jack <(E-Mail Removed)> wrote in message news:<cg35ed$4m7$02$(E-Mail Removed)>...
> Anyways, please send more info. - Others may benefit from Your experi-
> ence and later find Your solution via a web-search. - So please post
> the information.
>
> BTW, does that cable go with a static IP, or a dynamic one?
>
>
> Cheers, Jack.
Good call, Jack. My linux server is directly connected to my cable
modem, and I am assigned a dynamic IP. My internal network interface
has a static private IP address. The server is acting as a DHCP/DNS
server and as my network gateway. I found (after my initial post)
that even with "allow everything" iptables rules, any communication
from my server or from any workstation behind it would be very slow to
respond. When I pinged a host (
www.yahoo.com) from my linux server, I
would get an error "connect: resource unavailable" or something
similar, but if I retried five seconds later the ping would work. The
same occurred with web browsing - using the Konqueror web browser, I
would immediately get page not found errors, but if I waited five
seconds and refreshed the page would reload. Pages including lots of
references to images, ads, etc. on other URLs would never successfully
load.
From my WinXP PC behind the firewall, pages would just take about
10-15 seconds before they even started to load, and if I pinged
www.yahoo.com name resolution would be very fast (probably because the
DNS server on my linux server had previously initiated a connection
with my ISP's DNS server) but the first two or three pings would time
out.
I don't know why (possibly because I'm using DHCP for my WAN NIC), but
if I stop ipsec (Freeswan IPSEC VPN server included with Mandrake 10)
all delays vanished. I have not researched this further, since it is
a toy and I haven't found a good, free IPSEC client for 2k/XP anyway
(I have a very low opinion of 2k/XP's existing IPSEC tunnel support).
If anyone knows what the problem is, please post it! I'm curious.
Thanks,
Rob