[Firehol-support] some sites not pinging

Grigory Fateyev greg at anastasia.ru
Fri Nov 3 10:38:25 GMT 2006


Hello!

I use firehol for home PC.
Some sites not accessible for me, if firehol is up:
> tracepath freesource.info
 1:  send failed
     Resume: pmtu 65535
if firehol is down:
> tracepath freesource.info
1:  62.33.35.45 (62.33.35.45)                              0.306ms
pmtu 1500 1:  192.168.111.1 (192.168.111.1)
6.652ms 2:  breez.dobroe.ru (62.33.35.1)
9.752ms 3:  MSK13-l7713.transtelecom.net (217.150.38.130)
22.078ms 4:  SkyMedia10-gw.transtelecom.net (217.150.39.5)
asymm  6 210.133ms 5:  kiae2-Po-Agava-3.netflow.ru
(88.212.194.50)          asymm  7  27.035ms 6:  dimline.ru
(89.108.86.123)                           asymm  8  30.716ms reached
Resume: pmtu 1500 hops 6 back 8

### firehol.conf
interface eth0 home # eth0 lan network
        policy reject
        protection strong 10/sec 10
к тебе server "ssh postgres"   accept src "${trust_ips}"
        server "ftp http"       accept #src "${trust_ips}"
        server  icmp    accept limit 3/m 5

        server ident reject with tcp-reset

#       client "pop3 pop3s imap irc pptp dcc GRE dhcp dhcprelay dns ftp
http https ssh ping"   accept
        client all accept

interface ppp+ internet src not "${home_ips} ${UNROUTABLE_IPS}" # inet
        protection strong 10/sec 10
#       server ""       accept
        server ident reject with tcp-reset
        client all      accept

How to fix this?
-- 
Всего наилучшего! Григорий
greg [at] anastasia [dot] ru
Письмо отправлено: 2006/11/03 13:29




More information about the Firehol-support mailing list