T.R | Title | User | Personal Name | Date | Lines |
---|
1724.1 | Pseudo-answers! | GALVIA::SMITH | | Tue Jan 21 1997 04:57 | 20 |
1724.2 | | QUICHE::PITT | Alph a ha is better than no VAX! | Wed Jan 22 1997 05:41 | 26 |
1724.3 | thanks | EEMELI::EINAMO | | Wed Jan 22 1997 06:02 | 30 |
1724.4 | | QUICHE::PITT | Alph a ha is better than no VAX! | Wed Jan 22 1997 06:21 | 49 |
1724.5 | understood | EEMELI::EINAMO | | Fri Jan 24 1997 01:29 | 17 |
| Hi
Mark you are right !
1234 pkts 45.11 %hits 0 drops
=>
1234 pkts = number of ip pkts prosessed
45.11% = hitrate to screend.rule base that it kees in memory
0 drops = screend has not dropped any pkts ... it will start dropping pkts if
it has too mutch job to do
The customer screend.conf has more that one rule in it
Marko
|
1724.6 | nntp.acl | EEMELI::EINAMO | | Thu Jan 30 1997 12:14 | 33 |
| Hi
Ran into problems with nntp.acl
I did add user group called out-news
via GUI
...
#user group 'out-news' (internal)
group grp854372554.2811 is
[email protected];
I did Edit nntp.acl
# cat nntp.acl
#AUTOMATICALLY GENERATED: DO NOT EDIT!
authentication "none";
include "/usr/dfws/config/customgrps.acl";
allow grp854372554.2811 * relay;
allow [email protected] nntp news.kolumbus.fi:119;
It dont work with out the last line where I implisite allow the user
and that's not what we are looking for
gxd.log
Jan 30 18:49:47 fwoulu nntp[23085]: Log: CONNECT: connect from client rytilahti.
oulu.pvo.fi/193.***.101.150
Jan 30 18:49:47 fwoulu nntp[23085]: Log: MESSAGE: Target 'pinta.kolumbus.fi:119'
will additionally be acl checked as IP:port '193.229.0.40:119'
Jan 30 18:49:47 fwoulu nntp[23085]: Event: EVENTMSG: event denydflt detected fro
m host rytilahti.oulu.pvo.fi/193.XXX.101.150
Jan 30 18:49:47 fwoulu nntp[23085]: Log: ACLDENY: user unknown not authorized fo
r nntp to pinta.kolumbus.fi/193.229.0.40, port 119
|
1724.7 | syntax wrong | QUICHE::PITT | Alph a ha is better than no VAX! | Tue Feb 04 1997 09:01 | 11 |
| You want the following in nntp.acl:
#AUTOMATICALLY GENERATED: DO NOT EDIT!
authentication "none";
include "/usr/dfws/config/customgrps.acl";
allow grp854372554.2811 nntp news.kolumbus.fi:119;
... and it works. (Note: it might not work without the comment in the
first line ... ??? ;-))
T
|