Re: [SLUG] NAT: It works!

From: Derek Glidden (dglidden@illusionary.com)
Date: Wed Jan 16 2002 - 12:05:49 EST


On Tue, 2002-01-15 at 23:41, Russell Hires wrote:

> > What shows up in your logfiles? Is anything getting denied?
> (I'm back to dumb questions) Which log files should I be looking at? I looked
> at /var/log/messages, and the only thing it shows is Jan 15 23:15:19
> localhost -- MARK --
> I looked at /var/log/syslog, but it doesn't show anything, either...
>
> I'm wondering if there are any "leftovers" floating around my system from
> some experiments I was doing dealing with firewall utilities...how would I
> know what to look for?

Hmm, look at /etc/syslogd.conf and see where it's configured to log
"info" log messages. That's where any iptables messages should get
logged with the script I sent.

All the debian systems I've seen put "info" messages in
/var/log/messages and /var/log/syslog. Are you running syslogd and
klogd?

> Well, the DNS problem was only on the internel machine. The Firewall machine
> doesn't have DNS problems at all...only when I enable the script. Is there a
> way to disable it?

The way to clear the iptables rules is to do something like:

iptables -F
iptables -t nat -F

(look near the top of the script I posted to the list for the actual
commands - there's also a "-X" which clears out any user-defined chains,
although I don't think I made any in that script.)

-- 
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
#!/usr/bin/perl -w
$_='while(read+STDIN,$_,2048){$a=29;$b=73;$c=142;$t=255;@t=map
{$_%16or$t^=$c^=($m=(11,10,116,100,11,122,20,100)[$_/16%8])&110;
$t^=(72,@z=(64,72,$a^=12*($_%16-2?0:$m&17)),$b^=$_%64?12:0,@z)
[$_%8]}(16..271);if((@a=unx"C*",$_)[20]&48){$h=5;$_=unxb24,join
"",@b=map{xB8,unxb8,chr($_^$a[--$h+84])}@ARGV;s/...$/1$&/;$d=
unxV,xb25,$_;$e=256|(ord$b[4])<<9|ord$b[3];$d=$d>>8^($f=$t&($d
>>12^$d>>4^$d^$d/8))<<17,$e=$e>>8^($t&($g=($q=$e>>14&7^$e)^$q*
8^$q<<6))<<9,$_=$t[$_]^(($h>>=8)+=$f+(~$g&$t))for@a[128..$#a]}
print+x"C*",@a}';s/x/pack+/g;eval 

usage: qrpff 153 2 8 105 225 < /mnt/dvd/VOB_FILENAME \ | extract_mpeg2 | mpeg2dec -

http://www.cs.cmu.edu/~dst/DeCSS/Gallery/ http://www.eff.org/ http://www.anti-dmca.org/



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 19:06:07 EDT