![]() |
|
|
#1 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
XDMCP and ssh
The linux forum was getting dusty so I thought I'd freshen it up a bit.
So, next August I'll be travelling to Japan for a month or so. I'm thinking it wouldn't be in my best interest to get on the internet unprotected.... so I figure I could set up a machine at home and configure it for XDMCP and ssh so that I can log into it from Japan and surf the internet through my local connection. I could tunnel my connection through my home machine too I suppose. This would cut down on the bandwidth usage. What are your thoughts? If I go this route I would want to use my WRT54GS for this. I'd rather not use a public proxy if possible. Thoughts, concerns?
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ |
|
|
|
|
|
#3 (permalink) |
|
Nyuk nyuk!
Join Date: Jan 2005
Location: TX
Posts: 1,380
|
I don't know about internet security there, but be sure to book airline ticket roundtrip to Hong Kong with stop over in Japan..
If you can, arrange 4-5 days in HK with lots of money. I think you'll like it much better than Japan. |
|
|
|
|
|
#4 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
I'm going for work so no chance of that.
![]() Edit: Anything special about privoxy or Winssl. Looks like it will do what I need which is to give me an encrypted connection into my home network and then back out my home network to the internet. I may even be able to run it on my WRT although I've got a Dell CpX with a flaky screen that will suit the purpose also.\ [X] Step 1 Warserver has been "re-porpoised" to Kamikaze 7.09 with webif. [X] Step 2 Set up DynDNS [ ] Step 3 Setup Privoxy
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ Last edited by beakmyn : 10-22-2007 at 07:15 PM. |
|
|
|
|
|
#5 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
Seems everything can be done in the router
However, if you've got pointers let me knowOpenWrt / Looking for a howto ssh privoxy
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ |
|
|
|
|
|
#6 (permalink) | |
|
Cajun from Hell
Join Date: Feb 2005
Location: Capitol City, Louisiana
Posts: 3,299
|
Quote:
__________________
We need to hire more IT people so we can get more CADD work done.
|
|
|
|
|
|
|
#7 (permalink) |
|
Country Boy.
Join Date: Aug 2002
Location: Deep in the Woods.
Posts: 1,911
|
Your going to LOVE Japan. It was always one of my favorite places to goto for a client. I missed a flight out one time so I could stay over another day. The food there is GREAT as well as the people for the most part. I never had any issues with Internet over there and the few people that I know that still go over for consulting use their Internet just fine without any issues.
__________________
audit Blackberry Outage Mail List. Be the one of first people to know about RIM outages. Blackberry Chat Mail List. My day to day life. |
|
|
|
|
|
#9 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
I looked at that but wasn't sure which way to go. I've got openvpn installed just not enabled (it can be enabled from the web interface).
TAP OpenVPNHowTo - OpenWrt TUN OpenVPNTunHowTo - OpenWrt Wasn't sure which one I should use. Sure VPN will give me access to my home network but will it proxy my internet surfing through it?
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ |
|
|
|
|
|
#10 (permalink) | |
|
Managing the iTards.
Join Date: Dec 2002
Location: Ohio
Posts: 5,383
|
Quote:
__________________
Atheism is a non-prophet organization. |
|
|
|
|
|
|
#11 (permalink) | |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
Quote:
I need a proxy. I'm almost there. I think the router's firewall rules are blocking SSH from the wan. The web interface uses one config file and the router has another. I can't test it until I get home.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ |
|
|
|
|
|
|
#12 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
Well it looks like either my IPTables are wrong or it won't forward WAN 8080 to LAN 22
I set WAN 8080 to 22 and had our IT guy temporarily open 22 outbound and I was able to connect to my router. TinyProxy is running now and proxying. Now I'm working on getting srelay to forward #### to 22 to keep 22 closed on the WAN.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ Last edited by beakmyn : 10-26-2007 at 01:26 PM. |
|
|
|
|
|
#13 (permalink) |
|
root\.workspace\.garbage.
Join Date: Aug 2003
Posts: 4,805
|
So XDMCP won't work through a SSH tunnel, now I know. So I set up OPENVPN. The webif interface on the router doesn't support OpenVPN server configs, now I know. So I run it manually. XDMCP is very slow under a WAN connection, particularly with Gnome as since there's so many more application that it has to run, now I know. So, now I'm going to set up VNC and hope that speeds things up but that's a desktop sharing app.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish" ┌──────────────────────────────┐ ╞ NS Icons Explained|et hoc genus omne ╡ └──────────────────────────────┘ |
|
|
|