Inetd suddently stops accepting connections

scode@scode.ddns.org
Sun, 6 Jun 1999 19:58:15 +0200


--uAKRQypu60I7Lcqm
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable

Hello,

I have a problem with inetd. After installing the TIS FWTK on a fire wall,
I had inetd launch http-gw in response to connections on port 80. This works
fine - for a while. It always stops accepting connections after a few minut=
es.
Other services keep going (I tried enabled the echo server for example, and
after it stopped listening to 80 I could still connect to the echo server).

Could it be some kind of built-in DOS attack protection or something? Or
possibly a bug? Any ideas?

Here's the relevant part of the output of "netstat -a -n" when it *doesn't*
work.

Proto Recv-Q Send-Q Local Address Foreign Address State
tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN
tcp 290 0 10.0.0.1:80 10.0.0.10:1690 CLOSE
tcp 276 0 10.0.0.1:80 10.0.0.10:1576 CLOSE

And here's when it *does* work:

Proto Recv-Q Send-Q Local Address Foreign Address State
tcp 0 0 10.0.0.1:80 10.0.0.10:1705 CLOSE
tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN
tcp 290 0 10.0.0.1:80 10.0.0.10:1690 CLOSE
tcp 276 0 10.0.0.1:80 10.0.0.10:1576 CLOSE
=20
The firewall's IP is 10.0.0.1 and the computers trying to access it are
10.0.0.x (in this case 10.0.0.10 has been the test client).

I must confess to not remembering the details of the TCP connection states,
but why do a bunch of them linger around in the CLOSE state? And it seems to
be inetd is listening in both cases...

Any help would be greatly appreciated.

Thanks!

--=20
/ Peter Schuller

---
PGP userID: 0x5584BD98 or 'Peter Schuller <scode@scode.ddns.org>'
E-Mail: scode@scode.ddns.org Web: http://hem.passagen.se/petersch
Help create a free Java based operating system - www.jos.org.

--uAKRQypu60I7Lcqm Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE----- Version: PGPfreeware 5.0i for non-commercial use MessageID: q+sJxivGWhUV6VMxN+m1TW0L9vMU78VA

iQA/AwUBN1q2tsBfJ1FVhL2YEQIqOQCfczJksAl+6YkYQYjQAaDQiXlkunoAoL64 5q9tnjCn7VETX5zOLfr6iLzI =1/8S -----END PGP SIGNATURE-----

--uAKRQypu60I7Lcqm-- - To unsubscribe from this list: send the line "unsubscribe linux-net" in the body of a message to majordomo@vger.rutgers.edu