Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-hardened
Navigation:
Lists: gentoo-hardened: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-hardened@g.o
From: "Joey McCoy" <ixion@...>
Subject: Hardened-Dev-Sources (2.6.11) Netfilter issue
Date: Mon, 11 Apr 2005 13:50:33 -0400 (EDT)
I am having trouble with the 2.6.11 hardened-dev-sources netfilter. When
enabled, my ssh and https connections hang randomly. In the ssh sessions
if I press a key while it's hung, it sometimes will scroll all the missed
output and end up properly displaying content until the next hang, but
other times will totally freeze until the firewall at this office drops
the inactive connection. I have observed this happening from both my
office and my wife's which have totally different internet connection
setups, the problem follows my network and setup.

My network:
Gentoo Linux Firewall (hardened-dev-sources-2.6.11-r1)
Gentoo Linux Webserver (hardened-dev-sources-2.6.11-r1)

I've tried disabling every single iptables option in the kernel config
except the very minimal of options I need, but still no luck.

Another note, I run the kernel on the webserver with no loadable module
support, but neither the firewall nor webserver have any modules loaded,
all iptables options are enabled in the kernel.

Has anyone run across this? Anyone think of a solution? I reviewed the
2.6.11 changelog fully on kernel.org, but really didn't seem to see
anything that addressed this except possibly the NetROM issue in
2.6.11.5??

I am totally at my wit's end, here. This problem is just killing me, I've
been working at it for months now with no solution in sight.. :(

--
gentoo-hardened@g.o mailing list

Navigation:
Lists: gentoo-hardened: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
Next by thread:
grsec-sources is being depreciated in favor of hardened-sources.
Previous by date:
Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"
Next by date:
Re: Will perl or php scripts run in enforcing mode in the hardened gentoo environment "out of the box?"


Updated Jun 17, 2009

Summary: Archive of the gentoo-hardened mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.