network problem with ping through firewall

From: Albert Cranford (ac9410@bellsouth.net)
Date: Fri Jun 09 2000 - 09:22:36 EST


Hi Alan,
Get message below with ping through firewall and ipfwadm set to:
insmod /lib/modules/current/ipv4/ipfwadm.o
ipfwadm -F -p deny
ipfwadm -F -a m -b -S 192.168.1.0/24 -D 0.0.0.0/0

Computer-home1:RTL8139<--->3c905B:Computer-home
both computers running:2.4.0-test1-ac11
problem started after:...ac8 and http,ftp not affected.
Using same setup for years.
Later,
Albert
#########################
home1:~# ping ftp.cdrom.com
PING wcarchive.cdrom.com (209.155.82.18): 56 data bytes
64 bytes from 209.155.82.18: icmp_seq=0 ttl=242 time=249.5 ms
wrong data byte #10 should be 0xa but was 0x78
        f2 a2 40 39 8a 47 b 0 8 9 78 1e c d e f
        d8 4d db c2 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f
        20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f
64 bytes from 209.155.82.18: icmp_seq=1 ttl=242 time=253.9 ms
wrong data byte #10 should be 0xa but was 0x78
        f3 a2 40 39 2d 36 b 0 8 9 78 1e c d e f
        d8 4d db c2 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f
        20 21 22 23 24 25 26 27 28 29 2a 2b 2c 2d 2e 2f

--- wcarchive.cdrom.com ping statistics ---
2 packets transmitted, 2 packets received, 0% packet loss
round-trip min/avg/max = 249.5/251.7/253.9 ms
######################### Computer-home
00:0a.0 Ethernet controller: Realtek Semiconductor Co., Ltd. RTL-8139 (rev 10)
        Subsystem: Realtek Semiconductor Co., Ltd. RT8139
        Flags: bus master, medium devsel, latency 64, IRQ 10
        I/O ports at ec00 [size=256]
        Memory at ea002000 (32-bit, non-prefetchable) [size=256]
        Capabilities: [50] Power Management version 2
######################### Computer-home1
00:0a.0 Ethernet controller: Realtek Semiconductor Co., Ltd. RTL-8139 (rev 10)
        Subsystem: Realtek Semiconductor Co., Ltd. RT8139
        Flags: bus master, medium devsel, latency 64, IRQ 11
        I/O ports at df00 [size=256]
        Memory at ffefff00 (32-bit, non-prefetchable) [size=256]
        Capabilities: [50] Power Management version 2

00:0b.0 Ethernet controller: 3Com Corporation 3c905B 100BaseTX [Cyclone] (rev 30)
        Subsystem: 3Com Corporation 3C905B Fast Etherlink XL 10/100
        Flags: bus master, medium devsel, latency 64, IRQ 10
        I/O ports at de80 [size=128]
        Memory at ffeffe80 (32-bit, non-prefetchable) [size=128]
        Expansion ROM at ffec0000 [disabled] [size=128K]
        Capabilities: [dc] Power Management version 1
############# home1:~# tcpdump -l -p -vv -i eth0 > /tmp/aa
07:55:29.968681 0:10:5a:29:b:c6 > 1:80:c2:0:0:0 802.1d ui/C len=43
                         0000 0000 0080 0000 105a 290b c600 0000
                         0080 0000 105a 290b c680 0100 0014 0002
                         0002 00a5 a5a5 a5a5 a5a5 a5
07:55:30.624328 home1.cranford.com.1031 > ns.mia.bellsouth.net.domain:
                9106+ (31) (DF) (ttl 64, id 0)
07:55:30.625871 home1.cranford.com.1032 > ns.mia.bellsouth.net.domain:
                11780+ (44) (DF) (ttl 64, id 0)
07:55:30.738796 ns.mia.bellsouth.net.domain > home1.cranford.com.1031:
                9106 2/5/5 (256) (DF) (ttl 250, id 47751)
07:55:30.739233 home1.cranford.com > wcarchive.cdrom.com: icmp:
                echo request (DF) (ttl 64, id 0)
07:55:30.768738 ns.mia.bellsouth.net.domain > home1.cranford.com.1032:
                11780 1/4/4 (235) (DF) (ttl 250, id 47752)
07:55:30.769510 home1.cranford.com.1032 > ns.mia.bellsouth.net.domain:
                11781+ (44) (DF) (ttl 64, id 0)
07:55:30.898715 ns.mia.bellsouth.net.domain > home1.cranford.com.1032:
                11781 1/1/1 (111) (DF) (ttl 250, id 47753)
07:55:30.988703 wcarchive.cdrom.com > home1.cranford.com: icmp:
                echo reply (DF) (ttl 242, id 60720)
07:55:31.734780 home1.cranford.com > wcarchive.cdrom.com: icmp:
                echo request (DF) (ttl 64, id 0)
07:55:31.968737 0:10:5a:29:b:c6 > 1:80:c2:0:0:0 802.1d ui/C len=43
                         0000 0000 0080 0000 105a 290b c600 0000
                         0080 0000 105a 290b c680 0100 0014 0002
                         0002 00a5 a5a5 a5a5 a5a5 a5
07:55:31.988724 wcarchive.cdrom.com > home1.cranford.com: icmp:
                echo reply (DF) (ttl 242, id 7361)
07:55:33.968661 0:10:5a:29:b:c6 > 1:80:c2:0:0:0 802.1d ui/C len=43
                         0000 0000 0080 0000 105a 290b c600 0000
                         0080 0000 105a 290b c680 0100 0014 0002
                         0002 00a5 a5a5 a5a5 a5a5 a5

-- 
Albert Cranford Deerfield Beach FL USA
ac9410@bellsouth.net

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Thu Jun 15 2000 - 21:00:19 EST