LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-02-2003, 11:36 PM   #1
oneferna
Member
 
Registered: May 2003
Distribution: Fedora Core 3, Gentoo
Posts: 47

Rep: Reputation: 15
Bastille and PUB_IN DROP 4 In=etho error


This is just information, not a question. I want anyone else who has this problem to be able to fix it.

After installing Bastille-2.1.1-1.0.i386.rpm and not the perl-Tk they recommend (that would be Too easy and it would mean reading directions ;p) I installed perl-Tk-800.024-2.i386.rpm.

After I installed and rebooted my machine I got this error:
PUB_IN DROP 4 IN=eth0 OUT= MAC=00:20:e0:6f:1c:57:00:0a:e6:85:ef:91:08:00 SRC=192.168.1.100 DST=192.168.1.101 LEN=48 TOS=0x00 PREC=0x00 TTL=128 ID=64719 DF PROTO=TCP SPT=3113 DPT=1214 WINDOW=64240 RES=0x00 SYN URGP=0

And not just once but it filled the console screen every couple of seconds.

To fix it all you have to do is open /etc/Bastille/bastille-firewall.cfg
change TRUSTED_IFACES="lo"
to TRUSTED_IFACES="lo eth0" - cause I am using a cable connection, wops.

then
/etc/rc.d/init.d/bastille-firewall start

Also I couldn't get psad to start because I wasn't quick enough to install the correct perl-Tk so I had to do this:

/etc/rc.d/init.d/psad start
- won't work cause it couldn't find Psad.pm so....
find /usr/lib -name Psad.pm
ln -s /usr/lib/perl5/site_perl/5.6.0/Psad.pm /usr/lib/perl5/site_perl/5.8.0/Psad.pm

/etc/rc.d/init.d/psad start
-wouldn't work cause couldn't find Unix/Syslog.pm so.....
find /usr/lib -name Syslog.pm
cd /usr/lib/perl5/5.8.0/i386-linux-thread-multi/
ls
mkdir Unix
ln -s /usr/lib/perl5/5.8.0/i386-linux-thread-multi/Sys/Syslog.pm /usr/lib/perl5/5.8.0/i386-linux-thread-multi/Unix/Syslog.pm
/etc/rc.d/init.d/psad start
-Finally worked! Yeah!

Just install the right perl-Tk OK?! Save yourself some heardache.

Anyway I hope this helps anyone.
 
Old 07-06-2003, 09:11 PM   #2
digitalhost
LQ Newbie
 
Registered: Jul 2003
Posts: 1

Rep: Reputation: 0
Thankyou for that post,

adding that to our Bastille installation has cleaned up those log file errors.

Plus the restart alerted us to some other errors now fixed.

 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Drop connections to port 80 at firewall machine also drop at protected network? Niceman2005 Linux - Security 2 10-27-2005 08:21 AM
bastille error on suse 9.1 slug420 Linux - Security 6 01-08-2005 06:33 PM
iptables - drop all -> allow needed OR allow all -> drop specific lucastic Linux - Security 5 12-21-2004 02:07 AM
gtk error when tsclient drop down menu is clicked taoweijia Linux - Software 0 06-21-2004 08:10 PM
etho not initializing oke Linux - Newbie 4 12-10-2002 07:08 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:46 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration