Re: Unable to stop tunnel from being "connection-tracked"

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, 2003-10-03 at 21:43, Ramin Dousti wrote:
> On Thu, Oct 02, 2003 at 09:35:18PM +0200, Wouter Vanwalleghem wrote:
> 
> > What I mean is, that if I let the connection disappear from the
> > connection tracking table, immediately afterwards, I no longer get any
> > replies on my ping6's to the tunnelbroker PoP IPv6 address. A tcpdump on
> > my external interface (ppp0) only shows my echo-requests and no packets
> > whatsoever coming from the tunnelbroker PoP. I would at least expect to
> > see some or other packet, e.g. an icmp error message, coming from the
> > tunnelbroker PoP.
> 
> As Harald mentioned earlier, you tcpdump should see everything. If it
> doesn't it might mean that the response is not being sent back or is not
> being delivered correctly, or, the requests didn't make it to the
> other end of the tunnel. Is there any possibility for you to validate
> the receipt of the ping packets at the other end?
> 
> Ramin

I had been suspecting that the problem is not so much with my firewall
(rules) but something fishy happening on the tunnelbroker machine. The
things you and Harald have been telling me seem to confirm my
suspicions.

I am currently in contact with the tunnelbroker maintainer and checking
wether my pings reach the end of the tunnel is one of the things on the
check-list. I will get back to you with the result.

Thanks for your trouble so far.
And that goes for Harald too, of course.

Wouter



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux