Gentoo Archives: gentoo-hardened

From: Joey McCoy <ixion@×××××××××××.com>
To: gentoo-hardened@l.g.o
Subject: [gentoo-hardened] Hardened-Dev-Sources (2.6.11) Netfilter issue
Date: Mon, 11 Apr 2005 17:50:33
Message-Id: ME-1DL33R-00032n-3c@indigorobot.com
1 I am having trouble with the 2.6.11 hardened-dev-sources netfilter. When
2 enabled, my ssh and https connections hang randomly. In the ssh sessions
3 if I press a key while it's hung, it sometimes will scroll all the missed
4 output and end up properly displaying content until the next hang, but
5 other times will totally freeze until the firewall at this office drops
6 the inactive connection. I have observed this happening from both my
7 office and my wife's which have totally different internet connection
8 setups, the problem follows my network and setup.
9
10 My network:
11 Gentoo Linux Firewall (hardened-dev-sources-2.6.11-r1)
12 Gentoo Linux Webserver (hardened-dev-sources-2.6.11-r1)
13
14 I've tried disabling every single iptables option in the kernel config
15 except the very minimal of options I need, but still no luck.
16
17 Another note, I run the kernel on the webserver with no loadable module
18 support, but neither the firewall nor webserver have any modules loaded,
19 all iptables options are enabled in the kernel.
20
21 Has anyone run across this? Anyone think of a solution? I reviewed the
22 2.6.11 changelog fully on kernel.org, but really didn't seem to see
23 anything that addressed this except possibly the NetROM issue in
24 2.6.11.5??
25
26 I am totally at my wit's end, here. This problem is just killing me, I've
27 been working at it for months now with no solution in sight.. :(
28
29 --
30 gentoo-hardened@g.o mailing list