than the original smap.

As I remember, stock smap timeout procesing is based around recieving a
block of data within timeout period.  It then calls the ringring routine
which either exits - or returns to the code for one last try.  I decided
that that was too complicated (feeble brain here).

I took the approach of bracketing crlfgets with....


	alarm(timeout);
	crlfgets(....);
	alarm(0);

This allows me to have reasonable timeout periods - and not timeout on
large file transfers within a mail message.

Note - with this method, the livetim logic disappears - and the ringring
routine can simply unlink the file and exit.

My mods are quite significant - so I can't easily supply the diffs (they
would probably be larger than the original smap).  I can supply my version
if you are interested in reviewing it.

ted keller


On Wed, 17 May 2000, Rude Yak wrote:

> 
>   It looks like setting smap's timeout in Solaris does some very interesting
> things to the read() system call.  Specifically, it looks (at least to us here)
> as if the alarm() call that results in SIGALRM to be sent also causes the next
> call to read() to return EINTR and thus cause smap to fail when crlfgets()
> calls ferror(fd).  Has anyone else run into this?  Typically, the symptom
> should be seeing lots of mysterious "smap: SMTP QUIT with no message" errors in
> the fwtk log for relatively large file transfers.  
>   Looking through the source, Joe Yao (have to give credit where credit is due)
> made some comments a while back that led me to believe that this problem has
> been reviewed before but possibly not patched.  We're taking Joe's advice here
> and considering implementing the timeout feature in a slightly different way -
> I was wondering if anyone else has done anything similar (see attachment). 
> Note that calling alarm() inside every invocation of crlfgets() has grave
> performance implications: the overhead between running/resetting alarm() every
> time through the loop versus once in 10 times was over 200% (26 seconds for a
> 1.8MB file vs. < 7 seconds on average).
> 
>   Any comments from the gallery?  
> 
> __________________________________________________
> Do You Yahoo!?
> Send instant messages & get email alerts with Yahoo! Messenger.
> http://im.yahoo.com/


From owner-fwtk-users@ex.tis.com Wed May 17 21:11 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id VAA05066
	Wed, 17 May 2000 21:10:49 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id SAA21683;
	Wed, 17 May 2000 18:17:34 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 17 May 2000 17:35:43 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id RAA20265
	for fwtk-users-outgoing; Wed, 17 May 2000 17:35:33 -0700 (PDT)
Message-ID: <39233A1D.CADEEA0B@citec.qld.gov.au>
Date: Thu, 18 May 2000 10:32:29 +1000
From: Ken Blinco <citeckeb@citec.qld.gov.au>
Organization: http://www.citec.com.au
X-Mailer: Mozilla 4.61 [en] (X11; I; Linux 2.2.12-20 i686)
X-Accept-Language: en
MIME-Version: 1.0
To: Rude Yak <rudeyak@yahoo.com>, fwtk-users@ex.tis.com
Subject: Re: smap.c , solaris 2.6, and timeout
References: <20000517223431.14812.qmail@web113.yahoomail.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 2254

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Rude Yak wrote:
Hi,

Yes we discovered the exact same problem with smap.  Our solution was to
just increase the timeout setting in netperm-table, but if you do get
round to rewriting this part of the code, I'd be interested in having a
look.

Ken

> 
>   It looks like setting smap's timeout in Solaris does some very interesting
> things to the read() system call.  Specifically, it looks (at least to us here)
> as if the alarm() call that results in SIGALRM to be sent also causes the next
> call to read() to return EINTR and thus cause smap to fail when crlfgets()
> calls ferror(fd).  Has anyone else run into this?  Typically, the symptom
> should be seeing lots of mysterious "smap: SMTP QUIT with no message" errors in
> the fwtk log for relatively large file transfers.
>   Looking through the source, Joe Yao (have to give credit where credit is due)
> made some comments a while back that led me to believe that this problem has
> been reviewed before but possibly not patched.  We're taking Joe's advice here
> and considering implementing the timeout feature in a slightly different way -
> I was wondering if anyone else has done anything similar (see attachment).
> Note that calling alarm() inside every invocation of crlfgets() has grave
> performance implications: the overhead between running/resetting alarm() every
> time through the loop versus once in 10 times was over 200% (26 seconds for a
> 1.8MB file vs. < 7 seconds on average).
> 
>   Any comments from the gallery?
> 
> __________________________________________________
> Do You Yahoo!?
> Send instant messages & get email alerts with Yahoo! Messenger.
> http://im.yahoo.com/
> 
>   ------------------------------------------------------------------------
>                    Name: smapdiffs
>    smapdiffs       Type: application/x-unknown
>                Encoding: base64
>             Description: smapdiffs

-- 
-----------------------------------------------------------
Ken Blinco              E-Mail: Ken.Blinco@citec.com.au
Unix Support Group      Phone: +61 7 322 76970

CITEC,  GPO Box 297     Brisbane, Queensland 4001 Australia

From owner-fwtk-users@ex.tis.com Thu May 18 14:40 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA08911
	Thu, 18 May 2000 14:40:04 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA26924;
	Thu, 18 May 2000 11:46:40 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 18 May 2000 10:22:37 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA25590
	for fwtk-users-outgoing; Thu, 18 May 2000 10:22:31 -0700 (PDT)
Message-Id: <4.3.1.1.20000518102142.00d8b100@guardian.hartwellcorp.com>
X-Sender: rowl@guardian.hartwellcorp.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Thu, 18 May 2000 10:21:54 -0700
To: fwtk-users@lists.nai.com
From: "Michael St. Laurent" <rowl@home.com>
Subject: Trouble with http-gw
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 1146

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I'm having the following problem with the stock http-gw program from 
fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using kernel 2.0.37.

If I enter the following full path URL to a file on an FTP site it 
works.  Example: 
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe

If I enter the following path to display the contents of the directory 
containing the file on the same FTP site it 
works.  Example:  ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x

If I remove the "4.x" portion of the address and try again, there is a 
delay of about thirty seconds before the browser (IE 5.01) returns the 
following error:  "An error occurred reading the contents of the 
folder.  Make sure the file name is valid and you have permission to access 
the location specified.  Details: The operation timed out"

If I use an FTP client program instead of the web browser I can access the 
directory without error.

Help!!!  ;-)

--------------------

Michael St. Laurent
Hartwell Corporation


From owner-fwtk-users@ex.tis.com Thu May 18 14:53 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA08965
	Thu, 18 May 2000 14:53:08 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA27258;
	Thu, 18 May 2000 11:59:53 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 18 May 2000 11:18:17 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id LAA26206
	for fwtk-users-outgoing; Thu, 18 May 2000 11:18:12 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4C5@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Streaming Video
Date: Thu, 18 May 2000 14:17:48 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 463

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have tried to access pages that contain video clips (I believe that are
http based like those for MS Media Player on MSNBC's site) and get
absolutely nothing. The page doesn't even load. No video, no page. These are
not Real Player videos either. I would think that http video would work
here. Any one else have this problem?

Shon

From owner-fwtk-users@ex.tis.com Thu May 18 15:49 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id PAA09327
	Thu, 18 May 2000 15:49:02 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id MAA29057;
	Thu, 18 May 2000 12:55:48 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 18 May 2000 12:08:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA27484
	for fwtk-users-outgoing; Thu, 18 May 2000 12:08:39 -0700 (PDT)
From: "Javier Romero" <jromero@firstcom.com.pe>
To: <fwtk-users@ex.tis.com>
Subject: RE: Streaming Video
Date: Thu, 18 May 2000 14:05:59 -0500
Message-ID: <EDEIKOOJCBMCFKOIONCKCEDOCAAA.jromero@firstcom.com.pe>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6700
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 979

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

TCP PORT 1755 (video streaming)

BTW, the server can use another port in UDP.

HTTP is not neccesarily the only port for MSMediaServer.

Regards,

Javier Romero

-----Original Message-----
From: owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com]On
Behalf Of Nixon, Anthony
Sent: Jueves, 18 de Mayo de 2000 01:18 p.m.
To: 'fwtk-users@ex.tis.com'
Subject: Streaming Video


[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

I have tried to access pages that contain video clips (I believe that are
http based like those for MS Media Player on MSNBC's site) and get
absolutely nothing. The page doesn't even load. No video, no page. These are
not Real Player videos either. I would think that http video would work
here. Any one else have this problem?

Shon


From owner-fwtk-users@ex.tis.com Thu May 18 17:10 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA09716
	Thu, 18 May 2000 17:10:51 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA00711;
	Thu, 18 May 2000 14:17:36 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 18 May 2000 13:29:33 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA29717
	for fwtk-users-outgoing; Thu, 18 May 2000 13:29:28 -0700 (PDT)
Message-ID: <3924527E.E7EB3E8@quanta.co.nz>
Date: Fri, 19 May 2000 08:28:46 +1200
From: Scott Newton <scott@quanta.co.nz>
Organization: Quanta Systems Ltd
X-Mailer: Mozilla 4.7 [en] (WinNT; I)
X-Accept-Language: en
MIME-Version: 1.0
To: fwtk-users@ex.tis.com
Subject: Re: Trouble with http-gw
References: <4.3.1.1.20000518102142.00d8b100@guardian.hartwellcorp.com>
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=us-ascii
Content-Length: 1606

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi

Try
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/
with the trailing slash. I've noticed that without the slash http-gw thinks it's a
regular file and so fails.

By the way, does anyone know a fix to this?

Scott

"Michael St. Laurent" wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> I'm having the following problem with the stock http-gw program from
> fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using kernel 2.0.37.
>
> If I enter the following full path URL to a file on an FTP site it
> works.  Example:
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe
>
> If I enter the following path to display the contents of the directory
> containing the file on the same FTP site it
> works.  Example:  ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x
>
> If I remove the "4.x" portion of the address and try again, there is a
> delay of about thirty seconds before the browser (IE 5.01) returns the
> following error:  "An error occurred reading the contents of the
> folder.  Make sure the file name is valid and you have permission to access
> the location specified.  Details: The operation timed out"
>
> If I use an FTP client program instead of the web browser I can access the
> directory without error.
>
> Help!!!  ;-)
>
> --------------------
>
> Michael St. Laurent
> Hartwell Corporation

--
Scott Newton
Quanta Systems Ltd



From owner-fwtk-users@ex.tis.com Fri May 19 05:17 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id FAA11911
	Fri, 19 May 2000 05:17:22 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id CAA09508;
	Fri, 19 May 2000 02:24:08 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 19 May 2000 01:28:17 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id BAA08023
	for fwtk-users-outgoing; Fri, 19 May 2000 01:28:06 -0700 (PDT)
Message-ID: <XFMail.20000519092431.gale@syntax.dera.gov.uk>
X-Mailer: XFMail 1.4.4 on Linux
X-Priority: 3 (Normal)
MIME-Version: 1.0
In-Reply-To: <4.3.1.1.20000518102142.00d8b100@guardian.hartwellcorp.com>
Date: Fri, 19 May 2000 09:24:31 +0100 (BST)
From: Tony Gale <gale@syntax.dera.gov.uk>
To: "Michael St. Laurent" <rowl@home.com>
Subject: RE: Trouble with http-gw
Cc: fwtk-users@lists.nai.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/mixed;
 boundary="_=XFMail.1.4.4.Linux:20000519092431:31262=_"
Content-Length: 4081

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This message is in MIME format
--_=XFMail.1.4.4.Linux:20000519092431:31262=_
Content-Type: text/plain; charset=iso-8859-1

Well, it works fine for me. Therefore, one of the enclosed patches
should fix it.

-tony



On 18-May-2000 Michael St. Laurent wrote:
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I'm having the following problem with the stock http-gw program
> from 
> fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using
> kernel 2.0.37.
> 
> If I enter the following full path URL to a file on an FTP site it 
> works.  Example: 
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe
> 
> If I enter the following path to display the contents of the
> directory 
> containing the file on the same FTP site it 
> works.  Example: 
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x
> 
> If I remove the "4.x" portion of the address and try again, there
> is a 
> delay of about thirty seconds before the browser (IE 5.01) returns
> the 
> following error:  "An error occurred reading the contents of the 
> folder.  Make sure the file name is valid and you have permission
> to access 
> the location specified.  Details: The operation timed out"
> 
> If I use an FTP client program instead of the web browser I can
> access the 
> directory without error.
> 
> Help!!!  ;-)
> 
> --------------------
> 
> Michael St. Laurent
> Hartwell Corporation

---
E-Mail: Tony Gale <gale@syntax.dera.gov.uk>
It is a sobering thought that when Mozart was my age, he had been
dead for two years.
		-- Tom Lehrer

The views expressed above are entirely those of the writer
and do not represent the views, policy or understanding of
any other person or official body.

--_=XFMail.1.4.4.Linux:20000519092431:31262=_
Content-Disposition: attachment; filename="fwtk-crlf.patch"
Content-Transfer-Encoding: 7bit
Content-Description: fwtk-crlf.patch
Content-Type: text/plain;
 charset=iso-8859-1; name=fwtk-crlf.patch; SizeOnDisk=670

*** hmain.c.orig	Wed Nov 11 14:22:14 1998
--- hmain.c	Sun Feb 14 13:39:23 1999
***************
*** 857,869 ****
  		if(html_read(fd,(char *)&buf[x],1) != 1)
  			goto done;
  
! 		/* get \r\n - read a char and throw it away */
! 		if(buf[x] == '\r') {
  			if(html_read(fd,(char *)&buf[x],1) != 1)
  				goto done;
- 			buf[x] = '\0';
- 			ret = x;
- 			goto done;
  		}
  
  		if(buf[x] == '\n') {
--- 857,866 ----
  		if(html_read(fd,(char *)&buf[x],1) != 1)
  			goto done;
  
!                 /* eat all \r from the stream */
!                 while(buf[x] == '\r') {
  			if(html_read(fd,(char *)&buf[x],1) != 1)
  				goto done;
  		}
  
  		if(buf[x] == '\n') {

--_=XFMail.1.4.4.Linux:20000519092431:31262=_
Content-Disposition: attachment; filename="fwtk-broken-ftp-svr.patch"
Content-Transfer-Encoding: base64
Content-Description: fwtk-broken-ftp-svr.patch
Content-Type: text/plain;
 charset=iso-8859-1; name=fwtk-broken-ftp-svr.patch; SizeOnDisk=646

KioqIGZ3dGsvaHR0cC1ndy9obWFpbi5jLmRpc3QJTW9uIEZlYiAyOCAxNDoyMzoxOCAyMDAwCi0t
LSBmd3RrL2h0dHAtZ3cvaG1haW4uYwlNb24gRmViIDI4IDE0OjI4OjI2IDIwMDAKKioqKioqKioq
KioqKioqCioqKiA5NDUsOTUzICoqKioKICBjaGFyCSpzOwogIGludAluOwogIHsKISAJaWYobmV0
X3dyaXRlKGZkLHMsbikgIT0gbikKICAJCXJldHVybigxKTsKISAJcmV0dXJuKG5ldF93cml0ZShm
ZCwiXHJcbiIsMikgIT0gMik7CiAgfQogIAogIAotLS0gOTQ1LDk2NSAtLS0tCiAgY2hhcgkqczsK
ICBpbnQJbjsKICB7CiEgCWNoYXIgKmJ1ZmY7CiEgCWludCByZXR2YWw7CiEgCiEgCS8qIFNvbWUg
RlRQIHNlcnZlcnMgZG9uJ3QgbGlrZSByZWNlaXZpbmcgY29tbWFuZHMKISAJICogc3BsaXQgb3Zl
ciBtdWx0aXBsZSBwYWNrZXRzLgohIAkgKiBUUkcgLSAyMDAwMDIyOAohIAkgKi8KISAJaWYgKCAo
YnVmZiA9IG1hbGxvYyhuKzIpKSA9PSBOVUxMKQogIAkJcmV0dXJuKDEpOwohIAltZW1jcHkoYnVm
Ziwgcywgbik7CiEgCWJ1ZmZbbl09J1xyJzsKISAJYnVmZltuKzFdPSdcbic7CiEgCXJldHZhbCA9
IG5ldF93cml0ZShmZCxidWZmLG4rMik7CiEgCWZyZWUoYnVmZik7CiEgCXJldHVybihyZXR2YWwg
IT0gbisyKTsKICB9CiAgCiAgCg==

--_=XFMail.1.4.4.Linux:20000519092431:31262=_--
End of MIME message

From owner-fwtk-users@ex.tis.com Fri May 19 11:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA13164
	Fri, 19 May 2000 11:08:29 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA16421;
	Fri, 19 May 2000 08:14:51 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 19 May 2000 07:23:42 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA15032
	for fwtk-users-outgoing; Fri, 19 May 2000 07:23:26 -0700 (PDT)
Message-ID: <91A5926EFF44D3118B1200104B7276EB0E98A5@hart-exchange.hartwellcorp.com>
From: "Michael St. Laurent" <mikes@hartwellcorp.com>
To: "'Scott Newton'" <scott@quanta.co.nz>,
        "'fwtk-users@ex.tis.com'"
	 <fwtk-users@ex.tis.com>
Subject: RE: Trouble with http-gw
Date: Thu, 18 May 2000 14:18:21 -0700
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2197

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I think you misread my message.  The URL you suggested works.  What does not
work is:
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/

Does this work with your configuration?


--------------------
Michael St. Laurent
Hartwell Corporation


-----Original Message-----
From: owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com]On
Behalf Of Scott Newton
Sent: Thursday, May 18, 2000 1:29 PM
To: fwtk-users@ex.tis.com
Subject: Re: Trouble with http-gw


[To be removed from this list send the message "unsubscribe fwtk-users" in
the
BODY of a mail message to majordomo@ex.tis.com.]

Hi

Try
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/
with the trailing slash. I've noticed that without the slash http-gw thinks
it's a
regular file and so fails.

By the way, does anyone know a fix to this?

Scott

"Michael St. Laurent" wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in
the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> I'm having the following problem with the stock http-gw program from
> fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using kernel
2.0.37.
>
> If I enter the following full path URL to a file on an FTP site it
> works.  Example:
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe
>
> If I enter the following path to display the contents of the directory
> containing the file on the same FTP site it
> works.  Example:  ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x
>
> If I remove the "4.x" portion of the address and try again, there is a
> delay of about thirty seconds before the browser (IE 5.01) returns the
> following error:  "An error occurred reading the contents of the
> folder.  Make sure the file name is valid and you have permission to
access
> the location specified.  Details: The operation timed out"
>
> If I use an FTP client program instead of the web browser I can access the
> directory without error.
>
> Help!!!  ;-)
>
> --------------------
>
> Michael St. Laurent
> Hartwell Corporation

--
Scott Newton
Quanta Systems Ltd

From owner-fwtk-users@ex.tis.com Fri May 19 18:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA14536
	Fri, 19 May 2000 18:12:43 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA04076;
	Fri, 19 May 2000 15:19:25 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Fri, 19 May 2000 14:00:51 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA01444
	for fwtk-users-outgoing; Fri, 19 May 2000 14:00:30 -0700 (PDT)
Message-ID: <XFMail.20000519155253.gale@syntax.dera.gov.uk>
X-Mailer: XFMail 1.4.4 on Linux
X-Priority: 3 (Normal)
Content-Transfer-Encoding: 8bit
MIME-Version: 1.0
In-Reply-To: <91A5926EFF44D3118B1200104B7276EB0E98A5@hart-exchange.hartwellcorp.com>
Date: Fri, 19 May 2000 15:52:53 +0100 (BST)
From: Tony Gale <gale@syntax.dera.gov.uk>
To: "Michael St. Laurent" <mikes@hartwellcorp.com>
Subject: RE: Trouble with http-gw
Cc: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>
Cc: "fwtk-users@ex.tis.com" <fwtk-users@ex.tis.com>,
        Scott Newton <scott@quanta.co.nz>
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 2827

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Yes, it does work.

-tony


On 18-May-2000 Michael St. Laurent wrote:
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> I think you misread my message.  The URL you suggested works.  What
> does not
> work is:
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/
> 
> Does this work with your configuration?
> 
> 
> --------------------
> Michael St. Laurent
> Hartwell Corporation
> 
> 
> -----Original Message-----
> From: owner-fwtk-users@ex.tis.com
> [mailto:owner-fwtk-users@ex.tis.com]On
> Behalf Of Scott Newton
> Sent: Thursday, May 18, 2000 1:29 PM
> To: fwtk-users@ex.tis.com
> Subject: Re: Trouble with http-gw
> 
> 
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in
> the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi
> 
> Try
> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/
> with the trailing slash. I've noticed that without the slash
> http-gw thinks
> it's a
> regular file and so fails.
> 
> By the way, does anyone know a fix to this?
> 
> Scott
> 
> "Michael St. Laurent" wrote:
> 
>> [To be removed from this list send the message "unsubscribe
>> fwtk-users" in
> the
>> BODY of a mail message to majordomo@ex.tis.com.]
>>
>> I'm having the following problem with the stock http-gw program
>> from
>> fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using
>> kernel
> 2.0.37.
>>
>> If I enter the following full path URL to a file on an FTP site it
>> works.  Example:
>> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe
>>
>> If I enter the following path to display the contents of the
>> directory
>> containing the file on the same FTP site it
>> works.  Example: 
>> ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x
>>
>> If I remove the "4.x" portion of the address and try again, there
>> is a
>> delay of about thirty seconds before the browser (IE 5.01) returns
>> the
>> following error:  "An error occurred reading the contents of the
>> folder.  Make sure the file name is valid and you have permission
>> to
> access
>> the location specified.  Details: The operation timed out"
>>
>> If I use an FTP client program instead of the web browser I can
>> access the
>> directory without error.
>>
>> Help!!!  ;-)
>>
>> --------------------
>>
>> Michael St. Laurent
>> Hartwell Corporation
> 
> --
> Scott Newton
> Quanta Systems Ltd

---
E-Mail: Tony Gale <gale@syntax.dera.gov.uk>
If you try to please everyone, somebody is not going to like it.

The views expressed above are entirely those of the writer
and do not represent the views, policy or understanding of
any other person or official body.

From owner-fwtk-users@ex.tis.com Mon May 22 08:50 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id IAA23260
	Mon, 22 May 2000 08:50:17 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id FAA11465;
	Mon, 22 May 2000 05:57:03 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 04:32:13 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA08273
	for fwtk-users-outgoing; Mon, 22 May 2000 04:32:07 -0700 (PDT)
Date: Mon, 22 May 2000 15:18:52 +0400 (MSD)
From: Pavel Khromov <khromov@inmech.msu.su>
Message-Id: <200005221118.PAA11797@jan.inmech.msu.su>
To: fwtk-users@ex.tis.com
Subject: ipbind + FreeBSD R4 problem
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 425

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

I've trouble to launch patched plug-gw (v2.1) on FreeBSD RELEASE4 with the following error message: ..Failed to bind port ###, Can't assign requested address

Would you please to clear the possible reason and to advice the fix. I've try to use ipbind-1.2

Thank you in advance,
P.Khromov

From owner-fwtk-users@ex.tis.com Mon May 22 09:41 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA23652
	Mon, 22 May 2000 09:40:59 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA15580;
	Mon, 22 May 2000 06:47:50 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 06:04:32 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA11823
	for fwtk-users-outgoing; Mon, 22 May 2000 06:04:27 -0700 (PDT)
From: "Wilfried Tresp" <wilfried.tresp@snafu.de>
To: "fwtk-users@tis.com" <fwtk-users@tis.com>
Date: Sat, 20 May 2000 17:08:00 +0200
Reply-To: "Wilfried Tresp" <wilfried.tresp@snafu.de>
X-Mailer: PMMail 2000 Standard (2.10.2010) For Windows NT (4.0.1381;6)
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Subject: ftp-gw proxy and local ftpd access
Message-Id: <E12tAos-0000VC-00@clever.visp-europe.psi.com>
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 826

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I'm can't figure out how to allow users from our internal network to connect via the ftp-gw proxy and also from some of our admin machines to connect to an ftp daemon to the same 
machine for transfering files from or to the ftp proxy.

The ftp-gw proxy is controlled from inetd. I found only one message from the unofficial TIS FWTK FAQ that says that you shouldn't use the modified ftpd from the toolkit instead you 
should use wu-ftp. I've installed wu-ftp but I unable to pass ftp requests from the proxy to in.ftpd on the same machine.

I'm running the proxy under Solaris 2.6.

Can you help me or can you point me to an document which shows how to do this?

regards,	Wilfried Tresp





From owner-fwtk-users@ex.tis.com Mon May 22 09:41 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA23653
	Mon, 22 May 2000 09:40:59 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA15585;
	Mon, 22 May 2000 06:47:50 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 06:00:31 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA11653
	for fwtk-users-outgoing; Mon, 22 May 2000 06:00:25 -0700 (PDT)
From: Darren Reed <darrenr@reed.wattle.id.au>
Message-Id: <200005200613.QAA11159@avalon.reed.wattle.id.au>
Subject: Extensions to smap for MIME filtering.
To: fwtk-users@tis.com
Date: Sat, 20 May 2000 16:13:42 +1000 (EST)
X-Mailer: ELM [version 2.4ME+ PL37 (25)]
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 22668

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


Hi,
    I've just spent a few hours hacking on smap to do MIME filtering.
I will `erase' certain MIME content (replace it all with X's) or change
MIME types from one to another.  There are also a bunch of extensions to
do header stripping and provide protection from bounce attacks.  This is
based on the original 2.1 - I've not really followed what others have
done to avoid relaying.

    The extensions are all accessible through the config file as follows:

smap: localnet 192.168 10
smap: erase-mime */badmime
smap: convert-mime */badbad text/plain
smap: localdomains local.com domain.com

both erase-mime and convert-mime allow for wildcards in the MIME type
(only * and ?) and are case insensitive.  Hosts connecting from networks
which match "localnet" have "Received:" headers stripped.  parameters for
"convert-mime" *MUST* be given in pairs!

    BTW, I apologise in advance if this duplicates the work of others, I've
been paying very little attention to this list, except with the 'd' key.

Darren


/*
  * Copyright (c) 1993, 1997 Trusted Information Systems, Incorporated
  * All rights reserved.
  *
  * Redistribution and use are governed by the terms detailed in the
  * license document ("LICENSE") included with the toolkit.
  */

/*
  *	Author: Marcus J. Ranum, Trusted Information Systems, Inc.
  */
static	char	RcsId[] = "$Header: /home/rmurphy/fwtk/fwtk/smap/RCS/smap.c,v 1.22 1998/01/13 22:56:06 rmurphy Exp $";


#include	<sys/types.h>
#include	<sys/file.h>
#include	<sys/stat.h>
#include	<sys/wait.h>
#include	<stdio.h>
#include	<time.h>
#include	<ctype.h>
#include	<syslog.h>
#include	<netdb.h>
#include	<strings.h>
#include	<sys/socket.h>
#include	<sys/signal.h>
#include	<netinet/in.h>
#include	<errno.h>

#include	"firewall.h"

#define	MIME_CHECK

/*
	smap - sendmail wrapper.

	the object of this program is to allow us to present an SMTP service
	for people to talk to, which is unprivileged, and runs in a chrooted
	directory. a secondary requirement is that the code be as simple as
	possible, to permit manual review. this code, therefore, contains
	no comments other than this one - comments being an indication that
	code is too complex to be trusted.

	files created in spool directory are locked and given mode 644. when
	smap is done gathering them, they are unlocked and given mode 755.
	smapd checks the mode and locking status to ensure that it's not
	dealing with a partial file. unlocked files with mode 644 are by
	definition partial.

	mjr. 1993
*/

extern	char	*strtok();

extern	char	*optarg;

struct	towho	{
	char		*who;
	struct	towho	*nxt;
};


static	struct	towho	*recip = (struct towho *)0;
static	char		*ruser = (char *)0;
static	char		*rhost = (char *)0;
static	char		rladdr[512];
static	char		riaddr[512];
static	char		*rootdir = (char *)0;
static	int		runuid = -1;
static	int		rungid = -1;
static	char		*tempfile = (char *)0;
static	int		maxbytes = -1;
static	int		maxrecip = -1;
static	int		curbytes = 0;
static	int		currecip = 0;
static	int		timeout = PROXY_TIMEOUT;
static	int		livetim = 0;
static	int		msgsize = 0;

static	FILE	*smapopen();
static	int	crlfgets();
static  void	add_file_list();
static	void	smap_exit();
static	void	waitwaitwait();

struct file_list {
	struct file_list *next;
	char *tmpfile;
} *filelist = (struct file_list *) 0;

static	void
ringring()
{
	if(livetim == 0) {
		syslog(LLEV,"Network timeout signal after %d seconds",timeout);
		if(tempfile != (char *)0)
			unlink(tempfile);
		smap_exit(1);
	}
	livetim = 0;
	alarm(timeout);
}


main(ac,av)
int	ac;
char	*av[];
{
	Cfg		*cf;
	Cfg		*cfp;
	char		buf[BUFSIZ * 4];
	char		myhostname[512];
	char		*localhost = NULL;
	char		*p;
	int		x;
	int		opt;
	FILE		*vout = (FILE *)0;
	int		gotdata = 0;
	struct hostent	*hp;
	int		islocal = 0;

#ifndef	LOG_DAEMON
	openlog("smap",LOG_PID);
#else
	openlog("smap",LOG_PID|LOG_NDELAY,LFAC);
#endif

	if (ac > 1 && !strcmp(av[1], "-daemon")) {
		int sock, sockl;
		struct sockaddr_in sa;
		int pid;
	
		sa.sin_family = AF_INET;
		bzero((char *)&sa.sin_addr, sizeof(sa.sin_addr));
		sa.sin_port = htons(25);
		sock = socket(AF_INET, SOCK_STREAM, 0);
		if (sock < 0) {
			syslog(LLEV, "fwtksyserr: Failed to create socket: %m");
			exit(1);
		}
		if (bind(sock, (struct sockaddr *)&sa, sizeof(sa))) {
			syslog(LLEV,"fwtksyserr: Failed to bind port 25: %m");
			exit(1);
		}
		if (listen(sock, 5) < 0) {
			syslog(LLEV,"fwtksyserr: Failed to listen: %m");
			exit(1);
		}
		while (1) {
			int cstat;
			signal (SIGCHLD, waitwaitwait);
			sockl = accept (sock, (struct sockaddr *)0, (int *)0);
			if (sockl < 0) {
				if (errno = EINTR)
					continue;
				syslog(LLEV,"fwtksyserr: Accept failed: %m");
				exit(1);
			}

			pid = fork();
			if (pid < 0) {
				syslog(LLEV,"fwtksyserr: Fork failed: %m");
				exit(1);
			}
			if (pid == 0)
				break;	/* We are the child */
			close(sockl);
		}
		close(0);
		close(1);
		close(2);
		dup(sockl);
		dup(sockl);
		dup(sockl);
		close(sockl);
		close(sock);
	}

	if(peername(0,rladdr,riaddr,sizeof(riaddr))) {
		syslog(LLEV,"cannot get remote host");
		exit(1);
	} else
		syslog(LLEV,"connect host=%.512s/%.20s",rladdr,riaddr);


	if(gethostname(myhostname,sizeof(myhostname)))
		strcpy(myhostname,"amnesiac");
	else if ((hp = gethostbyname(myhostname)) != 0)
		strcpy(myhostname,hp->h_name);

	if((cfp = cfg_read("smap")) == (Cfg *)-1)
		exit(1);

	if((cf = cfg_get("groupid",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: groupid must have one parameter, line %d",cf->ln);
			exit(1);
		}
		if((rungid = mapgid(cf->argv[0])) == -1) {
			syslog(LLEV,"fwtkcfgerr: cannot map %.512s to gid",cf->argv[0]);
			exit(1);
		}
	}

	if((cf = cfg_get("userid",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: userid must have one parameter, line %d",cf->ln);
			exit(1);
		}
		if((runuid = mapuid(cf->argv[0])) == -1) {
			syslog(LLEV,"fwtkcfgerr: cannot map %.512s to uid",cf->argv[0]);
			exit(1);
		}
	}


	if((cf = cfg_get("directory",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: directory must have one parameter, line %d",cf->ln);
			exit(1);
		}
		rootdir = cf->argv[0];
	}

	if((cf = cfg_get("localnet",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: localnet must have one parameter, line %d",cf->ln);
			exit(1);
		}
		islocal = !strncmp(cf->argv[0], riaddr, strlen(cf->argv[0]));
	}

	if((cf = cfg_get("maxbytes",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: maxbytes must have one parameter, line %d",cf->ln);
			exit(1);
		}
		maxbytes = atoi(cf->argv[0]);
	}


	if((cf = cfg_get("maxrecip",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: maxrecip must have one parameter, line %d",cf->ln);
			exit(1);
		}
		maxrecip = atoi(cf->argv[0]);
	}


	if((cf = cfg_get("timeout",cfp)) != (Cfg *)0) {
		if(cf->argc != 1) {
			syslog(LLEV,"fwtkcfgerr: timeout must have one parameter, line %d",cf->ln);
			exit(1);
		}
		timeout = atoi(cf->argv[0]);
	}
	if (timeout > 0) {
		signal(SIGALRM,ringring);
		alarm(timeout);
	}

	if(rootdir != (char *)0) {
		chdir("/");
		if((chdir(rootdir) || chroot(rootdir))) {
			syslog(LLEV,"fwtksyserr: cannot chroot to %.512s: %m",rootdir);
			exit(1);
		}
		chdir("/");
	}


	if(rungid != -1 && setgid(rungid)) {
		syslog(LLEV,"fwtksyserr: cannot set gid to %d: %m",rungid);
		exit(1);
	}

	if(runuid != -1 && setuid(runuid)) {
		syslog(LLEV,"fwtksyserr: cannot set uid to %d: %m",runuid);
		exit(1);
	}

	printf("220 %s SMTP/smap Ready.\r\n",myhostname);
	fflush(stdout);


#ifdef	SO_KEEPALIVE
	opt = 1;
	(void)setsockopt(fileno(stdin),SOL_SOCKET,SO_KEEPALIVE,&opt,sizeof(opt));
#endif

	while(1) {
		if(crlfgets(buf,sizeof(buf),stdin) < 0) {
			syslog(LLEV,"peer dropped connection: %m");
			break;
		}

		if((p = strtok(buf," \r\t\n")) == (char *)0) {
			printf("500 Command unrecognized\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"MAIL")) {
			char	*q;


			if((q = strtok((char *)0,"\r\n")) == (char *)0) {
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}

			if(strncasecmp(q,"From:",5)) {
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}
			/* block escape in names */
			if(strchr(q, '`')) {
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}

			q += 5;
			while(isspace(*q))
				q++;
			if(ruser != (char *)0)
				free(ruser);
			ruser = malloc(strlen(q) + 1);
			if(ruser == (char *)0) {
				printf("410 out of memory\r\n");
				fflush(stdout);
				syslog(LLEV,"fwtksyserr: out of memory: %m");
				unlink(tempfile);
				smap_exit(1);
			}
			strcpy(ruser,q);
			printf("250 %s... Sender Ok\r\n",ruser);
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"RCPT")) {
			struct	towho	*nr;
			char	*q;


			if(ruser == (char *)0) {
				printf("503 need MAIL From: first.\r\n");
				fflush(stdout);
				continue;
			}

			if((q = strtok((char *)0,"\r\n")) == (char *)0) {
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}

			if(strncasecmp(q,"To:",3)) {
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}

			q += 3;
			while(isspace(*q))
				q++;
			if(!islocal && !checkvalid(q,cfp)) {
				syslog(LLEV,"securityalert: rejecting recip %.512s",q);
				printf("501 Syntax error\r\n");
				fflush(stdout);
				continue;
			}

			if(maxrecip > 0 && currecip++ > maxrecip) {
				printf("550 too many recipients\r\n");
				fflush(stdout);
				syslog(LLEV,"exiting - too many recipients");
				unlink(tempfile);
				smap_exit(1);
			}

			nr = (struct towho *)malloc(sizeof(struct towho));
			if(nr == (struct towho *)0) {
				printf("410 out of memory\r\n");
				fflush(stdout);
				syslog(LLEV,"fwtksyserr: out of memory: %m");
				unlink(tempfile);
				smap_exit(1);
			}
			nr->who = malloc(strlen(q) + 1);
			if(nr->who == (char *)0) {
				printf("410 out of memory\r\n");
				fflush(stdout);
				syslog(LLEV,"fwtksyserr: out of memory: %m");
				unlink(tempfile);
				smap_exit(1);
			}
			strcpy(nr->who,q);
			nr->nxt = recip;
			recip = nr;
			printf("250 %s OK\r\n",q);
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"DATA")) {
			struct	towho	*tp;
			long		now;

			curbytes = 0;
			currecip = 0;
			if(recip == (struct towho *)0) {
				printf("503 need RCPT first.\r\n");
				fflush(stdout);
				continue;
			}
			if((vout = smapopen()) == (FILE *)0) {
				syslog(LLEV,"fwtksyserr: cannot open temp file %m");
				smap_exit(1);
			}

			printf("354 Enter mail, end with \".\" on a line by itself\r\n");
			fflush(stdout);

			fprintf(vout,"FROM %s\n",ruser);
			for(tp = recip; tp != (struct towho *)0; tp = tp->nxt)
				fprintf(vout,"RCPT %s\n",tp->who);
			fprintf(vout,"BODY\n");
			time(&now);
			if (!islocal)
				fprintf(vout,"Received: from %s(%s) by %s via smap (%s)\n\tid %s; %s\n",
					rladdr,riaddr,myhostname,
					FWTK_VERSION_MINOR,tempfile,
					arpadate((char *)0));

			msgsize = 0;
			gotdata = 0;
			switch(crunchbody(cfp,stdin,vout,islocal,islocal))  {
				case 1:
					printf("550 you could say goodbye\r\n");
					fflush(stdout);
					break;
				case 2:
					printf("552 Too much data\r\n");
					fflush(stdout);
					syslog(LLEV,"exiting too much data");
					unlink(tempfile);
					smap_exit(1);
				case 3:
					printf("450 System problem\r\n");
					fflush(stdout);
					continue;
				default:
					gotdata++;
					/* .... fall through... */
			}

			for(tp = recip; tp != (struct towho *)0; tp = tp->nxt)
				syslog(LLEV,"host=%.512s/%.20s bytes=%d from=%.100s to=%.100s",rladdr,riaddr,msgsize,ruser,tp->who);
			if(recip != (struct towho *)0) {
				currecip = 0;
				/* should really free them */
				recip = (struct towho *)0;
			}
			if(!gotdata) {
				unlink(tempfile);
				syslog(LLEV,"SMTP QUIT with no message %.512s/%.20s",rladdr,riaddr);
				smap_exit(1);
			}
			add_file_list(tempfile);
			chmod(tempfile,0700);
			printf("250 Mail accepted\r\n");
			fflush(stdout);
			syslog(LLEV,"exiting host=%.512s/%.20s bytes=%d",rladdr,riaddr,msgsize);
			vout = (FILE *)0;
			tempfile = (char *)0;
			continue;
		}


		if(!strcasecmp(p,"VRFY") || !strcasecmp(p,"EXPN")) {
			char	*q;

			if((q = strtok((char *)0," \t\r\n")) == (char *)0)
				printf("550 User Unknown\r\n");
			else
				printf("250 <%s>\r\n",q);
			syslog(LLEV,"%.100s %.100s (%.512s/%.20s)",p,q?q:"",rladdr,riaddr);
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"HELP")) {
			printf("214-Commands\r\n");
			printf("214-HELO    MAIL    RCPT    DATA    RSET\r\n");
			printf("214 NOOP    QUIT    HELP    VRFY    EXPN\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"NOOP")) {
			printf("220 OK\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"QUIT")) {
			printf("221 Closing connection\r\n");
			fflush(stdout);
			break;
		}


		if(!strcasecmp(p,"RSET")) {
			recip = (struct towho *)0;
			ruser = (char *)0;
			if(vout != (FILE *)0) {
				unlink(tempfile);
				fclose(vout);
				if((vout = smapopen()) == (FILE *)0) {
					syslog(LLEV,"fwtksyserr: cannot open temp file %m");
					smap_exit(1);
				}
			}
			printf("250 Reset state\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"HELO")) {
			char	*q;

			if((q = strtok((char *)0,"\r\n")) == (char *)0) {
				printf("250 Charmed, I'm sure.\r\n");
				rhost = "??";
			} else {
				printf("250 (%s) pleased to meet you.\r\n",q);
				rhost = malloc(strlen(q) + 1);
				strcpy(rhost,q);
			}
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"VERB")) {
			printf("200 Verbose mode\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"ONEX")) {
			printf("200 Only one transaction\r\n");
			fflush(stdout);
			continue;
		}


		if(!strcasecmp(p,"DEBUG")) {
			printf("200 Debug set -NOT!\r\n");
			fflush(stdout);
			continue;
		}

		printf("500 Command unrecognized\r\n");
		fflush(stdout);
	}
	smap_exit(0);
}



static	FILE	*
smapopen()
{
	FILE	*ret;
	int	fd;
	char	xuf[512];

	strcpy(xuf,"xmaXXXXXX");
	/* system V locking will have problems if mkstemp does
	not open for random access as well as write */
	if((fd = mkstemp(xuf)) < 0)
		return((FILE *)0);
	chmod(xuf,0600);
	if((ret = fdopen(fd,"w")) == (FILE *)0)
		return((FILE *)0);
	lock_fd(fd);
	if((tempfile = malloc(strlen(xuf) + 1)) == (char *)0) {
		syslog(LLEV,"fwtksyserr: out of memory: %m");
		unlink(xuf);
		smap_exit(1);
	}
	strcpy(tempfile,xuf);
	return(ret);
}



crunchbody(cfp,in,out,local,strip)
Cfg	*cfp;
FILE	*in;
FILE	*out;
int	local;
int	strip;
{
	char	buffer[BUFSIZ], *buf = NULL;
	int	x;
	int	len;
	int	drop = 0;
	int	inhdr = 1;
	int	skip;
	int	domime = 0;

	while(1) {
		x = crlfgets(buffer, sizeof(buffer), in);
		if (x < 0)
			return(1);
		if (x == 1)
			break;
		if (drop)
			continue;
		buf = buffer;
		len = strlen(buf);
		if (!inhdr) {
#ifdef	MIME_CHECK
			if (domime && (checkmime(cfp, &buf, len) == -1))
				drop = 1;
#endif
		} else if (inhdr) {
#ifdef	MIME_CHECK
			domime = mimehdr(buf, len);
#endif
			if (len == 0)
				inhdr = 0;

			if (strip) {
				if (local) {
					if (skip && (*buf == '\t'))
						continue;
					skip = !strncmp("Received:", buf, 9);
					if (skip)
						continue;
				}
			}
		}
		if (maxbytes > 0) {
			if ((curbytes += len) > maxbytes) {
				syslog(LLEV,"message larger than limit of %d bytes - discarding", maxbytes);
				drop = 1;
			}
		}
		if(buf[0] == '.' && buf[1] == '.')
			x = fprintf(out,"%s\n",&buf[1]);
		else
			x = fprintf(out,"%s\n",buf);

		if (buf != buffer)
			free(buf);

		if (x == -1 || ferror(out)) {
			fclose(out);
			syslog(LLEV,"fwtksyserr: cannot fprintf: %m");
			return(3);
		}
	}
	if (fflush(out) || ferror(out)) {
		syslog(LLEV,"fwtksyserr: cannot fprintf: %m");
		return(3);
	}
	msgsize = filesize(fileno(out));
	lockun_fd(fileno(out));
	if (fclose(out)) {
		syslog(LLEV,"fwtksyserr: cannot fclose: %m");
		return (1);
	}
	if (drop)
		return (2);
	return(0);
}



static int	
crlfgets(buf,siz,fp)
char	*buf;
int	siz;
FILE	*fp;
{
	int	x;
	char	*s = buf;
	int	endline = 0;

	if(ferror(fp) || feof(fp))
		return(-1);

	while(--siz) {
		if((x = fgetc(fp)) == EOF) {
			if(s == buf)
				return(-1);
			break;
		}
		if(x == '\n') {
			/* back up over carriage returns */
			if(s > buf && *(s - 1) == '\r') {
				s--;
				if (buf[0] == '.' && s == buf+1)
					endline = 1;
			}
			break;
		}
		*s++ = x;
	}
	*s = '\0';
	livetim = 1;
	/* SunOS sendmail violates end-of-message spec and sends ".\0".
	* You can be correct or you can work ;-)
	*/
	if ((buf[0] == '.') && !endline) {
		if ((buf[1] == '\n') || (buf[1] == '\0')) {
			syslog(LLEV, "Caught pathological End of Message? buf[1] is %d", (int) buf[1]);
			endline = 1;
		}
	}
	return (endline);
}


filesize(fd)
int	fd;
{
	struct	stat	sbuf;

	if(fstat(fd,&sbuf))
		return(-1);
	return(sbuf.st_size);
}


usage()
{
	printf("usage:\n");
	return(1);
}


static void
add_file_list (tmpf)
char *tmpf;
{
	struct file_list *fl = (struct file_list *) malloc(sizeof(struct file_list));
	char *p = (char *)malloc(strlen(tmpf) + 1);

	if (p == (char *)0 || fl == (struct file_list *)0)
		smap_exit(1);

	strcpy(p, tmpf);
	fl->next = filelist;
	fl->tmpfile = p;
	filelist = fl;

	/* use link to make it visible to smapd keeping original as well */
	p[0] = 's';
	if (link(tmpf, p) && (errno != EEXIST)) {
		syslog(LLEV, "link from %.100s to %.100s failed, %m", tmpf, p);
		p[0] = 'x';
		smap_exit(1);
	}
	p[0] = 'x';
}

static void
smap_exit (code)
int code;
{
	struct file_list *fl;

	while (filelist != (struct file_list *)0) {
		fl = filelist->next;
		unlink(filelist->tmpfile);

		free(filelist->tmpfile);
		filelist = fl;
	}
	exit(code);
}

static void
waitwaitwait()
{
	int cstat;

#ifdef SYSV
	while (waitpid(-1, &cstat, WNOHANG) > 0)
#else
	while (wait3(&cstat, WNOHANG, (struct rusage *)0) > 0)
#endif
		;
}

/* kludge for whitehouse.gov anti-spoofing bogosity */

#ifndef SYSV
extern	char	*index();
extern	char	*rindex();
#endif
extern	char	*strpbrk();

char	*bad = "550 Recipient must be in form of: user, user@eop.gov, or user@whitehouse.gov\r\n";

checkvalid(r,cfp)
char	*r;
Cfg	*cfp;
{
	Cfg	*cf;
	char	*atp;
	char	*jxp;
	char	*chop;
	char	*chsavp;
	int	x;

	if((chop = malloc((x = strlen(r)) + 1)) == (char *)0) {
		unlink(tempfile);
		syslog(LLEV,"fwtksyserr: of memory: %m");
		exit(1);
	}
	chsavp = chop;
	strcpy(chop,r);

	if(r[0] == '<') {
		if(chop[x - 1] == '>')
			chop[x - 1] = '\0';
		chop++;
	}

	if((atp = rindex(chop,'@')) != (char *)0) {
		atp++;

		if((cf = cfg_get("localdomains",cfp)) != (Cfg *)0) {
			int i;

			for (i = 0; i < cf->argc; i++)
				if (!strcasecmp(atp, cf->argv[i]))
					break;
			if (i == cf->argc)
				goto bomb;
		}

		/* now make sure there are no other routing chars */
		atp--;
		*atp = '\0';
		if((jxp = strpbrk(chop,"%@:[]!")) != (char *)0) {
			goto bomb;
		}
	}
	if((jxp = strpbrk(chop,"%@:[]!")) != (char *)0)
		goto bomb;

	free(chsavp);
	return(1);
bomb:
	printf(bad);
	free(chsavp);
	return(0);
}


#ifdef	MIME_CHECK
#define	CONTENT_TYPE_LEN	30

static char *boundary = NULL;
static int boundary_len = 0;
static int erase_mime = 0;
static int mime_next = 0;


static int parse_boundary(buf, len)
char *buf;
int len;
{
	char *s, *t;

	for (s = buf; (len > 0) && (isspace(*s)); s++)
		;
	if (len < 12)
		return 1;

	if (strncasecmp(s, "boundary", 8))
		return 1;

	s += 8;
	if (*s == '=')
		s++, len--;
	else
		return 1;

	if (*s == '"')
		s++, len--;
	else
		return 1;

	t = strchr(s, '"');
	if (t == NULL)
		return 1;

	boundary_len = t - s;
	boundary = malloc(boundary_len + 2);
	if (boundary != NULL) {
		strncpy(boundary, s, boundary_len);
		boundary[boundary_len + 1] = '\0';
	}
	return 0;
}


int matches(mask, name)
u_char *mask, *name;
{
	u_char m;
	u_char c;

	for (;; mask++, name++) {
		m = islower(*mask) ? *mask : tolower(*mask);
		c = islower(*mask) ? *mask : tolower(*name);
		if (c == '\0')
			break;
		if (m != '?' && m != c || c == '*')
			break;
	}
	if (m == '*') {
		for ( ; *mask == '*'; mask++);
			if (*mask == '\0')
				return(0);
		for (; *name && matches(mask, name); name++);
			return(*name ? 0 : 1);
	} else
		return ((m == '\0' && c == '\0') ? 0 : 1);
}



int mimehdr(buf, len)
char *buf;
int len;
{
	static int boundary_next = 0;
	char *s, *t;

	if (boundary)
		return 1;

	if (boundary_next) {
		(void) parse_boundary(buf, len);
		boundary_next = 0;
		if (boundary)
			return 1;
		return 0;
	}

	if (len < CONTENT_TYPE_LEN)
		return 0;

	if (strncasecmp(buf, "Content-type: multipart/mixed;",
			CONTENT_TYPE_LEN))
		return 0;
	buf += CONTENT_TYPE_LEN;
	len -= CONTENT_TYPE_LEN;
	boundary_next = parse_boundary(buf, len);
	if (boundary)
		return 1;
	return 0;
}


int checkmime(cfp, bufp, len)
char **bufp;
int len;
{
	char c, *s, *t, *buf, *v;
	int i, j;
	Cfg *cf;

	buf = *bufp;

	if (!mime_next) {
		if (len >= (boundary_len + 2) && !strncmp(buf, "--", 2) &&
		    !strncmp(buf + 2, boundary, boundary_len)) {
			mime_next = 1;
			erase_mime = 0;
			return 0;
		}
	}

	if (erase_mime && !mime_next) {
		if (erase_mime == 1) {
			if (!len)
				erase_mime = 2;
		} else if (erase_mime == 2) {
			for (s = buf, i = len; i; s++, i--)
				*s = 'X';
		}
		return 0;
	}

	if (len < 18) {
		mime_next = 0;
		return 0;
	}
	if (!mime_next)
		return 0;

	if (strncasecmp("Content-Type:", buf, 13)) {
		mime_next = 0;
		return 0;
	}

	s = buf + 13;
	i = len - 13;
	while (isspace(*s) && (i > 0)) {
		s++;
		i--;
	}

	if (i > 4) {
		for (t = s; (i > 0) && !isspace(*t); t++, i--)
			;
		if (i > 0) {
			c = *t;
			*t = '\0';
		} else
			c = '\0';

		if((cf = cfg_get("erase-mime", cfp)) != (Cfg *)0) {
			if (cf->argc < 1) {
				syslog(LLEV,"fwtkcfgerr: erase-mime must have at least one parameter, line %d",cf->ln);
				exit(1);
			}

			for (j = 0; j < cf->argc; j++)
				if (!matches(cf->argv[j], s)) {
					syslog(LLEV, "erasing MIME type %s", s);
					erase_mime = 1;
					break;
				}
		}

		if((cf = cfg_get("convert-mime", cfp)) != (Cfg *)0) {
			if (cf->argc & 1) {
				syslog(LLEV,"fwtkcfgerr: convert-mime must have parameters in pairs, line %d",cf->ln);
				exit(1);
			}

			for (j = 0; (j + 1) < cf->argc; j += 2)
				if (!matches(cf->argv[j], s)) {
					syslog(LLEV, "MIME type %s -> %s",
					       s, cf->argv[j + 1]);
					v = malloc(strlen(cf->argv[j + 1]) +
						   len + 1);
					if (!v)	/* FORCE DROP */
						return -1;
					strncpy(v, buf, s - buf);
					strcat(v, cf->argv[j + 1]);
					if (c)
						*t = c;
					strcat(v, t);
					if (c)
						*t = '\0';
					buf = *bufp = v;
					break;
				}
		}

		if (i > 0)
			*t = c;
	}
	return 0;
}
#endif


From owner-fwtk-users@ex.tis.com Mon May 22 09:48 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA23699
	Mon, 22 May 2000 09:47:54 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA16432;
	Mon, 22 May 2000 06:54:45 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 06:11:33 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA12484
	for fwtk-users-outgoing; Mon, 22 May 2000 06:11:26 -0700 (PDT)
Message-ID: <00f901bfc3e3$a7a898e0$c801a8c0@computerage.ru>
From: "Boris Doktorov" <drboris@computerage.ru>
To: <fwtk-users@ex.tis.com>
Date: Mon, 22 May 2000 15:48:23 +0400
MIME-Version: 1.0
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_00F3_01BFC405.2973D1C0"
Content-Length: 802

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This is a multi-part message in MIME format.

------=_NextPart_000_00F3_01BFC405.2973D1C0
Content-Type: text/plain;
	charset="koi8-r"
Content-Transfer-Encoding: quoted-printable

i get this message=20

smap[6160]: getpeername failed: Socket operation on non-socket
smap[6160]: cannot get remote host

------=_NextPart_000_00F3_01BFC405.2973D1C0
Content-Type: text/html;
	charset="koi8-r"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
i get this message 
  
smap[6160]: getpeername failed: Socket = operation on=20 non-socket
smap[6160]: cannot get remote = host

------=_NextPart_000_00F3_01BFC405.2973D1C0--



From owner-fwtk-users@ex.tis.com Mon May 22 10:11 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA23891
	Mon, 22 May 2000 10:11:46 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA19396;
	Mon, 22 May 2000 07:18:35 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 06:33:51 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA14068
	for fwtk-users-outgoing; Mon, 22 May 2000 06:33:45 -0700 (PDT)
Message-ID: <00ef01bfc3f1$e3b52f20$c801a8c0@computerage.ru>
From: "Boris Doktorov" <drboris@computerage.ru>
To: <fwtk-users@lists.nai.com>
Date: Mon, 22 May 2000 17:30:23 +0400
MIME-Version: 1.0
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 5.00.2615.200
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_00EC_01BFC413.69126860"
Content-Length: 1204

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

This is a multi-part message in MIME format.

------=_NextPart_000_00EC_01BFC413.69126860
Content-Type: text/plain;
	charset="koi8-r"
Content-Transfer-Encoding: quoted-printable

i get this message=20
=20
smap[6160]: getpeername failed: Socket operation on non-socket
smap[6160]: cannot get remote host

------=_NextPart_000_00EC_01BFC413.69126860
Content-Type: text/html;
	charset="koi8-r"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META content=3D"text/html; charset=3Dkoi8-r" http-equiv=3DContent-Type>
<META content=3D"MSHTML 5.00.2614.3500" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>
<DIV><FONT face=3DArial size=3D2>i get this message </FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>smap[6160]: getpeername failed: Socket =
operation on=20
non-socket<BR>smap[6160]: cannot get remote=20
host</FONT></DIV></FONT></DIV></BODY></HTML>

------=_NextPart_000_00EC_01BFC413.69126860--


From owner-fwtk-users@ex.tis.com Mon May 22 10:25 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA23952
	Mon, 22 May 2000 10:25:23 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA20741;
	Mon, 22 May 2000 07:32:13 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 06:50:42 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA15881
	for fwtk-users-outgoing; Mon, 22 May 2000 06:50:31 -0700 (PDT)
Date: Mon, 22 May 2000 09:48:28 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Boris Doktorov <drboris@computerage.ru>
cc: fwtk-users@ex.tis.com
Subject: Re: your mail
In-Reply-To: <00f901bfc3e3$a7a898e0$c801a8c0@computerage.ru>
Message-ID: <Pine.GSO.4.10.10005220948030.16439-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 399

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Boris,

Are you running smap from inetd? or did you try to run it interactively?

ted keller


On Mon, 22 May 2000, Boris Doktorov wrote:

> i get this message 
> 
> smap[6160]: getpeername failed: Socket operation on non-socket
> smap[6160]: cannot get remote host
> 


From owner-fwtk-users@ex.tis.com Mon May 22 11:26 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA24245
	Mon, 22 May 2000 11:26:57 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id IAA25399;
	Mon, 22 May 2000 08:33:22 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 07:46:02 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id HAA21703
	for fwtk-users-outgoing; Mon, 22 May 2000 07:45:56 -0700 (PDT)
Message-Id: <v02120d04b54f7bd127bb@[134.60.9.100]>
Mime-Version: 1.0
Date: Mon, 22 May 2000 16:12:38 -0800
To: fwtk-users@lists.nai.com
From: heim@sip.medizin.uni-ulm.de (Stefan Heim, Dipl.-Ing.)
Subject: http-gw problem ?
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"
Content-Length: 1198

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hello,

we have sometimes the problem that the system reboots
automaticaly with the messages in /var/adm/messages:

May 18 08:21:04 sipsy vmunix: BAD TRAP
May 18 08:21:04 sipsy vmunix: pid 22308, `http-gw': Data fault
May 18 08:21:04 sipsy vmunix: kernel read fault at addr=0x20, pme=0x0
May 18 08:21:04 sipsy vmunix: Sync Error Reg 80<INVALID>
May 18 08:21:04 sipsy vmunix: pc=0xf801ed98, sp=0xf830cd98, psr=0x119000c5,
context=0x6
May 18 08:21:04 sipsy vmunix: g1-g7: f801ed8c, 8000000, ffffff00, 0,
f830d000, 0, 0
May 18 08:21:04 sipsy vmunix: Begin traceback... sp = f830cd98
May 18 08:21:04 sipsy vmunix: Called from f80619cc, fp=f830cdf8, args=0 ff65
etc.
------
That is FWTK 2.0 under SunOS 4.1.2

Thanks!

/--------------------------------o00-----00o-------------------------\
Stefan Heim

Uni Ulm
Sektion Informatik in der Psychotherapie
Am Hochstraess 8
89081 Ulm
Germany
E-Mail: heim@sip.Medizin.Uni-Ulm.de
http://sip.medizin.uni-ulm.de
Tel: +49-(0)731-50-25702 Fax: +49-(0)731-50-25662
\-------------------------------ooo0-----0ooOo---------------------/



From owner-fwtk-users@ex.tis.com Mon May 22 11:56 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id LAA24372
	Mon, 22 May 2000 11:56:07 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA27606;
	Mon, 22 May 2000 09:02:42 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 08:19:16 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA24540
	for fwtk-users-outgoing; Mon, 22 May 2000 08:19:10 -0700 (PDT)
Date: Mon, 22 May 2000 18:20:46 +0300 (EEST)
From: Brinzoi Constantin Aurelian <aurel@mail.irecson.ro>
To: fwtk-users@tis.com
Subject: http-gw problem
Message-ID: <Pine.LNX.4.10.10005221805370.6742-100000@duda.irecson.ro>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 720

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I have an httpd server (Apache 1.3.9) running on port 80. On the same
machine I have http-gw proxy (fwtk ver. 2.1) running on port 8080 that
allow users from inside our private network to connect to the Internet.
The probem is: when I try to connect to a site (with Netscape Navigator
4.x or MIE 5.x) that have php3 scripts (or cgi scripts), after
i filled up the necessary fields and clicked on submit button, I receive
an error: Connection reset by peer.
The probem is extremly serious because I can go further anymore on that
site.


TIA, 

Constantin Brinzoi
Dept. Sondaje
IRECSON


From owner-fwtk-users@ex.tis.com Mon May 22 12:27 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id MAA24462
	Mon, 22 May 2000 12:27:42 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id JAA00159;
	Mon, 22 May 2000 09:33:55 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 08:47:19 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA26337
	for fwtk-users-outgoing; Mon, 22 May 2000 08:47:08 -0700 (PDT)
Message-ID: <XFMail.20000522164300.gale@syntax.dera.gov.uk>
X-Mailer: XFMail 1.4.4 on Linux
X-Priority: 3 (Normal)
Content-Transfer-Encoding: 8bit
MIME-Version: 1.0
In-Reply-To: <Pine.LNX.4.10.10005221805370.6742-100000@duda.irecson.ro>
Date: Mon, 22 May 2000 16:43:00 +0100 (BST)
From: Tony Gale <gale@syntax.dera.gov.uk>
To: Brinzoi Constantin Aurelian <aurel@mail.irecson.ro>
Subject: RE: http-gw problem
Cc: fwtk-users@tis.com
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=iso-8859-1
Content-Length: 1095

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]


See the patch in the FAQ on www.fwtk.org

-tony


On 22-May-2000 Brinzoi Constantin Aurelian wrote:
> 
> I have an httpd server (Apache 1.3.9) running on port 80. On the
> same
> machine I have http-gw proxy (fwtk ver. 2.1) running on port 8080
> that
> allow users from inside our private network to connect to the
> Internet.
> The probem is: when I try to connect to a site (with Netscape
> Navigator
> 4.x or MIE 5.x) that have php3 scripts (or cgi scripts), after
> i filled up the necessary fields and clicked on submit button, I
> receive
> an error: Connection reset by peer.
> The probem is extremly serious because I can go further anymore on
> that
> site.
> 

---
E-Mail: Tony Gale <gale@syntax.dera.gov.uk>
Retirement means that when someone says "Have a nice day", you
actually have a shot at it.

The views expressed above are entirely those of the writer
and do not represent the views, policy or understanding of
any other person or official body.

From owner-fwtk-users@ex.tis.com Mon May 22 13:37 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA24919
	Mon, 22 May 2000 13:37:34 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA04896;
	Mon, 22 May 2000 10:42:06 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 09:51:57 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id JAA01590
	for fwtk-users-outgoing; Mon, 22 May 2000 09:51:41 -0700 (PDT)
From: =?iso-8859-1?Q?Roland_Kr=FCppel?= <Roland.Krueppel@gmx.net>
To: "Wilfried Tresp" <wilfried.tresp@snafu.de>, <fwtk-users@tis.com>
Subject: RE: ftp-gw proxy and local ftpd access
Date: Mon, 22 May 2000 18:48:50 +0200
Message-ID: <NDBBJPEHGGOHMJDGIAHKEEAMCCAA.Roland.Krueppel@gmx.net>
MIME-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
In-reply-to: <E12tAos-0000VC-00@clever.visp-europe.psi.com>
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Importance: Normal
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2008

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

I don't know if this is the best (and safest) way but it seems to work ;)

In netperm-table:

# Connects from the localhost go to the wu.ftp Daemon
permit-hosts 127.0.0.1 -exec /usr/sbin/wu.ftpd
# Connects from my subnet go through the ftp-gw
netacl-wu.ftpd: permit-hosts 192.168.2.* -exec /usr/local/etc/ftp-gw
ftp-gw: permit-hosts 192.168.2.*

In inetd.conf:
# ftp Connects go through netacl
ftp	stream	tcp	nowait	root   /usr/local/etc/netacl  wu.ftpd -a

to connect to the ftp-server on this server:
open 192.168.2.1 (e.g.)
user roland@localhost

to connect to an outside ftp-server:
open 192.168.2.1
user anonymous@ftp.kernel.org

On many FTP-Clients you can specify a firewall...

regards
Roland Krüppel
Jr. System Administrator
Quirinus-Gymnasium Neuss

> -----Original Message-----
> From: owner-fwtk-users@ex.tis.com [mailto:owner-fwtk-users@ex.tis.com]On
> Behalf Of Wilfried Tresp
> Sent: Saturday, May 20, 2000 5:08 PM
> To: fwtk-users@tis.com
> Subject: ftp-gw proxy and local ftpd access
>
>
> [To be removed from this list send the message "unsubscribe
> fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
>
> Hi,
>
> I'm can't figure out how to allow users from our internal network
> to connect via the ftp-gw proxy and also from some of our admin
> machines to connect to an ftp daemon to the same
> machine for transfering files from or to the ftp proxy.
>
> The ftp-gw proxy is controlled from inetd. I found only one
> message from the unofficial TIS FWTK FAQ that says that you
> shouldn't use the modified ftpd from the toolkit instead you
> should use wu-ftp. I've installed wu-ftp but I unable to pass ftp
> requests from the proxy to in.ftpd on the same machine.
>
> I'm running the proxy under Solaris 2.6.
>
> Can you help me or can you point me to an document which shows
> how to do this?
>
> regards,	Wilfried Tresp
>
>
>
>


From owner-fwtk-users@ex.tis.com Mon May 22 17:32 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id RAA26100
	Mon, 22 May 2000 17:31:57 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id OAA14634;
	Mon, 22 May 2000 14:38:48 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 13:39:37 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA10443
	for fwtk-users-outgoing; Mon, 22 May 2000 13:39:31 -0700 (PDT)
Message-ID: <91A5926EFF44D3118B1200104B7276EB0E98AD@hart-exchange.hartwellcorp.com>
From: "Michael St. Laurent" <mikes@hartwellcorp.com>
To: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
Subject: Trouble with http-gw & IE-5.01
Date: Mon, 22 May 2000 12:34:40 -0700
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1244

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I'm having the following problem with the stock http-gw program from
fwtk-2.1 running in daemon mode on a Debian GNU-Linux box using kernel
2.0.37.  I've already installed all the patches to http-gw from the FAQ so
unfortunately the fix is not that simple.

Using IE-5.01 if I enter the following full path URL to a file on an FTP
site it works.  Example: 
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe

Again, using IE-5.01 if I enter the following path to display the contents
of the directory containing the file on the same FTP site it works.
Example: 
ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x

If I remove the "4.x" portion of the address and try again with IE-5.01,
there is a delay of about thirty seconds before the following error is
returned:  "An error occurred reading the contents of the folder.  Make sure
the file name is valid and you have permission to access the location
specified.  Details: The operation timed out"

If I use an FTP client program or Netscape Navigator 3.04 instead of IE-5.01
I can access the directory without error.

Anyone got any ideas?  ;-)


From owner-fwtk-users@ex.tis.com Mon May 22 18:23 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA26169
	Mon, 22 May 2000 18:23:37 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA17862;
	Mon, 22 May 2000 15:16:36 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 14:26:49 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA13601
	for fwtk-users-outgoing; Mon, 22 May 2000 14:26:43 -0700 (PDT)
Message-ID: <91A5926EFF44D3118B1200104B7276EB0E98AE@hart-exchange.hartwellcorp.com>
From: "Michael St. Laurent" <mikes@hartwellcorp.com>
To: "'fwtk-users@lists.nai.com'" <fwtk-users@lists.nai.com>
Subject: FW: Trouble with http-gw & IE-5.01
Date: Mon, 22 May 2000 14:03:06 -0700
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2078

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

After some additional testing I've actually narrowed it down to being an
Internet Explorer issue.  To correct it in IE-5.01 for Windows 98 I went to
Tools -> Internet Options -> Advanced and unchecked the "Enable folder view
for FTP sites" selection.  For IE-5.01 for NT we went to the same place but
the same option did not exist.  Instead we enabled the "Use web based ftp"
selection.  In both cases it was necessary to exit and restart Internet
Explorer to activate the change.  YMMV.


--------------------
Michael St. Laurent
Hartwell Corporation


 > -----Original Message-----
 > From: Michael St. Laurent 
 > Sent: Monday, May 22, 2000 12:35 PM
 > To: 'fwtk-users@lists.nai.com'
 > Subject: Trouble with http-gw & IE-5.01
 > 
 > 
 > I'm having the following problem with the stock http-gw 
 > program from fwtk-2.1 running in daemon mode on a Debian 
 > GNU-Linux box using kernel 2.0.37.  I've already installed 
 > all the patches to http-gw from the FAQ so unfortunately the 
 > fix is not that simple.
 > 
 > Using IE-5.01 if I enter the following full path URL to a 
 > file on an FTP site it works.  Example: 
 > ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x/ar405eng.exe
 > 
 > Again, using IE-5.01 if I enter the following path to display 
 > the contents of the directory containing the file on the same 
 > FTP site it works.  Example: 
 > ftp://ftp.adobe.com/pub/adobe/acrobatreader/win/4.x
 > 
 > If I remove the "4.x" portion of the address and try again 
 > with IE-5.01, there is a delay of about thirty seconds before 
 > the following error is returned:  "An error occurred reading 
 > the contents of the folder.  Make sure the file name is valid 
 > and you have permission to access the location specified.  
 > Details: The operation timed out"
 > 
 > If I use an FTP client program or Netscape Navigator 3.04 
 > instead of IE-5.01 I can access the directory without error.
 > 
 > Anyone got any ideas?  ;-)
 > 


From owner-fwtk-users@ex.tis.com Mon May 22 20:28 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA26494
	Mon, 22 May 2000 20:27:45 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA24889;
	Mon, 22 May 2000 17:34:01 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 15:31:04 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA18676
	for fwtk-users-outgoing; Mon, 22 May 2000 15:30:53 -0700 (PDT)
Message-Id: <4.3.1.2.20000522182827.00c4e970@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 22 May 2000 18:28:49 -0400
To: "Boris Doktorov" <drboris@computerage.ru>, <fwtk-users@ex.tis.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: 
In-Reply-To: <00f901bfc3e3$a7a898e0$c801a8c0@computerage.ru>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 392

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 03:48 PM 5/22/00 +0400, Boris Doktorov wrote:
>i get this message smap[6160]: getpeername failed: Socket peration on 
>non-socket smap[6160]: cannot get remote ost
Running smap from the command line will cause this. Run it with 'smap -daemon'.
         -Rick


From owner-fwtk-users@ex.tis.com Mon May 22 20:28 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id UAA26493
	Mon, 22 May 2000 20:27:46 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id RAA24893;
	Mon, 22 May 2000 17:34:01 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Mon, 22 May 2000 15:31:16 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA18705
	for fwtk-users-outgoing; Mon, 22 May 2000 15:31:06 -0700 (PDT)
Message-Id: <4.3.1.2.20000522182903.00c4b660@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.1
Date: Mon, 22 May 2000 18:29:42 -0400
To: heim@sip.medizin.uni-ulm.de (Stefan Heim, Dipl.-Ing.),
        fwtk-users@lists.nai.com
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: http-gw problem ?
In-Reply-To: <v02120d04b54f7bd127bb@[134.60.9.100]>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 433

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 04:12 PM 5/22/00 -0800, Stefan Heim, Dipl.-Ing. wrote:
>we have sometimes the problem that the system reboots
>automaticaly with the messages in /var/adm/messages:
>....
>That is FWTK 2.0 under SunOS 4.1.2
That's a well-known SunOS bug with a patch available. I think it's in the FAQ.
         -Rick


From owner-fwtk-users@ex.tis.com Tue May 23 09:55 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA29015
	Tue, 23 May 2000 09:55:00 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA04740;
	Tue, 23 May 2000 07:00:51 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 23 May 2000 04:59:54 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA03458
	for fwtk-users-outgoing; Tue, 23 May 2000 04:59:44 -0700 (PDT)
From: "Angelo De Cicco" <angelo@dspace.com.au>
To: <fwtk-users@ex.tis.com>
Subject: re: ftp
Date: Tue, 23 May 2000 11:33:03 +0930
Message-ID: <NEBBLJOMMLPNGOMIGKHACEMDCBAA.angelo@dspace.com.au>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Importance: Normal
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 281

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I am trying to ftp into my site and get the following error:

501 Use user@site to connect via proxy
Login failed.

Can anyone help
I am using FWTK2.0


From owner-fwtk-users@ex.tis.com Wed May 24 18:45 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA06711
	Wed, 24 May 2000 18:45:36 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA19939;
	Wed, 24 May 2000 15:51:11 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 24 May 2000 13:13:49 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA18687
	for fwtk-users-outgoing; Wed, 24 May 2000 13:13:38 -0700 (PDT)
From: Eberhard Mattes <mattes@azu.informatik.uni-stuttgart.de>
Date: Wed, 24 May 2000 22:13:11 +0200 (MET DST)
Message-Id: <200005242013.WAA00664@azu.informatik.uni-stuttgart.de>
To: fwtk-users@ex.tis.com
Subject: New squid-gw (etc.)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 1367

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

New versions of my proxies for the FWTK are available:

  http://www.fwtk.org/fwtk/patches/em-gw.tar.gz
  http://www.fwtk.org/fwtk/patches/em-gw.asc

Here are the changes:

* nntp-gw 0.4

  - Support multiple external news servers and news server authentication
    (contributed by Giles Heron)

* pop-gw 0.6

  - Support "*" and "?" in POP user-id patterns

  - Add "pass-limit" and "user-limit"

* squid-gw 1.2

  - SECURITY: A malicious HTTP server could evade auto-html-limit by
    sending the beginning of the body in separate packets

  - Cope with CRLF of the status line being sent in a separate packet

  - Add -pf option (PID file)

  - Cope with missing white space after the status code

  - Don't reject Content-Type: (null)

  - Allow (and remove) exact duplicates for certain HTTP response header
    fields

* squid-gw 1.3

  - This version fixes a bug of version 1.2 in emi_fill() which caused
    content (HTTP body) corruption

Moreover, there's a new (experimental) program, netpermd, which allows
authorized operators to modify netperm-table without requiring a shell
account.  At this stage of development, "connect" rules can be added
for squid-gw.

-- 
  Eberhard Mattes <mattes@azu.informatik.uni-stuttgart.de>


From owner-fwtk-users@ex.tis.com Thu May 25 04:32 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id EAA08345
	Thu, 25 May 2000 04:32:46 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id BAA23063;
	Thu, 25 May 2000 01:38:45 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 24 May 2000 23:52:00 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id XAA22127
	for fwtk-users-outgoing; Wed, 24 May 2000 23:51:49 -0700 (PDT)
From: "Tom Krotchko" <tomk@toad.net>
To: <fwtk-users@ex.tis.com>
Subject: Jason Rhoads NoSpam! patch
Date: Thu, 25 May 2000 02:50:46 -0400
Message-ID: <NDBBLGNJKLEFAOCFENPNIECECCAA.tomk@toad.net>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0)
Importance: Normal
In-Reply-To: <200005242013.WAA00664@azu.informatik.uni-stuttgart.de>
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6600
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 519

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Is Jason Rhoads smap patch still availabile?  The FAQ lists the
address as http://www.sabernet.net/support/tools/ , but attempts
to access the web server fail (although I can traceroute).

Is he still offering/support his patch?  Is there a mirror site
for it?  I used it sometime ago with an older version of FWTK,
but I no longer have his source or diffs.

Any help would be appreciated.

From owner-fwtk-users@ex.tis.com Thu May 25 13:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA13952
	Thu, 25 May 2000 13:12:41 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA27265;
	Thu, 25 May 2000 10:18:39 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 25 May 2000 08:30:54 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA25108
	for fwtk-users-outgoing; Thu, 25 May 2000 08:30:43 -0700 (PDT)
Reply-To: <apm@creare.com>
From: "Alan  Mangan" <apm@creare.com>
To: <fwtk-users@tis.com>
Subject: tn-gw option (binary) negotiation
Date: Thu, 25 May 2000 11:24:44 -0400
Message-ID: <002001bfc65d$5a9b7960$af5b50c0@apm.creare.com>
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook 8.5, Build 4.71.2173.0
Importance: Normal
X-MimeOLE: Produced By Microsoft MimeOLE V4.72.3110.3
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 1206

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

hi,
I have some questions regarding option negotiating with the telnet proxy.

I'm running tn-gw version 2.1 under redhat 6.1 on a Pentium-II processor.

I'm trying to connect to the proxy and pass binary data through it to the
connection on the other side. I've tried to set the proxy to allow binary
data (IAC DO BINARY) but I receive no response that it actually will do
binary or not. The FAQ (http://www.fwtk.org/fwtk/faq/faq.html#2.9.1, 2.9.1:
Why does tn-gw either display double characters, no characters, or echo the
passwords?) says:

"...when your client connects to the proxy, it sends options negotiation
commands to the proxy. We remember these and try to reset things to their
prior state just before connecting to the real server."

Is the proxy actually operating in binary mode? The lack of response (i.e.
IAC WILL BINARY or IAC WONT BINARY) is worrisome.
Does this mean that after I have presumably set the proxy to accept binary
data, once it connects through to the ultimate destination I will again have
to renegotiate this option?

thanks,
Alan Mangan



From owner-fwtk-users@ex.tis.com Thu May 25 13:12 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA13964
	Thu, 25 May 2000 13:12:48 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA27261;
	Thu, 25 May 2000 10:18:38 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 25 May 2000 08:29:04 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA25077
	for fwtk-users-outgoing; Thu, 25 May 2000 08:28:43 -0700 (PDT)
Date: Thu, 25 May 2000 10:14:21 -0500 (CDT)
From: "Frank Marchan" <Michael.Marchan@usa.alcatel.com>
X-Sender: mmarchan@miler
To: Tom Krotchko <tomk@toad.net>
cc: fwtk-users@ex.tis.com
Subject: Re: Jason Rhoads NoSpam! patch
In-Reply-To: <NDBBLGNJKLEFAOCFENPNIECECCAA.tomk@toad.net>
Message-ID: <Pine.SOL.3.96.1000525101058.25419K-100000@miler>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 899

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Looks like www.sabernet.net/support/tools/ is a redirect to
www.sabernet.net/software.  Direct URL for NoSpam is
http://www.sabernet.net/software/nospam.html.

Frank

On Thu, 25 May 2000, Tom Krotchko wrote:

 > [To be removed from this list send the message "unsubscribe fwtk-users" in the
 > BODY of a mail message to majordomo@ex.tis.com.]
 > 
 > Is Jason Rhoads smap patch still availabile?  The FAQ lists the
 > address as http://www.sabernet.net/support/tools/ , but attempts
 > to access the web server fail (although I can traceroute).
 > 
 > Is he still offering/support his patch?  Is there a mirror site
 > for it?  I used it sometime ago with an older version of FWTK,
 > but I no longer have his source or diffs.
 > 
 > Any help would be appreciated.
 > 



From owner-fwtk-users@ex.tis.com Thu May 25 13:13 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id NAA13979
	Thu, 25 May 2000 13:13:04 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id KAA27257;
	Thu, 25 May 2000 10:18:09 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Thu, 25 May 2000 08:39:11 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id IAA25275
	for fwtk-users-outgoing; Thu, 25 May 2000 08:39:00 -0700 (PDT)
Message-ID: <C901B1D9820CD411A11E0060B03CEAB605C4D7@email.domain.com>
From: "Nixon, Anthony" <snixon@mei-charlotte.com>
To: "'fwtk-users@ex.tis.com'" <fwtk-users@ex.tis.com>
Subject: Patches?
Date: Thu, 25 May 2000 11:38:16 -0400
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Length: 2001

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I have downloaded several patches that contain certain functions that I am
looking for but there are several problems right off the bat. Could someone
please answer these questions who has experience with these matters? I have
a working firewall with fwtk 2.1 and RH 6.2. The FAQ fails to answer the
questions I have below. The questions are:

1. The gopu.tar.gz patches have the "plug-to" capability I want (possibly),
but the files are from fwtk 2.0. Should I use, what do I loose, and are
there updated patches available that allow this to both proxies?

2. The Transparency Patch (which also have needed values) html site lists
the following:

"The code makes use of the "Transparent Proxy" and port redirection code now
found in the Linux Kernel and IP Firewalling package. See the kernel and
ipfwadm man pages for details on configuring these."

Since I am using the newer kernel with ipchains, what will installing this
patch do and will it still work? The web page also says:

"The code also works with Darren Reed's IP Filter package for [Free|
Net|44]BSD (a *very* nice package, IMO). See the man pages for IP Filter's
NAT software for details on configuring redirection."

Does "also works with" interpret to must have installed? Will this code work
with Linux if needed? This is confusing. So the question here is what
exactly is required for installation of the transparency patch and will it
work with RH 6.1/2 Linux?

3. If I install the ftp-plug.pch, will that interfere with the transparency
patch or is it even needed if the transparency patch is installed?

4. I only really want transparency with http, ftp, and possibly
pop/imap/smtp for internet access to internal web, ftp, and email servers.
What would the best solution be for this? http/ftp plug-to capability or
proxy transparency?

Any and all help will be greatly appreciated.

Regards - Shon

From owner-fwtk-users@ex.tis.com Tue May 30 09:00 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id JAA22252
	Tue, 30 May 2000 09:00:39 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id GAA29472;
	Tue, 30 May 2000 06:07:36 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 30 May 2000 04:42:44 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id EAA28119
	for fwtk-users-outgoing; Tue, 30 May 2000 04:42:38 -0700 (PDT)
Message-ID: <A30AA7228345D311A8FF009027935C8001AF5B@dominika.fnplzen.cz>
From: Mikes Roman <MIKES@fnplzen.cz>
To: fwtk-users@tis.com
Subject: SSL tunneling
Date: Tue, 30 May 2000 13:46:57 +0200
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2650.21)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain
Content-Length: 659

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,
i have just a problem. I need to connect external users to internal S-HTTP
server. Could you recommend me any solution. Now i use plug-gw whithout
option -ssl:

running daemon: plug-gw -daemon https
netperm-table: plug-gw: 	port https -plug-to w.x.y.z

with option -ssl it doesn't work:  plug-gw:	port https -plug-to w.x.y.z
-ssl

1. What is proper configuration of plug-gw or http-gw for tunneling https ?
2. Does any special ssl gateway like fwtk extension exist ?
3. Whitch solution of 1. and 2. is better ?


Thanks Roman

From owner-fwtk-users@ex.tis.com Tue May 30 16:50 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA24489
	Tue, 30 May 2000 16:50:18 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA04635;
	Tue, 30 May 2000 13:56:59 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 30 May 2000 13:05:38 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id NAA03742
	for fwtk-users-outgoing; Tue, 30 May 2000 13:05:33 -0700 (PDT)
From: "Ken Long" <ken@lectrosonics.com>
Organization: Lectrosonics, Inc.
To: TIS Mailing List <fwtk-users@ex.tis.com>
Date: Tue, 30 May 2000 14:04:21 -0600
MIME-Version: 1.0
Content-transfer-encoding: 7BIT
Subject: smap and mail from:<>
CC: DAVIDT@lectrosonics.com
Message-ID: <3933CA60.12584.194C66C@localhost>
In-reply-to: <55B025.B66AF8CA@eic.at>
X-mailer: Pegasus Mail for Win32 (v3.12c)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 934

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Hi,

We're using sendmail behind smap on Linux.  I have the line 

  smap:           validate_sender 1

in my netperm-table.  Evidently this is causing smap to deny certain inter-
system status messages that are required by RFC, specifically, the 

  mail from:<> 

command which is used for certain bounce messages and return receipts.

Is there any good reason to have this config line active? Should I turn it 
off in order to be compliant?  What problems could I see if it were turned 
off?

Has anyone else received any complaints from mail administrators concerning 
this?  I received a rather nasty note from the admin at <hidden>.org.  After 
several emails back and forth he went off in a huff and blocked our domain!  
<grin>  Just can't take the pressure I guess.

Thanks in advance,
Ken Long


From owner-fwtk-users@ex.tis.com Tue May 30 18:38 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA24870
	Tue, 30 May 2000 18:38:38 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA07014;
	Tue, 30 May 2000 15:45:13 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 30 May 2000 14:58:21 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id OAA05562
	for fwtk-users-outgoing; Tue, 30 May 2000 14:58:15 -0700 (PDT)
From: Eberhard Mattes <mattes@azu.informatik.uni-stuttgart.de>
Date: Tue, 30 May 2000 23:57:54 +0200 (MET DST)
Message-Id: <200005302157.XAA26657@azu.informatik.uni-stuttgart.de>
To: fwtk-users@ex.tis.com
Subject: New em-gw.tar.gz (security fix for squid-gw and a new proxy)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text
Content-Length: 772

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

New versions of my proxies for the FWTK are available:

  http://www.fwtk.org/fwtk/patches/em-gw.tar.gz
  http://www.fwtk.org/fwtk/patches/em-gw.asc

Here are the changes:

* squid-gw 1.4

  - SECURITY: block javascript inside comments: "<!--&{code};-->"

  - Optionally bind to specific IP address with -fastdaemon

  - "-name" is now required in front of <KEY> on the command line

  - Send "Connection: close" for HTTP/1.1 requests

Moreover, there's a new proxy, http-in, for inbound HTTP.  It forwards
HTTP request from the Internet to an HTTP server on your internal net.

-- 
  Eberhard Mattes <mattes@azu.informatik.uni-stuttgart.de>


From owner-fwtk-users@ex.tis.com Tue May 30 18:38 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id SAA24873
	Tue, 30 May 2000 18:38:44 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id PAA07018;
	Tue, 30 May 2000 15:45:13 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 30 May 2000 15:01:32 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id PAA05620
	for fwtk-users-outgoing; Tue, 30 May 2000 15:01:22 -0700 (PDT)
Date: Tue, 30 May 2000 18:00:36 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Ken Long <ken@lectrosonics.com>
cc: TIS Mailing List <fwtk-users@ex.tis.com>, DAVIDT@lectrosonics.com
Subject: Re: smap and mail from:<>
In-Reply-To: <3933CA60.12584.194C66C@localhost>
Message-ID: <Pine.GSO.4.10.10005301755490.11652-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1873

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Ken,

One method people use to spam your site is to really lie about who they
are and use the mailer-daemon from address - hoping to bypass any spam
filtering you may have in place.  There are a number of sites on the
Internet which do NOT accept the mailer-daemon replies <> - and yes -
technically they are non-compliant.

Personnally, I always reply my mailerdaemons with a postmaster@ type of
mail address - and do accept the <> addresses in return.  I try to capture
the spammers through other means (spam lists and spam filters) that I've
included in the smap code.

Since this has been in place for a while at your site, I would probably
opt to keep it there and stand the heat for a while....

ted keller


On Tue, 30 May 2000, Ken Long wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Hi,
> 
> We're using sendmail behind smap on Linux.  I have the line 
> 
>   smap:           validate_sender 1
> 
> in my netperm-table.  Evidently this is causing smap to deny certain inter-
> system status messages that are required by RFC, specifically, the 
> 
>   mail from:<> 
> 
> command which is used for certain bounce messages and return receipts.
> 
> Is there any good reason to have this config line active? Should I turn it 
> off in order to be compliant?  What problems could I see if it were turned 
> off?
> 
> Has anyone else received any complaints from mail administrators concerning 
> this?  I received a rather nasty note from the admin at <hidden>.org.  After 
> several emails back and forth he went off in a huff and blocked our domain!  
> <grin>  Just can't take the pressure I guess.
> 
> Thanks in advance,
> Ken Long
> 


From owner-fwtk-users@ex.tis.com Tue May 30 22:05 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id WAA25418
	Tue, 30 May 2000 22:05:27 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id TAA09520;
	Tue, 30 May 2000 19:12:31 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Tue, 30 May 2000 18:21:49 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id SAA08770
	for fwtk-users-outgoing; Tue, 30 May 2000 18:21:33 -0700 (PDT)
Message-Id: <4.2.2.20000530203320.00c6b690@mail.itm-inst.com>
X-Sender: rmurphy@mail.itm-inst.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2 
Date: Tue, 30 May 2000 21:16:49 -0400
To: Ted Keller <keller@bfg.com>, Ken Long <ken@lectrosonics.com>
From: Rick Murphy <rmurphy@itm-inst.com>
Subject: Re: smap and mail from:<>
Cc: TIS Mailing List <fwtk-users@ex.tis.com>, DAVIDT@lectrosonics.com
In-Reply-To: <Pine.GSO.4.10.10005301755490.11652-100000@ns1.bfg.com>
References: <3933CA60.12584.194C66C@localhost>
Mime-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset="us-ascii"; format=flowed
Content-Length: 860

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

At 06:00 PM 5/30/00 -0400, Ted Keller wrote:
>One method people use to spam your site is to really lie about who they
>are and use the mailer-daemon from address - hoping to bypass any spam
>filtering you may have in place.  There are a number of sites on the
>Internet which do NOT accept the mailer-daemon replies <> - and yes -
>technically they are non-compliant.

The *correct* solution is to allow "MAIL FROM:<>" messages to deliver to 
your domain only, not to relay anywhere else. Anyone that blocks from "<>" 
doesn't care about their users getting bounce messages, and is foisting 
them upon the postmaster of the domain generating the error message. 
They're broken.
Just my (strongly-held) :-) opinion.
         -Rick


From owner-fwtk-users@ex.tis.com Wed May 31 10:33 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id KAA28497
	Wed, 31 May 2000 10:33:45 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id HAA12925;
	Wed, 31 May 2000 07:40:05 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 31 May 2000 06:20:24 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id GAA12077
	for fwtk-users-outgoing; Wed, 31 May 2000 06:20:18 -0700 (PDT)
From: "Ken Long" <ken@lectrosonics.com>
Organization: Lectrosonics, Inc.
To: TIS Mailing List <fwtk-users@ex.tis.com>, DAVIDT@lectrosonics.com
Date: Wed, 31 May 2000 07:19:40 -0600
MIME-Version: 1.0
Content-transfer-encoding: 7BIT
Subject: Re: smap and mail from:<>
Message-ID: <3934BD0A.27638.27DF7B@localhost>
In-reply-to: <4.2.2.20000530203320.00c6b690@mail.itm-inst.com>
References: <Pine.GSO.4.10.10005301755490.11652-100000@ns1.bfg.com>
X-mailer: Pegasus Mail for Win32 (v3.12c)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 1233

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Ok, this makes sense.  Now, do you have any suggestions for allowing "mail 
from:<>" yet still keeping the spam protection that blocking non-verifyable 
from addresses provides?  Remember, our site is using sendmail behind smap.

I'm not ready to turn off validate_sender just to allow the mailer-daemon 
address in.  I suggested to the BOFH that complained to me that he should 
insert a verifyable from address then we would be happy to accept his mail.

BTW, section 5.3.3 of RFC 1123 spells out the requirements of using mail 
from:<> but it doesn't actually specify that I have to accept mail from this 
address.  A nit perhaps, but it does leave me an out.

Thanks,
Ken Long

On 30 May 2000, at 21:16, Rick Murphy wrote:

> The *correct* solution is to allow "MAIL FROM:<>" messages to deliver to 
> your domain only, not to relay anywhere else. Anyone that blocks from "<>" 
> doesn't care about their users getting bounce messages, and is foisting 
> them upon the postmaster of the domain generating the error message. 
> They're broken.
> Just my (strongly-held) :-) opinion.
>          -Rick


From owner-fwtk-users@ex.tis.com Wed May 31 14:08 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id OAA29318
	Wed, 31 May 2000 14:08:54 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id LAA15410;
	Wed, 31 May 2000 11:15:32 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 31 May 2000 10:25:01 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id KAA14392
	for fwtk-users-outgoing; Wed, 31 May 2000 10:24:49 -0700 (PDT)
Date: Wed, 31 May 2000 13:23:31 -0400 (EDT)
From: Ted Keller <keller@bfg.com>
To: Ken Long <ken@lectrosonics.com>
cc: TIS Mailing List <fwtk-users@ex.tis.com>, DAVIDT@lectrosonics.com
Subject: Re: smap and mail from:<>
In-Reply-To: <3934BD0A.27638.27DF7B@localhost>
Message-ID: <Pine.GSO.4.10.10005311323050.3068-100000@ns1.bfg.com>
MIME-Version: 1.0
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: TEXT/PLAIN; charset=US-ASCII
Content-Length: 1568

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

Ken,

This is where you may have to do content scanning - deleting messages that
look like spam.

ted keller


On Wed, 31 May 2000, Ken Long wrote:

> [To be removed from this list send the message "unsubscribe fwtk-users" in the
> BODY of a mail message to majordomo@ex.tis.com.]
> 
> Ok, this makes sense.  Now, do you have any suggestions for allowing "mail 
> from:<>" yet still keeping the spam protection that blocking non-verifyable 
> from addresses provides?  Remember, our site is using sendmail behind smap.
> 
> I'm not ready to turn off validate_sender just to allow the mailer-daemon 
> address in.  I suggested to the BOFH that complained to me that he should 
> insert a verifyable from address then we would be happy to accept his mail.
> 
> BTW, section 5.3.3 of RFC 1123 spells out the requirements of using mail 
> from:<> but it doesn't actually specify that I have to accept mail from this 
> address.  A nit perhaps, but it does leave me an out.
> 
> Thanks,
> Ken Long
> 
> On 30 May 2000, at 21:16, Rick Murphy wrote:
> 
> > The *correct* solution is to allow "MAIL FROM:<>" messages to deliver to 
> > your domain only, not to relay anywhere else. Anyone that blocks from "<>" 
> > doesn't care about their users getting bounce messages, and is foisting 
> > them upon the postmaster of the domain generating the error message. 
> > They're broken.
> > Just my (strongly-held) :-) opinion.
> >          -Rick
> 


From owner-fwtk-users@ex.tis.com Wed May 31 16:14 EDT 2000
Received: from relay2.nai.com (relay2.nai.com [161.69.3.67])
	by lists.tislabs.com (8.9.1/8.9.1) with ESMTP id QAA29677
	Wed, 31 May 2000 16:14:30 -0400 (EDT)
Received: from localhost (daemon@localhost)
	by relay2.nai.com (8.9.3/8.9.3) with SMTP id NAA17269;
	Wed, 31 May 2000 13:21:06 -0700 (PDT)
Received: by ex.tis.com (bulk_mailer v1.11); Wed, 31 May 2000 12:32:23 -0700
Received: (from majordomo@localhost)
	by relay2.nai.com (8.9.3/8.9.3) id MAA16484
	for fwtk-users-outgoing; Wed, 31 May 2000 12:32:17 -0700 (PDT)
From: "Ken Long" <ken@lectrosonics.com>
Organization: Lectrosonics, Inc.
To: TIS Mailing List <fwtk-users@ex.tis.com>
Date: Wed, 31 May 2000 13:31:53 -0600
MIME-Version: 1.0
Content-transfer-encoding: 7BIT
Subject: Re: smap and mail from:<>
Message-ID: <39351443.15149.13BBA94@localhost>
References: <3934BD0A.27638.27DF7B@localhost>
In-reply-to: <Pine.GSO.4.10.10005311323050.3068-100000@ns1.bfg.com>
X-mailer: Pegasus Mail for Win32 (v3.12c)
Sender: owner-fwtk-users@lists.tislabs.com
Content-Type: text/plain; charset=US-ASCII
Content-Length: 965

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]

I did some source diving in smap.c (I'm not a C programmer) and found the 
section that returns the error message "bad from address" when the from 
address is null.  It would appear that this check is being done regardless of 
the validate_sender state (which is the very next section.)

(Line 536)
/* messages not originating locally must have a full sender */
   if (!from_host_local && !at)
                {
                printf("550 Bad From address\r\n");
                syslog(LLEV, "bad from address, %s, from %s/%s",
                       whofrom, hostnm, hostip);
                recip_clear();
                return 1;
                }

I'm about ready to ask our resident C guru to do some hacking on smap.c.  Has 
anyone done this particular mod before?  Would you care to share your 
experiences?

Thanks,
Ken Long


