Linode Forum
Linode Community Forums
 FAQFAQ    SearchSearch    MembersMembers      Register Register 
 LoginLogin [ Anonymous ] 
Post new topic  Reply to topic
Author Message
PostPosted: Mon Jun 30, 2003 9:56 pm 
Offline
Linode Staff
User avatar

Joined: Tue Apr 15, 2003 6:24 pm
Posts: 3090
Website: http://www.linode.com/
Location: Galloway, NJ
Our 2.4.20 and 2.4.21 kernels come with ECN compiled in (and ON by default).

If you are having problems connecting to remote machines from inside your Linode, and the remote machine doesn't return pings, it might be behind an old firewall that doesn't do ECN. Do this to turn it off:

echo 0 > /proc/sys/net/ipv4/tcp_ecn

You can add that to a startup script to disable ECN on boot.

Code:
==============================
CONFIG_INET_ECN:

  Explicit Congestion Notification (ECN) allows routers to notify
  clients about network congestion, resulting in fewer dropped packets
  and increased network performance. This option adds ECN support to
  the Linux kernel, as well as a sysctl (/proc/sys/net/ipv4/tcp_ecn)
  which allows ECN support to be disabled at runtime.

  Note that, on the Internet, there are many broken firewalls which
  refuse connections from ECN-enabled machines, and it may be a while
  before these firewalls are fixed. Until then, to access a site behind
  such a firewall (some of which are major sites, at the time of this
  writing) you will have to disable this option, either by saying N now
  or by using the sysctl.


Shot out to David Coulson for some help - thanks!

-Chris


Top
   
PostPosted: Wed Nov 12, 2003 10:33 pm 
Offline
Senior Member

Joined: Sun Nov 02, 2003 2:05 pm
Posts: 58
Firewalls are we protected already or should i install one.

I am not trying to blast you guys with all the stupid quesions at once.


bootcamp
thanks


Top
   
 Post subject:
PostPosted: Thu Nov 13, 2003 3:44 am 
Offline
Senior Member
User avatar

Joined: Mon Jun 23, 2003 1:25 pm
Posts: 260
Hi,

It is up to you to install your own firewall.

Adam


Top
   
 Post subject:
PostPosted: Thu Nov 13, 2003 10:50 am 
Offline
Senior Member

Joined: Sun Nov 02, 2003 2:05 pm
Posts: 58
Do you know if we are already behind any kind of protection so I dont have to waste my time trying to figure out the firewall process.


Top
   
 Post subject:
PostPosted: Thu Nov 13, 2003 11:17 am 
Offline
Senior Member
User avatar

Joined: Mon Jun 23, 2003 1:25 pm
Posts: 260
As far as i know there is no protection.

If you need help setting up a firewall, come to the IRC chan, I am sure someone there can help you.

Adam


Top
   
 Post subject:
PostPosted: Thu Nov 13, 2003 2:19 pm 
Offline
Senior Member

Joined: Wed Sep 17, 2003 7:39 pm
Posts: 124
You_Wish - what distro are you running? If it's RH9 small let me know and I'll give you a very quick and easy-install guide for APF (the firewall).


Top
   
 Post subject:
PostPosted: Thu Nov 13, 2003 3:45 pm 
Offline
Senior Member

Joined: Sun Nov 02, 2003 2:05 pm
Posts: 58
ya mine is rh8 small that is the one that i could find that would run my version of unrealircd with my crazy setups.


Top
   
Display posts from previous:  Sort by  
Post new topic  Reply to topic


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
RSS

Powered by phpBB® Forum Software © phpBB Group