Re: Problem w/IP_MASQ & ssh/telnet?

Gregory P. Smith (greg@nas.nasa.gov)
Thu, 20 May 1999 14:05:54 -0700


> See this myself. SCMIIW (Someone Correct Me If I'm Wrong <g>), but the
> kernel has a 15 minute timeout. What happens is the masq box just drops
> the masq entry and causes the connection to be dropped as well.
>
> run ipchains -M -L
> that will show you what connections are masq'd and will also tell you when
> they will expire (if no more data is sent over the connection).

Similarly, the various timeouts can be changed using ipchains. I set
mine to three hours for open TCP connections.

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/