An ssh Question



I have a machine that is my firewall/gateway to a private network NATing
non-routable addresses. I can ssh at-will from hosts on the private
network to machines out on the net, but when I try to ssh from the
firewall machine to a particular address, it just hangs and eventually
times out. Verbose output is:

OpenSSH_4.5p1 FreeBSD-20061110, OpenSSL 0.9.7e-p1 25 Oct 2004
debug1: Reading configuration data /etc/ssh/ssh_config
debug2: ssh_connect: needpriv 0
debug1: Connecting to xxxxxxxxxxxxxx.com [x.x.x.x] port 22.


What is really baffling is that if I try the exact same thing from, say,
a cygwin session on a host on the private network - this works fine.
So ... it's not a firewall problem as near as I can tell. It may be
an ssh configuration problem - that is, the FreeBSD ssh client can't do
it, but another client (cygwin) can.

Ideas?
--
----------------------------------------------------------------------------
Tim Daneliuk tundra@xxxxxxxxxxxxxx
PGP Key: http://www.tundraware.com/PGP/

_______________________________________________
freebsd-questions@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • Re: sshd / ftpd break-in attempts
    ... be port 123. ... Your firewall system sees the connection attempt, ... and opens a hole to the actual SSH server location (which could be ... percent of those hosts to your block rules, ...
    (comp.os.linux.misc)
  • Re: NAT external/Public IP
    ... than private addresses. ... using public addresses for hosts in your LAN does ... While a firewall will allow _return_ traffic across a PAT'ed ... new connections inbound to the private network host are ...
    (Security-Basics)
  • Re: Is it safe to install a Fedora rpm on Red Hat 9?
    ... Internet that's not being very well protected by a firewall from hosts ... other than the ones you trust accessing it or you won't have a working ... Thanks for the pointer to SSH. ...
    (linux.redhat)
  • Re: Is it safe to install a Fedora rpm on Red Hat 9?
    ... Internet that's not being very well protected by a firewall from hosts ... other than the ones you trust accessing it or you won't have a working ... Thanks for the pointer to SSH. ...
    (linux.redhat)
  • Re: [fw-wiz] Is NAT in OpenBSD PF UPnP enabled or Non UPnP?
    ... >> I start by not giving logins and SSH access to users I don't trust. ... a network topology which goes around the ... >> firewall and thus is a serious hole to network security. ... >> have access via UPnP to, well, anything that device might happen to ...
    (Firewall-Wizards)