• does binkit log failed incoming connections?

    From Dumas Walker@1:229/2 to All on Monday, March 30, 2020 21:17:49
    From: dumas.walker@CAPCITY2.remove-3dn-this

    To: Digital Man
    I have a new node which is trying to connect to my system using binkp. I am able to connect to his fine, and send/receive mail. His attempted inbounds
    are not showing up on my syslog or even in the terminal window where sbbs is running. He is connecting, per his end.

    Mar 30 20:26:58 Scanning 1:2320/105

    Mar 30 20:26:58 Queued 1 files (588 bytes) to 1:2320/105

    Mar 30 20:26:58 Polling BINKP node 1:2320/105 (Mike Powell) by IPV4

    Mar 30 20:26:58 Connecting to capitolcityonline.net:24554 port 24554

    Mar 30 20:26:58 Connected IPV4 to 67.131.57.133

    Mar 30 20:26:58 Connection lost

    Mar 30 20:26:58 Authorization failed

    Mar 30 20:26:58 Polled 0 nodes

    He is using mystic. Only thing I can figure is that his IPA might be blocked here, but it is not in my ip silent file, and nothing is in my ip.can file. Plus I am not seeing a "blocked" message in the log on on the screen, either. Is there someplace else synchronet stores blocked addresses?

    Thanks!

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Monday, March 30, 2020 21:34:32
    From: al@1:153/757.2.remove-lo3-this

    To: Dumas Walker
    Hello Dumas,

    I have a new node which is trying to connect to my system using binkp.
    I am able to connect to his fine, and send/receive mail. His
    attempted inbounds are not showing up on my syslog or even in the
    terminal window where sbbs is running. He is connecting, per his end.

    I suspect he is not making it to your binkp service.

    Mar 30 20:26:58 Connecting to capitolcityonline.net:24554 port 24554

    Ask your link to take the :24554 off the command line since you are on the default port.

    That's a guess on my part but that :24554 on port 24554 looks suspicious to me.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Monday, March 30, 2020 23:12:57
    From: digital.man@vert.synchro.net.remove-xeo-this

    To: Dumas Walker
    Re: does binkit log failed incoming connections?
    By: Dumas Walker to Digital Man on Mon Mar 30 2020 09:17 pm

    I have a new node which is trying to connect to my system using binkp. I am able to connect to his fine, and send/receive mail. His attempted inbounds are not showing up on my syslog or even in the terminal window where sbbs is running. He is connecting, per his end.

    Mar 30 20:26:58 Scanning 1:2320/105

    Mar 30 20:26:58 Queued 1 files (588 bytes) to 1:2320/105

    Mar 30 20:26:58 Polling BINKP node 1:2320/105 (Mike Powell) by IPV4

    Mar 30 20:26:58 Connecting to capitolcityonline.net:24554 port 24554

    Mar 30 20:26:58 Connected IPV4 to 67.131.57.133

    Mar 30 20:26:58 Connection lost

    Mar 30 20:26:58 Authorization failed

    Mar 30 20:26:58 Polled 0 nodes

    He is using mystic. Only thing I can figure is that his IPA might be blocked here, but it is not in my ip silent file, and nothing is in my ip.can file. Plus I am not seeing a "blocked" message in the log on on the screen, either. Is there someplace else synchronet stores blocked addresses?

    Nope. Maybe you have a system firewall or gateway device that is filtering his connectons?

    digital man

    This Is Spinal Tap quote #14:
    The Boston gig has been cancelled. [Don't] worry, it's not a big college town. Norco, CA WX: 56.0øF, 74.0% humidity, 0 mph S wind, 0.00 inches rain/24hrs
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Monday, March 30, 2020 23:26:30
    From: al@1:153/757.2.remove-33q-this

    To: Dumas Walker
    Hello Dumas,

    I have a new node which is trying to connect to my system using binkp.
    I am able to connect to his fine, and send/receive mail. His
    attempted inbounds are not showing up on my syslog or even in the
    terminal window where sbbs is running. He is connecting, per his end.

    Looks like that to me too.. if I telnet to capitolcityonline.net on port 24554 I connect but immediately get "connection closed by foreign host"

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From alterego@1:229/2 to All on Tuesday, March 31, 2020 19:24:56
    From: alterego@ALTERANT.remove-xto-this

    To: Al
    Re: does binkit log failed incoming connections?
    By: Al to Dumas Walker on Mon Mar 30 2020 11:26 pm

    Looks like that to me too.. if I telnet to capitolcityonline.net on port 24554 I connect but immediately get "connection closed by foreign host"

    FWIW, I tried it, and it worked for me - I saw the familiar OPT CRAM-MD5-... ...deon


    ... A little inaccuracy sometimes saves tons of explanation. ÿ

    ---
    þ Synchronet þ Alterant | an SBBS in Docker on Pi!
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Tuesday, March 31, 2020 08:23:39
    From: rampage@SESTAR.remove-wfm-this

    To: Dumas Walker
    Re: does binkit log failed incoming connections?
    By: Dumas Walker to Digital Man on Mon Mar 30 2020 21:17:49


    Mar 30 20:26:58 Connecting to capitolcityonline.net:24554 port 24554

    for some reason, the above doesn't look right... it looks like they have the port tacked onto the end of your domain as well as having the port defined in their record for your system...


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Tuesday, March 31, 2020 02:34:56
    From: al@1:153/757.2.remove-wz9-this

    To: alterego
    Hello alterego,

    Looks like that to me too.. if I telnet to capitolcityonline.net
    on port 24554 I connect but immediately get "connection closed by
    foreign host"

    FWIW, I tried it, and it worked for me - I saw the familiar OPT CRAM-MD5-...
    ...deon

    I was expecting the CRAM-MD5 but I get..


    Trying 67.131.57.133...
    Connected to capitolcityonline.net.
    Escape character is '^]'.
    Connection closed by foreign host.

    I don't know why that happens.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Tuesday, March 31, 2020 08:34:35
    From: rampage@SESTAR.remove-gbm-this

    To: Al
    Re: does binkit log failed incoming connections?
    By: Al to Dumas Walker on Mon Mar 30 2020 23:26:30


    I have a new node which is trying to connect to my system
    using binkp. I am able to connect to his fine, and
    send/receive mail. His attempted inbounds are not showing
    up on my syslog or even in the terminal window where sbbs
    is running. He is connecting, per his end.

    Looks like that to me too.. if I telnet to
    capitolcityonline.net on port 24554 I connect but
    immediately get "connection closed by foreign host"

    that seems reasonable since you don't manually send the data required... i set a poll for my binkd and was able to connect without problems... blank lines added to the below to avoid wordwrap hell...

    + 08:27 [17770] call to 1:2320/105@fidonet

    08:27 [17770] trying capcity2.synchro.net [67.131.57.133]...

    08:27 [17770] connected

    + 08:27 [17770] outgoing session with capcity2.synchro.net:24554 [67.131.57.133]

    - 08:27 [17770] OPT CRAM-MD5-112d038a01a74437e3cbb6d8a11d2883 CRYPT

    + 08:27 [17770] Remote requests MD mode

    + 08:27 [17770] Remote requests CRYPT mode

    - 08:27 [17770] SYS Capitol City Online

    - 08:27 [17770] ZYZ Mike Powell

    - 08:27 [17770] LOC Kentucky, USA

    - 08:27 [17770] NDL 115200,TCP,BINKP

    - 08:27 [17770] TIME Tue Mar 31 2020 08:27:54 GMT-0400 (EDT)

    - 08:27 [17770] VER BinkIT/2.30,JSBinkP/1.122,sbbs3.17c/Linux binkp/1.1

    + 08:27 [17770] addr: 1:2320/105@fidonet

    + 08:27 [17770] addr: 1:2320/0@fidonet

    + 08:27 [17770] addr: 21:1/175@fsxnet

    + 08:27 [17770] addr: 42:17/1@sfnet

    + 08:27 [17770] addr: 46:10/121@agoranet

    + 08:27 [17770] addr: 77:1/115@scinet

    + 08:27 [17770] addr: 276:276/0@gtpower

    + 08:27 [17770] addr: 314:314/25@pinet

    + 08:27 [17770] addr: 432:1/120@vkradio

    + 08:27 [17770] addr: 454:1/105@ilink

    + 08:27 [17770] addr: 454:3/105@ilink

    + 08:27 [17770] addr: 618:250/1@micronet

    + 08:27 [17770] addr: 901:1/19@dixie

    + 08:27 [17770] addr: 1337:3/103@tqwnet

    + 08:27 [17770] addr: 637:1/112.8@happynet

    + 08:27 [17770] done (to 1:2320/105@fidonet, OK, S/R: 0/0 (0/0 bytes))

    08:27 [17770] session closed, quitting...

    08:27 [20532] rc(17770)=0



    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Tuesday, March 31, 2020 11:47:38
    From: al@1:153/757.2.remove-k7c-this

    To: Rampage
    Hello Rampage,

    I have a new node which is trying to connect to my system
    using binkp. I am able to connect to his fine, and
    send/receive mail. His attempted inbounds are not showing
    up on my syslog or even in the terminal window where sbbs
    is running. He is connecting, per his end.

    Looks like that to me too.. if I telnet to
    capitolcityonline.net on port 24554 I connect but
    immediately get "connection closed by foreign host"

    that seems reasonable since you don't manually send the data
    required... i set a poll for my binkd and was able to connect without problems... blank lines added to the below to avoid wordwrap hell...

    I can't poll capitolcityonline.net with my mailer either.

    I can telnet sestar.synchro.net 24554 and I see the OPT CRAM-MD5 greeting from your mailer. I hit <CTRL> } and then close the connection but I can't telnet or binkp into capitolcityonline.net. I suspect a peer block or similar issue but I don't know what the block is.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Tuesday, March 31, 2020 17:24:00
    From: dumas.walker@CAPCITY2.remove-qwz-this

    To: RAMPAGE
    for some reason, the above doesn't look right... it looks like they have the po
    t tacked onto the end of your domain as well as having the port defined in thei
    record for your system...

    It is mystic. I have asked him about that and apparently he includes the
    port on all of his connections. I have never tried using mystic's binkp to connect to a system on the standard port so I am not sure whether he really should or not?


    * SLMR 2.1a * They went that-a-way --->

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Tuesday, March 31, 2020 17:59:00
    From: dumas.walker@CAPCITY2.remove-qwz-this

    To: AL
    Trying 67.131.57.133...
    Connected to capitolcityonline.net.
    Escape character is '^]'.
    Connection closed by foreign host.

    I don't know why that happens.

    Hmmm... do you happen to remember the time and date that you did that? You
    are on PDT, right? I'd like to check my logs.


    * SLMR 2.1a * >DIODE; What happens to people who don't die young.

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Tuesday, March 31, 2020 17:29:00
    From: dumas.walker@CAPCITY2.remove-qwz-this

    To: DIGITAL MAN
    He is using mystic. Only thing I can figure is that his IPA might be
    blocked here, but it is not in my ip silent file, and nothing is in my
    ip.can file. Plus I am not seeing a "blocked" message in the log on on the >> screen, either. Is there someplace else synchronet stores blocked addresses?

    Nope. Maybe you have a system firewall or gateway device that is filtering his >onnectons?

    Nope it doesn't saved blocked IP address anywhere else, or nope it does not
    log failed binkit connections? :)

    I should not have anything else that does any filtering but will dig around some more. It would help if the logging on his end was more detailed.
    Binkit and binkd give more details than that... you can pretty much tell if
    you are actually reaching the binkd on the other end or not.


    * SLMR 2.1a * My neighbor has a circular driveway. she can't get out.

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Tuesday, March 31, 2020 15:39:56
    From: al@1:153/757.2.remove-it0-this

    To: Dumas Walker
    Hello Dumas,

    You are on PDT, right? I'd like to check my logs.

    Yes, that's right. TZUTC -0700

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Tuesday, March 31, 2020 15:34:34
    From: al@1:153/757.2.remove-it0-this

    To: Dumas Walker
    Hello Dumas,

    Trying 67.131.57.133...
    Connected to capitolcityonline.net.
    Escape character is '^]'.
    Connection closed by foreign host.

    I don't know why that happens.

    Hmmm... do you happen to remember the time and date that you did that?
    You are on PDT, right? I'd like to check my logs.

    I just tried agian with the same result. Is that the right IP address?

    My IP is 104.246.155.40, do you see that in your log?

    My BBBS mailer is similar to Mystics mailer. It just fails and doesn't give any indication of why, I don't think it knows why.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757.2)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Tony Langdon@1:229/2 to Dumas Walker on Wednesday, April 01, 2020 18:03:00
    From: tony.langdon@3:633/410.remove-2p-this

    To: Dumas Walker
    On 03-31-20 17:24, Dumas Walker wrote to RAMPAGE <=-

    for some reason, the above doesn't look right... it looks like they have the
    po
    t tacked onto the end of your domain as well as having the port defined in
    thei
    record for your system...

    It is mystic. I have asked him about that and apparently he includes
    the port on all of his connections. I have never tried using mystic's binkp to connect to a system on the standard port so I am not sure
    whether he really should or not?

    No need to, I only use the port if it's non standard.


    ... I don't have any solution, but I certainly admire the problem.
    === MultiMail/Win v0.51
    --- SBBSecho 3.10-Linux
    * Origin: Freeway BBS Bendigo,Australia freeway.apana.org.au (3:633/410)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Wednesday, April 01, 2020 15:38:48
    From: al@1:153/757.remove-s9g-this

    To: Dumas Walker
    No it does not. Nothing beginning with 104. is anywhere in my /sbbs/text
    ip.can or ip silent file. I did add you to my /sbbs/ctrl ipfilter exempt file
    so we will see what that does if you are willing to try again.

    This is what I got just a minute ago..

    alan@trmb:~$ telnet capitolcityonline.net 24554 Trying 67.131.57.133... Connected to capitolcityonline.net. Escape character is '^]'.
    Connection closed by foreign host.

    So I think I did connect breifly before the connection was closed.

    --- BBBS/Li6 v4.10 Toy-4
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Wednesday, April 01, 2020 12:36:09
    From: dumas.walker@CAPCITY2.remove-iq9-this

    To: Al
    Trying 67.131.57.133...

    I just tried agian with the same result. Is that the right IP address?

    Yes, that is the right one.

    My IP is 104.246.155.40, do you see that in your log?

    No it does not. Nothing beginning with 104. is anywhere in my /sbbs/text ip.can or ip silent file. I did add you to my /sbbs/ctrl ipfilter exempt file so we will see what that does if you are willing to try again.

    I am also wondering if I had a "negative" entry into one of the can files if that will also knock a hole open for you.

    I am still at least partially convinced that syncrhonet keeps a list of
    blocked ipas somewhere besides those two can files. It is not my router because Berry can reach my magicka bbs on another machine behind the same router. It is possible there is something odd on this machine besides synchronet. I don't have any servers on it to test that are not synchronet though.

    I am running ubuntu. I did not intentionally set up any type of firewall software, but that does not mean there is not a gremlin on the loose
    somewhere. :)

    My BBBS mailer is similar to Mystics mailer. It just fails and doesn't give any
    indication of why, I don't think it knows why.

    One thing I like about synchronet... it has a lot of configuration that needs doing, but the logging is usually top notch. Makes it easier to find issues, assuming the node you are working with can even get in. :)

    Mike

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Thursday, April 02, 2020 06:07:42
    From: rampage@SESTAR.remove-11sk-this

    To: Al
    Re: Re: does binkit log failed in
    By: Al to Dumas Walker on Wed Apr 01 2020 15:38:48


    alan@trmb:~$ telnet capitolcityonline.net 24554 Trying 67.131.57.133... Connected to capitolcityonline.net. Escape character is '^]'.
    Connection closed by foreign host.

    So I think I did connect breifly before the connection was closed.

    you did get the SYN packet sent but the remote dropped you for some reason...

    can you try running tcpdump and capturing the session? something like this should work...

    tcpdump -i eth0 -s0 -w cco-%Y%m%d%H%M%S.pcap -G 3600 -C 2 'host your.ip.here or
    67.131.57.133'

    make sure you replace 'eth0' with the id of your NIC and 'your.ip.here' with your machine's IP address... any captured traffic will be written to (eg) cc0-20200402055200.pcap... the file will be rotated to a new name starting with
    'cc0-' every hour or
    when it reaches 2 megabytes in size... start tcpdump in a window and let it run...

    in another window, try your test via telnet or trigger a poll via your mailer... when the test is finished, switch back to the tcpdump window and ^C to stop tcpdump... when tcpdump stops, it will tell you how many packets it captured... if it captured
    none, we need to look a little closer and figure out why... in this case, it is
    likely that one or both addresses is wrong...

    once you have some packets captured, the .pcap file(s) can be analyzed with a tool like wireshark or even tcpdump itself... i prefer to capture with tcpdump and analyze with wireshark even though both can do both jobs...

    my thinking here is mainly to see if the destination system is the one that is shutting down the connection or if it is maybe an intermediate system... kinda like how some services shut down torrent traffic by detecting it and injecting rejection packets
    into the stream to cause the transfer to stop... but let's see if we can see what is actually happening first...


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Thursday, April 02, 2020 05:16:52
    From: al@1:153/757.remove-vjm-this

    To: Rampage
    Hello Rampage,

    can you try running tcpdump and capturing the session? something like
    this should work...

    I did and the resulting file is in cco-pcap.zip in your inbound.

    I did telnet capitolcityonline.net 24554, again on port 23, and again on port 7636 and reached his other BBSs login, then I just closed the connection.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Thursday, April 02, 2020 08:25:30
    From: al@1:153/757.remove-hee-this

    To: Rampage
    Hello Rampage,

    can you also post a traceroute to 67.131.57.133?

    Yes, here it is..


    === Cut ===
    traceroute to 67.131.57.133 (67.131.57.133), 30 hops max, 60 byte packets
    1 192.168.0.1 (192.168.0.1) 0.163 ms 0.142 ms 0.141 ms
    2 96.50.224.1 (96.50.224.1) 12.050 ms 12.059 ms 12.038 ms
    3 rd3cs-be104-1.ok.shawcable.net (64.59.169.161) 19.247 ms 23.208 ms 23.218 ms
    4 xe-1-2-0-825-agg01-van2.teksavvy.com (192.252.226.5) 22.024 ms 21.963 ms 23.485 ms
    5 ae1-203.cr0-van1.ip4.gtt.net (69.174.15.209) 23.749 ms 23.683 ms 25.352 ms
    6 ae37.cr1-chi1.ip4.gtt.net (89.149.185.98) 72.119 ms 63.269 ms 64.906 ms
    7 173.205.35.114 (173.205.35.114) 64.634 ms 62.674 ms 68.311 ms
    8 ae0-0.agr01.lsvp01-ky.us.windstream.net (40.129.40.73) 75.355 ms 77.591 ms 78.424 ms
    9 xe5-2-0-0.pe02.lsvp01-ky.us.windstream.net (40.136.210.219) 78.425 ms 79.505 ms 80.698 ms
    10 * * *
    11 * * *
    12 * * *
    13 * * *
    14 * * *
    15 * * *
    16 * * *
    17 * * *
    18 * * *
    19 * * *
    20 * * *
    21 * * *
    22 * * *
    23 * * *
    24 * * *
    25 * * *
    26 * * *
    27 * * *
    28 * * *
    29 * * *
    30 * * *
    === Cut ===

    sorry i couldn't bring better news...

    Thank you for your help. Dumas now knows where to look.. :)

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Thursday, April 02, 2020 09:56:33
    From: rampage@SESTAR.remove-ntm-this

    To: Al
    Re: does binkit log failed in
    By: Al to Rampage on Thu Apr 02 2020 05:16:52


    can you try running tcpdump and capturing the session? something like
    this should work...

    I did and the resulting file is in cco-pcap.zip in your inbound.

    got it...

    I did telnet capitolcityonline.net 24554,

    here's the analysis of the first connection to his port 24554:

    1 0.000000 192.168.0.10 67.131.57.133 TCP 74 37902
    24554 [SYN] Seq=0 Win=29200 Len=0 MSS=1460 SACK_PERM=1 TSval=225677907
    TSecr=0 WS=128

    2 0.106554 67.131.57.133 192.168.0.10 TCP 74 24554
    37902 [SYN, ACK] Seq=0 Ack=1 Win=7240 Len=0 MSS=1460 SACK_PERM=1
    TSval=3612730178 TSecr=225677907 WS=1

    3 0.106625 192.168.0.10 67.131.57.133 TCP 66 37902
    24554 [ACK] Seq=1 Ack=1 Win=29312 Len=0 TSval=225678014 TSecr=3612730178

    above is the 3-way handshake (HS)... this is proper... you can see it goes between your port 37902 and his port 24554...

    4 0.205658 67.131.57.133 192.168.0.10 TCP 66 24554
    37902 [FIN, ACK] Seq=1 Ack=1 Win=7240 Len=0 TSval=3612730275 TSecr=225678014

    5 0.205833 192.168.0.10 67.131.57.133 TCP 66 37902
    24554 [FIN, ACK] Seq=1 Ack=2 Win=29312 Len=0 TSval=225678113
    TSecr=3612730275

    6 0.316962 67.131.57.133 192.168.0.10 TCP 66 24554
    37902 [ACK] Seq=2 Ack=2 Win=7239 Len=0 TSval=3612730370 TSecr=225678113

    the 3-way HS is then followed immediately by the connection termination sequence... this is the remote end terminating the connection... the question is why...



    again on port 23,

    this one you can see goes from your port 38602 to his port 23...

    7 5.903464 192.168.0.10 67.131.57.133 TCP 74 38602
    23 [SYN] Seq=0 Win=29200 Len=0 MSS=1460 SACK_PERM=1 TSval=225683811 TSecr=0
    WS=128

    8 6.000850 67.131.57.133 192.168.0.10 TCP 74 23 -> 38602 [SYN, ACK] Seq=0 Ack=1 Win=7240 Len=0 MSS=1460 SACK_PERM=1 TSval=3612736072 TSecr=225683811 WS=1

    9 6.000932 192.168.0.10 67.131.57.133 TCP 66 38602
    23 [ACK] Seq=1 Ack=1 Win=29312 Len=0 TSval=225683908 TSecr=3612736072

    10 6.004699 192.168.0.10 67.131.57.133 TELNET 90 Telnet Data ...

    here the telnet connection is negotiated... it appears normal as well...

    11 6.103170 67.131.57.133 192.168.0.10 TCP 66 23 -> 38602 [ACK] Seq=1 Ack=25 Win=7216 Len=0 TSval=3612736174 TSecr=225683912

    12 6.109538 67.131.57.133 192.168.0.10 TCP 66 [TCP Dup ACK 11#1] 23 -> 38602 [ACK] Seq=1 Ack=25 Win=7216 Len=0 TSval=3612736174 TSecr=225683912

    13 6.116182 67.131.57.133 192.168.0.10 TCP 66 23 -> 38602 [FIN, ACK] Seq=1 Ack=25 Win=7216 Len=0 TSval=3612736175 TSecr=225683912

    14 6.116250 67.131.57.133 192.168.0.10 TCP 66 23 -> 38602 [RST, ACK] Seq=2 Ack=25 Win=7216 Len=0 TSval=3612736175 TSecr=225683912

    then we're here with the remote sending the terminate signal followed by a ReSeT... effectively closing the connection...


    and again on port 7636 and reached his other BBSs login, then I just
    closed the connection.

    i'm not going to post the last one but it is good, like the others except that it also includes two packets carrying the opening screen data from the server to your system... it is also closed by the standard FIN/ACK, ACK sequence...

    so the task moves back to the remote side to figure out why it is terminating those connections to its binkp and telnet ports... it could be the software on those ports but it is still possible that they are being filtered/blocked before the software
    even sees the traffic... especially since the software is not recording the transaction and subsequent dropping of the connection... i'm starting to suspect the ISP may be filtering port 24554 and port 23 but others are able to connect to those ports so
    that doesn't make sense... unless there is some sort of region blocking on certain inbound ports... i do note that the IP is owned by centurylink not that
    that really means much, though...

    can you also post a traceroute to 67.131.57.133?

    sorry i couldn't bring better news...


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Thursday, April 02, 2020 10:01:04
    From: al@1:153/757.remove-10vq-this

    To: Rampage
    Hello Rampage,

    sorry i couldn't bring better news...

    You've been very helpful.

    Dumas put up binkd on another port and I was able to connect without issue using both telnet and a binkp mailer session.

    That sounds to me like Synchronet/BinkIT is silently dropping the connection without logging?

    Is there a way to test that theory?

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Thursday, April 02, 2020 10:57:09
    From: digital.man@vert.synchro.net.remove-10vq-this

    To: Al
    Re: does binkit log failed in
    By: Al to Rampage on Thu Apr 02 2020 10:01 am

    Hello Rampage,

    sorry i couldn't bring better news...

    You've been very helpful.

    Dumas put up binkd on another port and I was able to connect without issue using both telnet and a binkp mailer session.

    That sounds to me like Synchronet/BinkIT is silently dropping the connection without logging?

    Is there a way to test that theory?

    Maybe the port is the key, switch the ports around between binkd and BinkIT and see what changes.

    digital man

    This Is Spinal Tap quote #29:
    I find lost luggage. I locate mandolin strings in the middle of Austin!
    Norco, CA WX: 62.2øF, 65.0% humidity, 0 mph ESE wind, 0.00 inches rain/24hrs --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Al@1:229/2 to All on Thursday, April 02, 2020 11:02:52
    From: al@1:153/757.remove-11t6-this

    To: Digital Man
    Hello Digital,

    That sounds to me like Synchronet/BinkIT is silently dropping the
    connection without logging?

    Is there a way to test that theory?

    Maybe the port is the key, switch the ports around between binkd and BinkIT and see what changes.

    I think Dumas has BinkIT running on port 24554 and put up binkd just to test on port 24553.

    I and another node just setting up with Dumas can't connect to Dumas's BBS on port 23 for telnet or port 24554 for binkp sessions.

    The strange thing is Dumas has been running his BBS and mailer on the standard ports and most folks get in with no problem.

    The fact his mailer is up and running could make it troublesome for him to switch ports around but I am here and willing to test whatever services or ports need testing.

    Dumas: let me know if you'd like me to try different ports.

    Ttyl :-),
    Al

    --- GoldED+/LNX 1.1.5-b20180707
    * Origin: The Rusty MailBox - Penticton, BC Canada (1:153/757)
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Thursday, April 02, 2020 14:23:28
    From: rampage@SESTAR.remove-cxf-this

    To: Al
    Re: does binkit log failed in
    By: Al to Rampage on Thu Apr 02 2020 10:01:04


    Dumas put up binkd on another port and I was able to connect without
    issue using both telnet and a binkp mailer session.

    that's... interesting...

    That sounds to me like Synchronet/BinkIT is silently dropping the connection without logging?

    i guess it could do that depending on logging options...

    Is there a way to test that theory?

    i dunno... DM would be the more lokely one with that info...


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Thursday, April 02, 2020 15:39:00
    From: dumas.walker@CAPCITY2.remove-joa-this

    To: RAMPAGE
    so the task moves back to the remote side to figure out why it is terminating t
    ose connections to its binkp and telnet ports... it could be the software on th
    se ports but it is still possible that they are being filtered/blocked before t
    e software even sees the traffic... especially since the software is not record
    ng the transaction and subsequent dropping of the connection... i'm starting to
    suspect the ISP may be filtering port 24554 and port 23 but others are able to >onnect to those ports so that doesn't make sense... unless there is some sort o
    region blocking on certain inbound ports... i do note that the IP is owned by
    enturylink not that that really means much, though...

    It is possible the ISP is filtering on regions but one of the users is
    using AT&T and is only a county or two away from me in the same state. I suspect it is something with synchronet simply because Al has since been
    able to connect to a port (24553 under binkd control) that is not under the control of synchronet but that is on the same machine.


    * SLMR 2.1a * Four out of five people think the fifth is an idiot.

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Thursday, April 02, 2020 15:46:00
    From: dumas.walker@CAPCITY2.remove-xh9-this

    To: AL
    sorry i couldn't bring better news...

    Thank you for your help. Dumas now knows where to look.. :)

    Well, not really. I was thinking maybe one of the hops would be in my ip-silent.can but none of them are.


    * SLMR 2.1a * Lite Year: low calorie year!

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Thursday, April 02, 2020 19:26:04
    From: rampage@SESTAR.remove-xh9-this

    To: Dumas Walker
    Re: does binkit log failed in
    By: Dumas Walker to AL on Thu Apr 02 2020 15:46:00


    Well, not really. I was thinking maybe one of the hops would be in my
    ip-silent.can but none of them are.

    router hops are not recorded in the packets so they won't be recorded in any blocking software... it is only the originating IP that you should be looking for...

    but yeah, this appears to be being blocked before the traffic gets to your sbbs
    on those ports...

    is this a windows box? have you tried turning off the windows firewall? do you have some fancy anti-virus that may be monitoring the network and could be blocking?


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Friday, April 03, 2020 00:44:13
    From: digital.man@vert.synchro.net.remove-5ls-this

    To: Rampage
    Re: does binkit log failed in
    By: Rampage to Dumas Walker on Thu Apr 02 2020 07:26 pm

    Re: does binkit log failed in
    By: Dumas Walker to AL on Thu Apr 02 2020 15:46:00


    Well, not really. I was thinking maybe one of the hops would be in my ip-silent.can but none of them are.

    router hops are not recorded in the packets so they won't be recorded in any blocking software... it is only the originating IP that you should be looking for...

    The issue was root-caused to bad syntax in the sysop's text/ip-silent.can file.
    The line ".46~" matched (and silently dropped connections from) the problem IP addresses, unintentionally.

    So yeah, the TCP connections were reaching SBBS and being silent disconnected.

    digital man

    Synchronet "Real Fact" #65:
    Synchronet can dynamically compress and uncompress message bases (using LZH). Norco, CA WX: 54.2øF, 86.0% humidity, 0 mph S wind, 0.00 inches rain/24hrs
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Friday, April 03, 2020 09:23:30
    From: rampage@SESTAR.remove-ihn-this

    To: Digital Man
    Re: does binkit log failed in
    By: Digital Man to Rampage on Fri Apr 03 2020 00:44:13


    Well, not really. I was thinking maybe one of the hops would be in
    my ip-silent.can but none of them are.

    Rampage>> router hops are not recorded in the packets so they won't be
    Rampage>> recorded in any blocking software... it is only the originating
    Rampage>> IP that you should be looking for...

    The issue was root-caused to bad syntax in the sysop's
    text/ip-silent.can file. The line ".46~" matched (and silently
    dropped connections from) the problem IP addresses, unintentionally.

    my next step was going to be to ask to see the ip.can and ip-silent.can files... i mean, if it wasn't the firewall or the ISP, it had to be local...
    i can't even imagine what one would be trying to block with that particular entry...

    So yeah, the TCP connections were reaching SBBS and being silent disconnected.

    i'm glad you found it... that's why you get paid the big sbbs bucks :)


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Friday, April 03, 2020 11:08:06
    From: digital.man@vert.synchro.net.remove-11tp-this

    To: Rampage
    Re: does binkit log failed in
    By: Rampage to Digital Man on Fri Apr 03 2020 09:23 am

    So yeah, the TCP connections were reaching SBBS and being silent disconnected.

    i'm glad you found it... that's why you get paid the big sbbs bucks :)

    Ha! :-)

    digital man

    Synchronet/BBS Terminology Definition #26:
    FDSZ = FOSSIL DSZ (by Chuck Forsberg)
    Norco, CA WX: 61.1øF, 66.0% humidity, 3 mph E wind, 0.00 inches rain/24hrs
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Rampage@1:229/2 to All on Friday, April 03, 2020 20:02:22
    From: rampage@SESTAR.remove-mdg-this

    To: Digital Man
    Re: does binkit log failed in
    By: Digital Man to Rampage on Fri Apr 03 2020 11:08:06


    Rampage>> i'm glad you found it... that's why you get paid the big sbbs bucks :)

    Ha! :-)

    i thought you'd like that ;) O:)


    )\/(ark

    ---
    þ Synchronet þ The SouthEast Star Mail HUB - SESTAR
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Friday, April 03, 2020 18:18:00
    From: dumas.walker@CAPCITY2.remove-7ve-this

    To: DIGITAL MAN
    The issue was root-caused to bad syntax in the sysop's text/ip-silent.can file.
    The line ".46~" matched (and silently dropped connections from) the problem IP >ddresses, unintentionally.

    So yeah, the TCP connections were reaching SBBS and being silent disconnected.

    I have one other syntax related question. There is a note in the *.can
    files that says:

    Wildcard characters (*, ^, ~) are allowed and ! negates the match

    If I would have added an entry for Al and Beery's IPAs starting with a '!'
    in the ip-silent.can file, would that have allowed them in even though they were covered (accidentally) by my bad syntax?

    I did not try it, since you helped me fix the root problem, but I wondered
    what that would have done.

    Thanks!!!


    * SLMR 2.1a * Coming soon: New Taglines!

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Friday, April 03, 2020 18:22:00
    From: dumas.walker@CAPCITY2.remove-7ve-this

    To: RAMPAGE
    my next step was going to be to ask to see the ip.can and ip-silent.can files..
    i mean, if it wasn't the firewall or the ISP, it had to be local...
    i can't even imagine what one would be trying to block with that particular ent
    y...

    I was trying to block all IPAs starting with '46.' because I had a lot of trouble with that one. For some reason, I thought the '~,^,*' were interchangable and was using the tilde. Wrong! :D

    FYI, IPAs starting with 46 tend to come out of Russia and/or the former
    USSR. Normally I try to be more specific and block 1.2.3.4/5 to only cover
    a particular provider. I went overboard with that one.


    * SLMR 2.1a * Bill T. Cat of Borg: "You will be Ack!Thbbpt!imilated!!"

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Friday, April 03, 2020 21:42:56
    From: digital.man@vert.synchro.net.remove-27f-this

    To: Dumas Walker
    Re: does binkit log failed in
    By: Dumas Walker to DIGITAL MAN on Fri Apr 03 2020 06:18 pm

    The issue was root-caused to bad syntax in the sysop's text/ip-silent.can file.
    The line ".46~" matched (and silently dropped connections from) the problem IP >ddresses, unintentionally.

    So yeah, the TCP connections were reaching SBBS and being silent disconnected.

    I have one other syntax related question. There is a note in the *.can files that says:

    Wildcard characters (*, ^, ~) are allowed and ! negates the match

    If I would have added an entry for Al and Beery's IPAs starting with a '!' in the ip-silent.can file, would that have allowed them in even though they were covered (accidentally) by my bad syntax?

    No. Since their IP matched one of your lines (rules), they would still have been filtered.

    I did not try it, since you helped me fix the root problem, but I wondered what that would have done.

    There's really nothing you could have added to exclude their specific IP addresses since they matched that more general rule you had.

    digital man

    Synchronet "Real Fact" #13:
    Synchronet was the first BBS software to ship with internal QWK networking. Norco, CA WX: 54.9øF, 82.0% humidity, 2 mph ESE wind, 0.00 inches rain/24hrs --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Gamgee@1:229/2 to Dumas Walker on Saturday, April 04, 2020 07:41:00
    From: gamgee@PALANT.remove-3i5-this

    To: Dumas Walker
    Dumas Walker wrote to RAMPAGE <=-

    my next step was going to be to ask to see the ip.can and ip-silent.can files..

    I was trying to block all IPAs starting with '46.' because I had
    a lot of trouble with that one. For some reason, I thought the
    '~,^,*' were interchangable and was using the tilde. Wrong! :D

    You may already be aware of this, but those modifier characters
    are explained pretty well here:

    http://wiki.synchro.net/config:filter_files



    ... Chuck Norris can divide by zero.
    --- MultiMail/Linux v0.52
    þ Synchronet þ Palantir BBS * palantirbbs.ddns.net * Pensacola, FL
    --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Saturday, April 04, 2020 08:46:00
    From: dumas.walker@CAPCITY2.remove-53b-this

    To: DIGITAL MAN
    No. Since their IP matched one of your lines (rules), they would still have bee
    filtered.

    There's really nothing you could have added to exclude their specific IP addres
    es since they matched that more general rule you had.

    Good to know. Under what circumstances would the '!' entries be of use for?


    * SLMR 2.1a * An atheist is a man with no invisible means of support.

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Digital Man@1:229/2 to All on Saturday, April 04, 2020 12:07:56
    From: digital.man@vert.synchro.net.remove-tjj-this

    To: Dumas Walker
    Re: does binkit log failed in
    By: Dumas Walker to DIGITAL MAN on Sat Apr 04 2020 08:46 am

    No. Since their IP matched one of your lines (rules), they would still have bee
    filtered.

    There's really nothing you could have added to exclude their specific IP addres
    es since they matched that more general rule you had.

    Good to know. Under what circumstances would the '!' entries be of use for?

    Depends on which .can/cfg file you're referring to, but for ip*.can, let's say you only wanted to accept connections from 192.168.*. You could have a single line, "!192.168.*" which would filter/block everything *but* the IPs you trusted.

    digital man

    Synchronet/BBS Terminology Definition #62:
    SBBS = Synchronet Bulletin Board System
    Norco, CA WX: 62.0øF, 65.0% humidity, 1 mph WNW wind, 0.00 inches rain/24hrs --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)
  • From Dumas Walker@1:229/2 to All on Sunday, April 05, 2020 12:50:00
    From: dumas.walker@CAPCITY2.remove-2b2-this

    To: DIGITAL MAN
    Good to know. Under what circumstances would the '!' entries be of use for?

    Depends on which .can/cfg file you're referring to, but for ip*.can, let's say >ou only wanted to accept connections from 192.168.*. You could have a single li
    e, "!192.168.*" which would filter/block everything *but* the IPs you trusted.

    Oh wow, that'd be more powerful than I imagined. Thanks!


    * SLMR 2.1a * Truth Through Superior Firepower.

    ---
    þ Synchronet þ CAPCITY2 * capcity2.synchro.net * Telnet/SSH:2022/Rlogin/HTTP --- Synchronet 3.17c-Win32 NewsLink 1.111
    * Vertrauen - Riverside County, California - telnet://vert.synchro.net

    --- SoupGate-Win32 v1.05
    * Origin: www.darkrealms.ca (1:229/2)