SSH hangs/times out over masqueraded connection

From: jmartin-spamfree@spam.me.not.notamusica.com
Date: 12/27/02


From: jmartin-spamfree@spam.me.not.notamusica.com
Date: 27 Dec 2002 09:10:28 GMT

Hi,

I have a strange problem with ssh. When I connect from a host within my
internal network behind my masquerading firewall, ssh hangs after a while.
Sometimes, it's enough for me to type ls -l and return and the connection
hangs. Sometimes, I get a little bit farther.

This does not happen with every host I connect to, but only with some. I
assume these hosts are behind some other firewall (which is configured to
let ssh connections pass), but I have no means to find out whether that's
true.

My ssh client is OpenSSH 3.4, the servers I connect to run various versions
of OpenSSH and the commercial ssh implementation from SSH.com.

When I connect to the same hosts directly from my masquerading firewall,
there is no problem.

On a releated note, I have recently noticed that POP3 connections seem to
get stuck as well when initiated from a masqueraded host.

I would appreciate any hints...

Thanks
        Johannes

P.S.: My firewall and my client machines are running Debian/GNU Linux 3.0
      (with selected packages from testing/unstable) and Linux kernel 2.4.19.



Relevant Pages

  • RE: sshd / ssh setup
    ... We have an Remote FreeBSD system which is located some where on the ... This method gives the maximum protection possible utilizing ssh. ... Host setup steps. ... Reboot your system to activate sshd and login as root. ...
    (freebsd-questions)
  • SSH filter transer, was Re: Soft Update - directory/file listing
    ... But SSH file transfer is painfully slow all the time. ... ## SSH 3.2 Server Configuration File ... # Note that forwardings using the name of this host will be allowed (if ...
    (freebsd-performance)
  • Re: [opensuse] Re: OpenSUSE PuTTY ?
    ... PuTTY lets you set up all kinds of special options, tied to which host ... The ssh daemon on the host machine is usually activated by default, ... As a taster to open a remote session in a new window in any konsole ... Windows users should explore Cygwin as this will allow you to run ssh ...
    (SuSE)
  • Re: Disable name canonicalization for OpenSSH GSSAPI
    ... The issue I'm having is with a new server ... I'm unable to setup the correct reverse ... When I attempt to connect to this host with SSH, ...
    (comp.protocols.kerberos)
  • Re: hacked?
    ... So I ssh'd in and did a netstat and saw what looked like an unwanted SSH connection... ... On the local host type nmap -sV localhost -p 1-65535 to see what ports respond and which apps/services. ...
    (comp.os.linux.misc)