Koozali.org: home of the SME Server

blocked by remote server.

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
blocked by remote server.
« on: January 25, 2010, 07:45:50 PM »
There is a remote sme server that I was able to access until late last week. I was connected via openvpn, and in the process of transferring some files to a work station on their network when I lost connection.

When I tried to re-establish connection, it failed. When I tried to access their server-manager, (which I used to be able to) it fails. I went to the location of the remote server, and checked the iptable log, and is shows I am being denied.

I am new to iptables, and need some direction

The remote server is either 7.3 or 7.4

Thanks
If you think you know whats going on, you obviously have no idea whats going on!

Offline CharlieBrady

  • *
  • 6,918
  • +3/-0
Re: blocked by remote server.
« Reply #1 on: January 25, 2010, 08:09:35 PM »
I am new to iptables, and need some direction

You shouldn't need to know anything about iptables (and the openvpn packets shouldn't be being blocked). I presume you are using a contrib, and the contrib should be doing all the iptables changes necessary to allow the contrib to work. File a bug report against the contrib.

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
Re: blocked by remote server.
« Reply #2 on: January 25, 2010, 08:20:20 PM »
Thanks Charlie, but it is not just openvpn that is being blocked from my server. it is everything. I cannot even ping the remote IP, or ssh into it. I can shh into another server and ping the problem server with out a problem.

 Bug 5727 opened
« Last Edit: January 25, 2010, 08:54:28 PM by crazybob »
If you think you know whats going on, you obviously have no idea whats going on!

Offline p-jones

  • *
  • 594
  • +0/-0
Re: blocked by remote server.
« Reply #3 on: January 25, 2010, 10:52:11 PM »
Crazybob

What happens when you do a tracert to the remote server ?
...

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
Re: blocked by remote server.
« Reply #4 on: January 25, 2010, 11:14:14 PM »
traceroute to xxx.xxx.xxx (xxx.xxx.xxx.xxx), 30 hops max, 38 byte packets
 1  hyyy.yyy.yyy.yyy.wyngmi.dedicated.static.tds.net (zzz.zzz.zzz.zzz)  0.263 ms  0.230 ms  0.203 ms
 2  cntcnhbas01-lo0-secondary3.network.tds.net (69.129.156.1)  3.854 ms  11.285 ms  8.084 ms
 3  h69-21-150-153.mdsnwi.tisp.static.tds.net (69.21.150.153)  5.436 ms  4.591 ms  4.241 ms
 4  * * *
 5  * * *
 6  * * *
 7  * * *
 8  * * *
 9  * * *
10  * *
We are both using the same isp and have static ip's, and are only about 2 mile apart.
If you think you know whats going on, you obviously have no idea whats going on!

Offline janet

  • *****
  • 4,812
  • +0/-0
Re: blocked by remote server.
« Reply #5 on: January 26, 2010, 03:24:42 AM »
crazybob

It's not a diagnostic approach, but it could save time.
Did you reboot both servers ?
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
Re: blocked by remote server.
« Reply #6 on: January 26, 2010, 03:50:28 AM »
Thanks Mary,
I did reboot the remote one while on site, and the local one when I updated software over the weekend. :)
If you think you know whats going on, you obviously have no idea whats going on!

Offline janet

  • *****
  • 4,812
  • +0/-0
Re: blocked by remote server.
« Reply #7 on: January 26, 2010, 05:59:24 AM »
crazybob

Do a port scan on the remote server.
Anything happen with your ISP or router ?
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
Re: blocked by remote server.
« Reply #8 on: January 26, 2010, 04:40:58 PM »
Hi Mary,
This is only between these two servers. I can connect to many other servers, and other servers can connect my problem child. It appears my ip has been blocked. :-(
If you think you know whats going on, you obviously have no idea whats going on!

Offline Stefano

  • *
  • 10,894
  • +3/-0
Re: blocked by remote server.
« Reply #9 on: January 26, 2010, 09:33:37 PM »
There is a remote sme server that I was able to access until late last week. I was connected via openvpn, and in the process of transferring some files to a work station on their network when I lost connection.

When I tried to re-establish connection, it failed. When I tried to access their server-manager, (which I used to be able to) it fails. I went to the location of the remote server, and checked the iptable log, and is shows I am being denied.

I am new to iptables, and need some direction

The remote server is either 7.3 or 7.4

Thanks

well, unfortunately my crystal ball is broken and I can't help you but you could help us to better understand, for example if:
- are the servers in server-only mode? or in server and gateway?
- did you install any contrib on the target server

thank you

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
Re: blocked by remote server.
« Reply #10 on: January 26, 2010, 09:54:04 PM »
The remote server is server-gateway mode. I know awstats, openvpn, and vmware are installed, and have been running flawlessly for over a year.

The server is SME 7.3 Last update unknown
If you think you know whats going on, you obviously have no idea whats going on!

Offline CharlieBrady

  • *
  • 6,918
  • +3/-0
Re: blocked by remote server.
« Reply #11 on: January 26, 2010, 10:11:10 PM »
Mary/Stefano/others, please do not try to debug here. All followup to the bug tracker please:

http://bugs.contribs.org/show_bug.cgi?id=5727

Offline byte

  • *
  • 2,183
  • +2/-0
Re: blocked by remote server.
« Reply #12 on: January 26, 2010, 10:39:54 PM »
Mary/Stefano/others, please do not try to debug here. All followup to the bug tracker please:

http://bugs.contribs.org/show_bug.cgi?id=5727

Locking thread - Please follow up on above bug reference. Thanks.
--[byte]--

Have you filled in a Bug Report over @ http://bugs.contribs.org ? Please don't wait to be told this way you help us to help you/others - Thanks!