LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 10-15-2012, 05:32 AM   #1
shayno90
Member
 
Registered: Oct 2009
Distribution: Debian Lenny 2.6.26 Ubuntu Lucid Lynx 10.04 Windows 7
Posts: 187
Blog Entries: 2

Rep: Reputation: 21
Squid 3.1.6 and www.snort.org timeout


I cannot connect to www.snort.org via squid3 proxy:
-------------------------------------------------
TCP_MISS/503 4002 GET http://www.snort.org/ - DIRECT/23.23.170.170 text/html
---------------------------------------------------
The following error was encountered while trying to retrieve the URL: http://www.snort.org/

Connection to 23.23.170.170 failed.

The system returned: (110) Connection timed out

The remote host or network may be down. Please try the request again.

Your cache administrator is webmaster.
----------------------------------------
I added the dns_v4 option to squid.conf:
dns_v4_fallback on

and also:

#tcp_outgoing_address 23.23.170.170

neither seem to work

Contacted ISP and snort.org admins but no luck either.

Either it is a firewall issue or squid issue?
 
Old 11-11-2012, 01:23 AM   #2
hamlindsza
Member
 
Registered: Aug 2012
Distribution: Debian, CentOS
Posts: 74

Rep: Reputation: Disabled
If you are unable to telnet snort.org on port 80 then its a firewall issue.

If you are able to telnet, then it could be a squid configuration issue. Could u post your squid configuration here?
 
Old 11-12-2012, 04:27 AM   #3
shayno90
Member
 
Registered: Oct 2009
Distribution: Debian Lenny 2.6.26 Ubuntu Lucid Lynx 10.04 Windows 7
Posts: 187
Blog Entries: 2

Original Poster
Rep: Reputation: 21
Quote:
Originally Posted by hamlindsza View Post
If you are unable to telnet snort.org on port 80 then its a firewall issue.

If you are able to telnet, then it could be a squid configuration issue. Could u post your squid configuration here?
Yes, it looks like a firewall issue:

telnet snort.org 80
Trying 23.23.143.164...
telnet: Unable to connect to remote host: Connection timed out

and

telnet openvas.org 80
Trying 5.9.98.186...
telnet: Unable to connect to remote host: Connection timed out

Those domains used to be accessible so I am not sure what was changed exactly in the firewall.

Then paypal.com used to be accessible and now this:

telnet paypal.com 80
Trying 66.211.169.66...
Connected to paypal.com.
Escape character is '^]'.

but in the browser:

Unable to connect
Firefox can't establish a connection to the server at www.paypal.com.

I thought this may be an issue with ipv6 settings in squid3.1.6 for these domains but need to see what exact port is being blocked for only these domains since other domains are accessible on port 80.
 
  


Reply

Tags
connection, snort, squid3, timeout


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Snort, Squid with Switch. Peter_APIIT Linux - Hardware 4 12-25-2007 11:54 PM
"www::mechanize"-->www.cpan.org using this module login to secure website vvnkishore Linux - General 0 10-04-2007 01:14 AM
Squid Timeout Jubalint Linux - Networking 1 10-24-2005 06:40 AM
www.debianhelp.org?? wrat Debian 6 06-23-2004 05:39 AM
Snort timeout? gummimann Linux - Networking 0 02-16-2004 06:18 AM


All times are GMT -5. The time now is 08:04 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration