Re: SSH port forward - one fails to listen



On Wed, Jun 30, 2010 at 1:24 PM, Terry <td3201@xxxxxxxxx> wrote:
Hello,

I have a single SSH gateway setup to receive port forward requests
from other clients.  Each client can establish up to 3 different
forwards like this:

Client 1:
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.50:1032:127.0.0.1:1032 user1@xxxxxxxxxxxxxx
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.50:1033:127.0.0.1:1033 user1@xxxxxxxxxxxxxx

Client 2:
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.51:1032:127.0.0.1:1032 user2@xxxxxxxxxxxxxx
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.51:1033:127.0.0.1:1033 user2@xxxxxxxxxxxxxx

Client 3:
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.52:1032:127.0.0.1:1032 user3@xxxxxxxxxxxxxx
/usr/bin/autossh -M 0 -N -p 443 -o ServerAliveInterval=20 -R
10.197.1.52:1033:127.0.0.1:1033 user3@xxxxxxxxxxxxxx

The first first two customers worked fine, the third is giving me this
error when setting up the second tunnel for port 1033:

Jun 30 13:06:44 server sshd[1500]: Accepted publickey for user3 from
external.ip port 12239 ssh2
Jun 30 13:06:44 server sshd[1500]: pam_unix(sshd:session): session
opened for user user3 by (uid=0)
Jun 30 13:06:44 server sshd[1502]: error: bind: Cannot assign requested address
Jun 30 13:06:44 server sshd[1502]: error: channel_setup_fwd_listener:
cannot listen to port: 1033
Jun 30 13:08:00 server sshd[1502]: Received disconnect from
external.ip: 11: disconnected by user
Jun 30 13:08:00 server sshd[1500]: pam_unix(sshd:session): session
closed for user user3

The IP is on the box and port 1032 is working fine.   Is there a max
number of forwards that needs to be tweaked or something like that?

Thanks!


I found a typo in the command (doh). There appears to be no such
limit as suggested in my email above. Sorry for wasting bits.



Relevant Pages

  • Re: thin client com ports
    ... I'm glad that you got at least one more client working! ... MCSE, CCEA, Microsoft MVP - Terminal Server ... the COM port settings? ... I am testing several thin clients. ...
    (microsoft.public.windows.terminal_services)
  • Re: network installation manager
    ... there is a firewall between master and client machines, ... NIM Communication within a Firewall Environment ... master via nimclient calls to the nimesis daemon. ... reserved port range of 1023-513. ...
    (comp.unix.aix)
  • help: using smtp.gmail.com as SMART_HOST
    ... with my Google gmail address. ... is pop.gmail.com, using port 995. ... Retrieving mail is not the problem since my Google searches ... client, I believe the term is) to send my mail to Google's ...
    (comp.mail.sendmail)
  • Re: Unable to print to networked printer - get access denied messa
    ... Check the permissions on the server assuming the client has a true RPC ... How is the Standard TCP/IP port configured for the device? ...
    (microsoft.public.windowsxp.print_fax)
  • Re: Why encapsulate state pattern......
    ... >>>without changing the interface nor the object's identity. ... >> closing an already closed port. ... is that the client has to track a rule that says old states need to be ... is open, in order to send data, so it needs to know that open, opens ...
    (comp.object)