LinuxQuestions.org
Visit the LQ Articles and Editorials section
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices

Reply
 
LinkBack Search this Thread
Old 05-31-2007, 08:42 PM   #1
PatrickNew
Senior Member
 
Registered: Jan 2006
Location: Charleston, SC, USA
Distribution: Debian Squeeze, Gentoo
Posts: 1,147
Blog Entries: 1

Rep: Reputation: 48
Breaking Past Firewall


I am a university student who, from August to May lives in a dorm room. There I have a capable internet connection. However, as I have strong ties to my home two hours away, I go home most weekends. I would love to be able to ssh into my desktop at school from my laptop at home, but currently cannot.

The school network assigns internal addresses, then essentially proxies us through to the internet. That is, the rest of the net thinks I have one IP address, but every student computer (or at least many of them) share that IP address. I can connect from my school computer to a home computer, but not vice versa. To add to the trouble, my home IP changes frequently.

The desktop is mine, and I am root on it, so I have its full cooperation. The laptop is mine and I am root on it, so I have its full cooperation too. Is this enough to whip up a hack to let me into my computer?
 
Old 05-31-2007, 09:14 PM   #2
lujan
Member
 
Registered: Sep 2003
Distribution: Ubuntu, Debian Sarge, Mac OS X, FreeBSD
Posts: 45

Rep: Reputation: 16
You could use a dynamic DNS service to get around the IP address changing on your home computer.

I use a SSH tunnel to make a quick easy VPN between computer A and computer B, and when I get home I can ssh back through the tunnel.

Alternatively you could use VPN software itself.

Either way have a script that reconnects if the connection is dropped.
 
Old 05-31-2007, 09:29 PM   #3
PatrickNew
Senior Member
 
Registered: Jan 2006
Location: Charleston, SC, USA
Distribution: Debian Squeeze, Gentoo
Posts: 1,147
Blog Entries: 1

Original Poster
Rep: Reputation: 48
I must admit that I am unfamiliar with vpn's and their associated software. The laptop moves with me back and forth from college to home, so it does not have a continuous internet connection. Therefore, when I want to connect the two computers, I only have physical access to the laptop, and the desktop has no knowlege of the IP address at which to find the laptop. This issue isn't important enough to me that I would pay money for a dynamic DNS service.

I'm thinking of a hack involving putting the IP address on a free geocities web page. I can write a script for the desktop to run as a cron job, wherein it checks that page for an IP and if it finds one attempts to create a vpn with it. Then, I should be able to remotely login via the VPN, right?

And on an ethical note: the university is not trying to prevent me from doing this. Attempts to block such connections are intended to curb music and video piracy, not students remotely logging in. I have read the terms of usage, and this is within them.
 
Old 05-31-2007, 11:28 PM   #4
Wim Sturkenboom
Senior Member
 
Registered: Jan 2005
Location: Roodepoort, South Africa
Distribution: Slackware 10.1/10.2/12, Ubuntu 10.04, Crunchbang Statler
Posts: 3,325

Rep: Reputation: 168Reputation: 168
Did you contact the system administrator. Maybe they already have a setup for this and they only have to enable an option on your 'account'.
 
Old 06-01-2007, 06:09 AM   #5
dasy2k1
Member
 
Registered: Oct 2005
Location: 127.0.0.1
Distribution: Ubuntu 12.04 X86_64
Posts: 954

Rep: Reputation: 34
most unis will gladly forward port 22 to you if you ask tehm politly for it and state your reasons
 
Old 06-01-2007, 06:11 AM   #6
dasy2k1
Member
 
Registered: Oct 2005
Location: 127.0.0.1
Distribution: Ubuntu 12.04 X86_64
Posts: 954

Rep: Reputation: 34
the other option is to run nmap on your uni from home,
then try moving your sshd to one of teh ports that are open, (if any)
 
Old 06-01-2007, 08:16 AM   #7
csinclair
LQ Newbie
 
Registered: Nov 2006
Location: Canada
Distribution: Slackware 11, DSL (Debian), Ubuntu 8.04 (Hardy Heron), Smoothwall, Ophcrack & BackTrack2
Posts: 21

Rep: Reputation: 15
First post was probably right

I'd say that getting a 'free' Dyndns.org dyndns.xxx address assigned to your school computer address if possible is the route to take, (the admins at the school are probably 'PAT-ing' those connections (may be a tough on), or 'NAT-ing' them (possible) and a good idea is asking the admin or figuring out what port can be forwarded to that machine within the school network from any address through their firewall. Some will allow port 22 ssh traffic, some will assign another port for that purpose, ie. :8022.
You may have some proxy info that the admin can provide as well that may be helpful, it can't hurt to ask the admin staff, or try the nmap route but watch you don't get yourself into hot water with that method.

Last edited by csinclair; 06-01-2007 at 08:17 AM.
 
Old 06-01-2007, 12:10 PM   #8
lleb
Member
 
Registered: Dec 2005
Posts: 776

Rep: Reputation: 52
hamachi is your friend.

http://www.hamachi.cc/download/list.php

enjoy. this will bypass the schools firewall and NOT get you in trouble. plus it is free.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Breaking College Firewall for Chatting scratch09 Linux - Security 2 06-17-2005 12:53 AM
pure-ftpd, getting past a firewall jdolluc Linux - Networking 6 10-31-2003 11:20 AM
just cant get back past squid/firewall wi ftp dasilva Linux - Newbie 3 10-10-2003 11:54 AM
Slackware is breaking on me h1tman Slackware 8 08-18-2003 06:53 AM
getting *past* a firewall Syncrm Linux - General 1 02-27-2002 06:26 AM


All times are GMT -5. The time now is 11:50 AM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration