LinuxQuestions.org
Did you know LQ has a Linux Hardware Compatibility List?
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 08-13-2008, 06:07 PM   #1
stardotstar
Member
 
Registered: Nov 2002
Location: /au/qld/bne/4157
Distribution: Gentoo mactel-linux
Posts: 238

Rep: Reputation: 30
Basic question around the concepts of ssh tunnelling


Hi all,


(accepting all responsibility and so on for what I am wanting to do and not needing reminding of the purpose and importance of policy etc etc etc)

I am in need of an ssh connection to a server through what must be a statefull firewall because whilst https over 443 after kerberos authentication takes place connects to secure internet sites and my sshd server accepts incoming ssh sessions on 22 via port forwarding from public port 443 (from outside the f/w) I get a time out when I do a

Code:
will-parkers-macbook-pro-17:~ stardotstar$ ssh -p 443 stardotstar@mydyndns.homelinux.org
ssh: connect to host mydyndns.homelinux.org port 443: Operation timed out
I believe what I need to do here is setup some kind of proxy https server on the end of my sshd and get it to accept the incoming connection on 443 and output the packets to sshd on 22...

So I have the concepts in place??

Is the firewall causing the time out because it is statefull and seeing ssh headers in the packets going out, or is it because ssh client is not identifying itself to the proxy server - and can it?? to establish kerberos credentials? Both?

Thank you in advance to anyone who can help me through this conceptual leap.

\\'
 
Old 08-13-2008, 06:29 PM   #2
billymayday
Guru
 
Registered: Mar 2006
Location: Sydney, Australia
Distribution: Fedora, CentOS, OpenSuse, Slack, Gentoo, Debian, Arch, PCBSD
Posts: 6,678

Rep: Reputation: 122Reputation: 122
Maybe some of this will help

http://dag.wieers.com/howto/ssh-http-tunneling/
 
Old 08-13-2008, 06:55 PM   #3
maas187
Member
 
Registered: Aug 2008
Location: Yemen
Distribution: Fedora, CentOS, RedHat , OpenFiler, ESXI
Posts: 210

Rep: Reputation: 32
Post

are you trying to access web using SSH ..

if thats the case .u need .

1 - a remote server that you want to get http access from.
2 - ssh client
3 - Brwoser ..



in the ssh type this command ..

SSH -D 8790 username@remoteserver.com

then go to your browser , Example . Firefox..
Tools > Options > Network > Settings ..
at the SOCKS HOST out localhost .
at the port put 8790

click ok , and ok again .

and ur set .
 
Old 08-13-2008, 07:28 PM   #4
stardotstar
Member
 
Registered: Nov 2002
Location: /au/qld/bne/4157
Distribution: Gentoo mactel-linux
Posts: 238

Original Poster
Rep: Reputation: 30
No, all I want to do is manage my remote server via ssh sessions at the command line.

so inside firewall I want to ssh to my remote box for configuration of its own firewall, mail services, dns, apache, rsync, mysql etc...

I would use iLO on the ProLiant since I can use the browser to connect to the remote https but the iLO remote console java opens and tries to use another port that my local firewall prohibits. Thought I had a solution there.

\\'

thanks bill I have read the dag site and think it is the resource I have to work on.

Last edited by stardotstar; 08-13-2008 at 07:30 PM.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
SSH Tunnelling Only Server humbletech99 Linux - Security 1 08-03-2007 08:33 PM
Installed, impressed, confused (basic concepts question) archive Mandriva 14 03-26-2007 05:24 PM
[putty&ssh] Who is really good & expert in ssh https tunnelling and firewalling ? Xeratul Linux - General 12 12-03-2006 03:22 AM
Help with basic SSH concepts. dr_zayus69 Linux - Networking 1 12-23-2005 01:57 PM
tightvnc using ssh tunnelling curmudgeon42 Linux - Software 1 08-18-2004 09:40 PM


All times are GMT -5. The time now is 11:25 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration