Re: bad packets crash firewall.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Peter Marshall wrote:
I am not sure if this is related to bad packets, a bad pptp patch, poor kernal .. I am at a loss.

And we, the list, probably more so. :)

I haev a firewall iptables on FC3. It was reciently pached to include support for pptp. When one of the users (who has a linux desktop) tries using pptp, the firewall crashes .. (the entire box panics). Any ideas how one user could bring the firewall down .. I need to fix this somehow

Is the firewall machine the one running pptpd? If so then your assumption that it was "bad packets" hitting netfilter would appear premature. Check your logs, do debugging of the more likely suspect, pptpd.

.  THis problem does not appear when windows users attempt to use pptp.

And do yourself another favour ... dump PPTP. It's lousy and inherently not secure. OpenVPN ( http://openvpn.net/ ) beats it in every way. The only limitation is that it won't work with old DOS-based Windows versions, but then, it's rather reckless to support those in a business setting anyway IMO.
--
    mail to this address is discarded unless "/dev/rob0"
    or "not-spam" is in Subject: header


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux