LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 12-17-2004, 12:39 PM   #1
ealpert1
LQ Newbie
 
Registered: May 2003
Location: Colorado
Posts: 24

Rep: Reputation: 15
This one's got me stumped...suddenly can only connect in not out


I'm running debian unstable and do updates nightly. My kernel version is 2.4.22.

Suddenly on tuesday. Apt failed. So while checking out why I found that I can connect to my box but not out. ftp and ssh for instance hang in connect according to strace.

Iptraf confirms this as well the Flags are 'S---'

I run an iptables firewall and it has always worked (MonMotha's Firewall 2.3.8-pre8). I inspected my iptables too and can't find why my machine would blackhole it own outgoing connections.

I also didn't change anything in my routing tables.

I can traceroute and ping out so ICMP and UDP packets work just not outgoing TCP connections.

So my attention has turned to what was updated last as a possible source of the problem.

But nothing is obvious:

The following packages were updated the last time apt ran:


libgcrypt11 1.2.0-11
less 382-2
cron-apt 0.1.1
libatk1.0-0 1.8.0-4
vim-common 1:6.3-046+1

Anyone have any idea why one of these would break out going connections? libgcrypt?

Could this be a NIC problem? A reboot did not fix the problem.

Thanks for any insight,

-ethan
 
Old 12-17-2004, 02:34 PM   #2
peter_robb
Senior Member
 
Registered: Feb 2002
Location: Szczecin, Poland
Distribution: Gentoo, Debian
Posts: 2,458

Rep: Reputation: 48
How is it with the firewall off?

Kind of a start from basics and eliminate things one by one..

eg make sure all the firewall rules are loading..
 
Old 12-17-2004, 04:34 PM   #3
ealpert1
LQ Newbie
 
Registered: May 2003
Location: Colorado
Posts: 24

Original Poster
Rep: Reputation: 15
I'll try this but I have to wait till later as there's an e-commerce site on it and it's the week before x-mas don't want any downtime since incoming traffic still works.

Thanks I'll report back.

-e
 
Old 12-17-2004, 04:39 PM   #4
rbochan
Member
 
Registered: Dec 2004
Location: Central New York
Distribution: Debian
Posts: 218

Rep: Reputation: 30
Quote:
Originally posted by ealpert1
I'll try this but I have to wait till later as there's an e-commerce site on it and it's the week before x-mas don't want any downtime since incoming traffic still works.


Eeeeek! You're running a production machine on Sid? And you do updates nightly?
You have a set of brass ones ;o)
 
Old 12-17-2004, 04:50 PM   #5
ealpert1
LQ Newbie
 
Registered: May 2003
Location: Colorado
Posts: 24

Original Poster
Rep: Reputation: 15
Ok I got it.

Somehow some update turned ECN on and my router doesn't like packets with ECN.

sysctl -w net.ipv4.tcp_ecn=0

Did the trick

more /proc/sys/net/ipv4/tcp_ecn

will tell you if ECN is set.

-e

Last edited by ealpert1; 12-17-2004 at 05:15 PM.
 
Old 12-17-2004, 04:54 PM   #6
ealpert1
LQ Newbie
 
Registered: May 2003
Location: Colorado
Posts: 24

Original Poster
Rep: Reputation: 15
Quote:
Originally posted by rbochan
Eeeeek! You're running a production machine on Sid? And you do updates nightly?
You have a set of brass ones ;o)
heh...only the second time in a year an update borked.

unstable is really not.

 
Old 12-18-2004, 10:15 AM   #7
rbochan
Member
 
Registered: Dec 2004
Location: Central New York
Distribution: Debian
Posts: 218

Rep: Reputation: 30
Quote:
Originally posted by ealpert1
heh...only the second time in a year an update borked.

unstable is really not.

Oh, I know it's not, I use Sid on my desktop and laptop, and even install it for clients of mine. I'd be apprehensive about using it on a production server like the situation you're in however - especially doing nighly updates. By chance have you installed the apt-listbugs package? That can give you some warning before you actually upgrade a package that has known important/critical bugs and give you a brief synopsis of the bugs. It will then ask you to verify that you actually want the packages updated. It's saved my butt a couple of times when some major packages have been updated.
 
Old 12-18-2004, 01:51 PM   #8
ealpert1
LQ Newbie
 
Registered: May 2003
Location: Colorado
Posts: 24

Original Poster
Rep: Reputation: 15
hmm good call. I should go back and check to see if there were any recent references to some package setting ECN.

-e
 
Old 12-19-2004, 12:39 PM   #9
peter_robb
Senior Member
 
Registered: Feb 2002
Location: Szczecin, Poland
Distribution: Gentoo, Debian
Posts: 2,458

Rep: Reputation: 48
I'd recommend sending a bug-report on that one too once you find it..

Whether it's in an /etc script or an install script would be the difference between a repeat problem or a one-shot..

Accepting /etc scripts as they come can cause huge problems... ask anyone with gentoo..
I would suggest doing the upgrades during attendence hours until you can reconfigure the pre and post install script behaviour in dpkg..
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Kernel has me stumped oneandoneis2 Linux - General 1 11-06-2005 04:49 PM
USB Flash drive (no, really, this one's new!) Kalabew Linux - Software 0 07-09-2004 12:48 AM
Suddenly unable to connect to my web server and my ftp server. HELP! Silly22 Linux - Software 4 05-23-2004 04:42 PM
how to im stumped rocketgo Linux - Software 8 11-10-2003 10:10 PM
really has me stumped! brunogartner Linux - Newbie 4 06-30-2003 05:43 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 10:47 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration