[svlug] SSH disconnect thru firewall

Matthew Ettus matt at ettus.com
Tue Apr 3 17:47:01 PDT 2001


Thanks guys.  It turns out we have checkpoint, but it was set for a 60
second timeout on NAT entries.  They upped it for me once I pointed that
out to them.  Now my IMAP over SSH connection works even after reading
long svlug digests...

Matt

Rafael wrote:
> 
> On Mon, 2 Apr 2001, Matthew Ettus wrote:
> 
> > At work we have some sort of firewall.  I am able to ssh through it, but
> 
> Some firewalls do that. Sonicwall for example is one of them. Checkpoint
> doesn't do that in my experience, tried that on 3 CP firewalls so far.
> Restarting CPFW doesn't disconnect ssh either.
> 
> Linux ipchains leaves the connection open for hours also. As far as I know
> it's the server that eventualy kicks you off after a few hours of no
> activity.
> 


Jim Mason wrote:
> 
> Is your firewall is doing NAT/IP masquerading?  If so, it could be that the
> IP translation entry for your connection is expiring.
> 
> -Jim
>




More information about the svlug mailing list