Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Search results for query: *

  • Users: Saeed42
  • Content: Threads
  • Order by date
  1. Saeed42

    Radius, PPP, and dynamic routing

    We have radius authenticating our remote users (PPP) and that works fine, we have specific group profiles on the radius and that determines what IP user gets and timeouts and so on, now I'm trying to inject route into the NAS using the ip:rout AV-pair, we now have to put a static route in our...
  2. Saeed42

    Replication problem

    I'm trying to setup two mysql servers so that one is a slave and always in sync with the master. I read the Mysql manual and did everything or at least I think I did but I still have a problem where the slave crashes out after full reboot and gives the following error message 040120...
  3. Saeed42

    Tacacs+, Cisco PIX and enable password

    We use Tacacs to authenticate SSH connections to the firewall and use the local enable password to go into enable mode, now we wanted to use the Tacacs for enable as well just like we do with our routers, but this is proofing to be difficult to say the least, as soon as I setup enable to be...
  4. Saeed42

    The Joys of IPtables

    We have server which we use as a tftp server and everything seems to work fine but PIX firewall, after close investigation I realised that the pix connects to the firewall on the normal tftp port then the server connects to the pix to a random port and the source port is 12345 the firewall...
  5. Saeed42

    Is DNS-Bind misbehaving?

    We've moved our DNS servers from Suse to Red Hat 9/bind-9.2.1-16 and everything went very smoothly indeed, now when I do certain queries I get the following com nameserver = K.GTLD-SERVERS.NET com nameserver = L.GTLD-SERVERS.NET com nameserver = M.GTLD-SERVERS.NET com...
  6. Saeed42

    PIX and TFTP on Red Hat 9

    We used have TFTP server running on an old Suse machine and we decided to replace it with a new machine with Red Hat 9, now we have a small problem, the TFTP server seems to work ok with the routers but as soon as we try to backup pix configs we get the following error in the syslog...
  7. Saeed42

    authentication enable, Tacacs+

    I'm trying to authenticate "enable" via tacacs+, and whatever I do it keeps failing, we already use the tacacs to authenticate "enable" for the routers and we also use the same tacacs+ to authenticate ssh. aaa-server Auth protocol tacacs+ aaa-server Auth (outside) host...
  8. Saeed42

    Tacacs+ and authorization

    I created a group of users which can only enable and execute show run on all of our routers, but what I would like to do is the same group to have the ability to configure remote routers but not the core routers, and I'm having little problem implementing this. group = lan_admin { cmd...
  9. Saeed42

    Tacacs+ and Groups

    We have Routers dotted around the country and we use Tacacs+ for authentication, now what we need to do is to allow local admins to have access to their local router only, and this is where I'm running into few problems. Tacacs+ uses the default Linux "passwd" file and anyone with an...
  10. Saeed42

    Restrict VPN user between certain times

    VPN - Is it possible to restrict access to a certain person between certain times? ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Don't be content with being average. Average is as close to the bottom as it is to the top ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  11. Saeed42

    Win Client to PIX VPN

    I've enabled vpn on pix's outside interface, and everything works fine, but what I would like to know is how can I limit who can login to the pix via VPN to few IP addresses. I'm using access list to allow VPN users limited resources but I couldn't find anything that explains how to limit who...
  12. Saeed42

    PAT via inside interface

    I have vpn setup on a pix firewall, VPN users get their IPs from pool of ips and all works fine, my problem is I usually add a route for that "VPN ip range" for every server as some of the servers don't use the pix as their default route, so my question is can I use pat for inside...
  13. Saeed42

    Please shed light on these Ports

    Please can you shed light on these ports and how to close them if possible 1029/tcp ms-lsa 6106 isdninfo snet-sensor-mgmt Info Win 2000 compaq server IIS5 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Don't be content with being average. Average is as close to the bottom as it is to the top...
  14. Saeed42

    vsftp running as root

    I've changed this line "nopriv_user=nobody" so vsftp runs as nobody and restarted the service, but it's still running as root, any idea how to achieve this. # ps ax |grep vsft "1760 pts/0 S 0:00 /usr/sbin/vsftpd /etc/vsftpd/vsftpd.conf" # ls -la /proc/1760/root...
  15. Saeed42

    Crontab ?

    I'm trying to setup a cron job for a script that does ftp backup once a day, but not quite sure what I'm doing wrong, I did the following crontab -e [which opened up vi, entered the following and saved it as usual] 30 12 * * * /usr/local/bin/backmeup now when I do crontab -l I get the...
  16. Saeed42

    IPTables and DNS

    In a attempt to make our DNS servers more secure I was asked (more like forced) to look into iptables and I have to admit I know almost next to nothing in this, after doing a bit of digging around I managed to enable IPtables on a test machine that will only accept ssh and udp:53 from anywhere...
  17. Saeed42

    DDR Problem

    I have 1700 Cisco ADSL router with ISDN backup, I configured the router so that most of the traffic goes out via the ADSL link, but some traffic must use the ISDN to get emails from the HQ, the only problem is that the router doesn't dial up at all regardless of what I do, see ISDN Status output...
  18. Saeed42

    Log files (access_log)

    I'm trying to change where apache writes to the access log files but I'm not having any luck, as you can see below I committed out the default path and added a new one then restarted httpd server but, it's still writing to the default directory, any idea why? (# The location and format of the...
  19. Saeed42

    How to make TFTP server writeable

    Unable to write to tftp server, permissions are set to 777 and I can get files from it, but how do I make it writeable, I know most people say that the file needs to exist on the server before you can write to it, but I did achieve this with an old server I built for one of our customers but I'm...
  20. Saeed42

    Selected cipher type <unknown> not supported by server

    Whenever I ssh from my redhat8 server to one of our pix firwalls I get the above error message, does anyone have any idea what I need to do to remedy the situation ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Don't be content with being average. Average is as close to the bottom as it is to the top...

Part and Inventory Search

Back
Top