Re: firewall question

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




> What does "top" or "w" on the rh 9 box say?
top: not show much of anything dun think, but sent as attachment

w:
USER     TTY      FROM              LOGIN@   IDLE   JCPU   PCPU  WHAT
root     tty1     -                Sat10pm  4days  3.70s  0.02s  /bin/sh
/usr/X1root     pts/0    :0.0             Tue 9pm 59.00s  3.81s  3.62s
/usr/bin/ssh mgroot     pts/1    :0.0             11:44am  0.00s  0.12s
0.02s  w


> How about the tail of /var/log/messages, any
> interesting info?

tail var/log/messages:
Jun  8 04:02:31 localhost syslogd 1.4.1: restart.
Jun  9 04:02:37 localhost kernel: (scsi0:A:1:0): Locking max tag count at
40
Jun  9 16:15:03 localhost kernel: eth0: link up, 100Mbps, full-duplex, lpa
0x45E1
Jun  9 17:25:23 localhost kernel: eth0: Bus master arbitration failure,
status ffff.
Jun  9 17:25:23 localhost last message repeated 2 times
Jun 12 11:45:01 localhost kernel: ip_tables: (C) 2000-2002 Netfilter core
team
Jun 12 11:45:01 localhost iptables:  succeeded


> Can the other unix server resolve the ip address
> of the rh9 server forwards and backwards? Can
> the rh9 server resolve tge ip address of the other
> unix server forwards and backwards?

yes
it knows the dsl connection and router address, if that is what you mean
(from pinging my home ip address during an ssh session with the unix
server)

>
> Does /etc/nsswitch.conf contain directives for
> a nonexistent nisplus service?

dunno.  can't tell from looking at it as I am looking for specifics and it
seems pretty generally made of rules to follow.  What rule to look for
that would accommodate to that? 

nsswitch.conf sent as attachment...

both nsswitch.conf and top are also available on
ftp.evl.uic.edu/pub/INcoming/mgolterRH/ if you prefer/need ftp over
attachments

(top -> top6-12)

thanks,

mgolter


On Thu, 12 Jun 2003, joe wrote:

> Melissa Golter wrote:
> 
> > hmmm, if anyone can suggest anything:
> >
> > re: rh9., dsl + firewall and delays in connections to a unix server while
> > using (default RH9.0) ssh
> >
> > I have tried to turn *off* the firewall setup during installation
> > (original choices were: Medium security while allowing ftp, ssh, but not
> > telnet) -- neither lokkit nor setup seems to change (the respective
> > settings) no matter what option I choose.
> > Right now when using ssh something causes stalls...it can be minutes
> > before a keystroke will register.
> >
> > I don't know if it is the ssh progam that is default with RH9.0...no one
> > else logging in the unix system I am logging into has reported such
> > problems. (note: I have multiple win boxes on same router which 
> > experience
> > no such delays while connected contemporaneously to same unix server)
> >
> There are a few possibilities, either basic name
> resolution issues, or wrinkles in the default rh9
> environment -
> 
> What does "top" or "w" on the rh 9 box say?
see attachments for top
w:
w:
USER     TTY      FROM              LOGIN@   IDLE   JCPU   PCPU  WHAT
root     tty1     -                Sat10pm  4days  3.70s  0.02s  /bin/sh
/usr/X1root     pts/0    :0.0             Tue 9pm 59.00s  3.81s  3.62s
/usr/bin/ssh mgroot     pts/1    :0.0             11:44am  0.00s  0.12s
0.02s  w

> 
> How about the tail of /var/log/messages, any
> interesting info?

tail var/log/messages:
Jun  8 04:02:31 localhost syslogd 1.4.1: restart.
Jun  9 04:02:37 localhost kernel: (scsi0:A:1:0): Locking max tag count at
40
Jun  9 16:15:03 localhost kernel: eth0: link up, 100Mbps, full-duplex, lpa
0x45E1
Jun  9 17:25:23 localhost kernel: eth0: Bus master arbitration failure,
status ffff.
Jun  9 17:25:23 localhost last message repeated 2 times
Jun 12 11:45:01 localhost kernel: ip_tables: (C) 2000-2002 Netfilter core
team
Jun 12 11:45:01 localhost iptables:  succeeded


> 
> Can the other unix server resolve the ip address
> of the rh9 server forwards and backwards? Can
> the rh9 server resolve tge ip address of the other
> unix server forwards and backwards?

yes
it knows the dsl connection and router address, if that is what you mean
(from pinging my home ip address during an ssh session with the unix
server)

> 
> Does /etc/nsswitch.conf contain directives for
> a nonexistent nisplus service?
dunno.  can't tell from looking at it as I am looking for specifics and it
seems pretty generally made of rules to follow.  What rule to look for
that would accommodate to that? 

nsswitch.conf sent as attachment...

both nsswitch.conf and top are also available on
ftp.evl.uic.edu/pub/INcoming/mgolterRH/ if you prefer/need ftp over
attachments

(top -> top6-12)

thanks,

mgolter


> >
> > ? anyone have any suggestions?  I don't really know the ins and outs of
> > iptables (networking) and the like, but can extemporize...
> >
> > Thanks in advance
> >
> > mgolter
> >
> > PS I am gonna go on-line and look, but if anyone has a
> > suggestion/recommendaton re: a good ssh program that allows 
> > backspacing (I
> > am a horrible typist and am tired of re-typing a line 3,000 times when
> > ftping over ssh!), a name would be appreciated! ;P
> >
> hmm, backspacing works fine here, as does all the
> usual command-line editing, with the ssh that ships
> with red hat  - sounds like a terminal settings issue.
> 
> Joe
> 
> 
> -- 
> Shrike-list mailing list
> Shrike-list@xxxxxxxxxx
> https://www.redhat.com/mailman/listinfo/shrike-list
> 

 14:30:09  up 4 days, 17:15,  4 users,  load average: 0.13, 0.07, 0.01
68 processes: 67 sleeping, 1 running, 0 zombie, 0 stopped
CPU0 states:  19.0% user   1.0% system    0.0% nice   0.0% iowait  78.0% idle
CPU1 states:   2.0% user   0.1% system    0.0% nice   0.0% iowait  96.0% idle
Mem:   513204k av,  480604k used,   32600k free,       0k shrd,   96484k buff
                    306580k actv,     368k in_d,    4208k in_c
Swap: 1044216k av,    3904k used, 1040312k free                  182480k cached
                                                                                
  PID USER     PRI  NI  SIZE  RSS SHARE STAT %CPU %MEM   TIME CPU COMMAND
 2010 root      15   0  5824 5824  1120 S    16.3  1.1 169:40   0 rhn-applet-gu
 1948 root      14  -1  277M  20M  1108 S <   3.8  4.1 118:40   1 X
19135 root      20   0  1112 1112   848 R     2.8  0.2   0:00   0 top
17888 root      15   0 11308  11M  7116 S     1.9  2.2   4:43   0 gnome-termina
    1 root      15   0   112   88    56 S     0.0  0.0   0:09   1 init
    2 root      RT   0     0    0     0 SW    0.0  0.0   0:00   0 migration/0
    3 root      RT   0     0    0     0 SW    0.0  0.0   0:00   1 migration/1
    4 root      15   0     0    0     0 SW    0.0  0.0   0:01   0 keventd
    5 root      35  19     0    0     0 SWN   0.0  0.0   0:06   0 ksoftirqd_CPU
    6 root      34  19     0    0     0 SWN   0.0  0.0   0:07   1 ksoftirqd_CPU
   11 root      25   0     0    0     0 SW    0.0  0.0   0:00   0 bdflush
    7 root      15   0     0    0     0 SW    0.0  0.0   0:08   0 kswapd
    8 root      15   0     0    0     0 SW    0.0  0.0   0:00   0 kscand/DMA
    9 root      15   0     0    0     0 SW    0.0  0.0  10:16   0 kscand/Normal
   10 root      15   0     0    0     0 SW    0.0  0.0   0:00   0 kscand/HighMe

#
# /etc/nsswitch.conf
#
# An example Name Service Switch config file. This file should be
# sorted with the most-used services at the beginning.
#
# The entry '[NOTFOUND=return]' means that the search for an
# entry should stop if the search in the previous entry turned
# up nothing. Note that if the search failed due to some other reason
# (like no NIS server responding) then the search continues with the
# next entry.
#
# Legal entries are:
#
#	nisplus or nis+		Use NIS+ (NIS version 3)
#	nis or yp		Use NIS (NIS version 2), also called YP
#	dns			Use DNS (Domain Name Service)
#	files			Use the local files
#	db			Use the local database (.db) files
#	compat			Use NIS on compat mode
#	hesiod			Use Hesiod for user lookups
#	[NOTFOUND=return]	Stop searching if not found so far
#

# To use db, put the "db" in front of "files" for entries you want to be
# looked up first in the databases
#
# Example:
#passwd:    db files nisplus nis
#shadow:    db files nisplus nis
#group:     db files nisplus nis

passwd:     files
shadow:     files
group:      files

#hosts:     db files nisplus nis dns
hosts:      files dns

# Example - obey only what nisplus tells us...
#services:   nisplus [NOTFOUND=return] files
#networks:   nisplus [NOTFOUND=return] files
#protocols:  nisplus [NOTFOUND=return] files
#rpc:        nisplus [NOTFOUND=return] files
#ethers:     nisplus [NOTFOUND=return] files
#netmasks:   nisplus [NOTFOUND=return] files     

bootparams: nisplus [NOTFOUND=return] files

ethers:     files
netmasks:   files
networks:   files
protocols:  files
rpc:        files
services:   files

netgroup:   files

publickey:  nisplus

automount:  files
aliases:    files nisplus


[Index of Archives]     [Fedora Users]     [Centos Users]     [Kernel Development]     [Red Hat Install]     [Red Hat Watch]     [Red Hat Development]     [Red Hat Phoebe Beta]     [Yosemite Forum]     [Fedora Discussion]     [Gimp]     [Stuff]     [Yosemite News]

  Powered by Linux