NetStumbler.org Forums

Go Back   NetStumbler.org Forums > Software > Unix/Linux
Register Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
Old 10-16-2007   #1 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
XDMCP and ssh

The linux forum was getting dusty so I thought I'd freshen it up a bit.

So, next August I'll be travelling to Japan for a month or so. I'm thinking it wouldn't be in my best interest to get on the internet unprotected.... so I figure I could set up a machine at home and configure it for XDMCP and ssh so that I can log into it from Japan and surf the internet through my local connection.

I could tunnel my connection through my home machine too I suppose. This would cut down on the bandwidth usage. What are your thoughts? If I go this route I would want to use my WRT54GS for this.

I'd rather not use a public proxy if possible.

Thoughts, concerns?
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Old 10-16-2007   #2 (permalink)
wrzwaldo
I amuse you?
 
Join Date: Dec 2003
Posts: 9,127
Right now I'm using Privoxy and WinSSL Wrap.
wrzwaldo is offline   Reply With Quote
Old 10-16-2007   #3 (permalink)
Scruge
Nyuk nyuk!
 
Scruge's Avatar
 
Join Date: Jan 2005
Location: TX
Posts: 1,380
Quote:
Originally Posted by beakmyn View Post
So, next August I'll be travelling to Japan for a month or so.
I don't know about internet security there, but be sure to book airline ticket roundtrip to Hong Kong with stop over in Japan..

If you can, arrange 4-5 days in HK with lots of money. I think you'll like it much better than Japan.
__________________
KNSGEM
A wifi boundary plotter for Google Earth
Click Me
Scruge is offline   Reply With Quote
Old 10-16-2007   #4 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
I'm going for work so no chance of that.

Edit:

Anything special about privoxy or Winssl. Looks like it will do what I need which is to give me an encrypted connection into my home network and then back out my home network to the internet.

I may even be able to run it on my WRT although I've got a Dell CpX with a flaky screen that will suit the purpose also.\


[X] Step 1
Warserver has been "re-porpoised" to Kamikaze 7.09 with webif.
[X] Step 2
Set up DynDNS
[ ] Step 3
Setup Privoxy
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘

Last edited by beakmyn : 10-22-2007 at 07:15 PM.
beakmyn is offline   Reply With Quote
Old 10-24-2007   #5 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
Seems everything can be done in the router However, if you've got pointers let me know

OpenWrt / Looking for a howto ssh privoxy
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Old 10-24-2007   #6 (permalink)
brwrdrvr
Cajun from Hell
 
brwrdrvr's Avatar
 
Join Date: Feb 2005
Location: Capitol City, Louisiana
Posts: 3,299
Quote:
Originally Posted by beakmyn View Post
I'm going for work so no chance of that.

Edit:

Anything special about privoxy or Winssl. Looks like it will do what I need which is to give me an encrypted connection into my home network and then back out my home network to the internet.

I may even be able to run it on my WRT although I've got a Dell CpX with a flaky screen that will suit the purpose also.\


[X] Step 1
Warserver has been "re-porpoised" to Kamikaze 7.09 with webif.
[X] Step 2
Set up DynDNS
[ ] Step 3
Setup Privoxy
Let me know how things work with the DynDNS and the WRT. I have been thinking about going this route for a few months, but wasn't sure. The site I was looking at said that the WRT had some trouble with the updating at times. So they recommended downloading and running their update client.
__________________
We need to hire more IT people so we can get more CADD work done.
brwrdrvr is offline   Reply With Quote
Old 10-24-2007   #7 (permalink)
audit
Country Boy.
 
audit's Avatar
 
Join Date: Aug 2002
Location: Deep in the Woods.
Posts: 1,911
Your going to LOVE Japan. It was always one of my favorite places to goto for a client. I missed a flight out one time so I could stay over another day. The food there is GREAT as well as the people for the most part. I never had any issues with Internet over there and the few people that I know that still go over for consulting use their Internet just fine without any issues.
__________________
audit

Blackberry Outage Mail List. Be the one of first people to know about RIM outages.
Blackberry Chat Mail List.
My day to day life.
audit is offline   Reply With Quote
Old 10-24-2007   #8 (permalink)
Barry
Managing the iTards.
 
Barry's Avatar
 
Join Date: Dec 2002
Location: Ohio
Posts: 5,383
What about vpn?
__________________
Atheism is a non-prophet organization.
Barry is offline   Reply With Quote
Old 10-24-2007   #9 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
I looked at that but wasn't sure which way to go. I've got openvpn installed just not enabled (it can be enabled from the web interface).

TAP OpenVPNHowTo - OpenWrt
TUN OpenVPNTunHowTo - OpenWrt

Wasn't sure which one I should use. Sure VPN will give me access to my home network but will it proxy my internet surfing through it?
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Old 10-24-2007   #10 (permalink)
Barry
Managing the iTards.
 
Barry's Avatar
 
Join Date: Dec 2002
Location: Ohio
Posts: 5,383
Quote:
Originally Posted by beakmyn View Post
I looked at that but wasn't sure which way to go. I've got openvpn installed just not enabled (it can be enabled from the web interface).

TAP OpenVPNHowTo - OpenWrt
TUN OpenVPNTunHowTo - OpenWrt

Wasn't sure which one I should use. Sure VPN will give me access to my home network but will it proxy my internet surfing through it?
You know, now that you mention it, I'm not sure now. I thought it did, but how could you check?
__________________
Atheism is a non-prophet organization.
Barry is offline   Reply With Quote
Old 10-24-2007   #11 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
Quote:
Originally Posted by Barry View Post
You know, now that you mention it, I'm not sure now. I thought it did, but how could you check?
I know that with the one I use for work the VPN only routes traffic for the work network. Internet traffic doesn't go through the VPN. How do I know? I can get to sites that our IT blocks. So, if Internet traffic was being routed through the VPN it would be blocked.

I need a proxy. I'm almost there. I think the router's firewall rules are blocking SSH from the wan. The web interface uses one config file and the router has another. I can't test it until I get home.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Old 10-26-2007   #12 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
Well it looks like either my IPTables are wrong or it won't forward WAN 8080 to LAN 22

I set WAN 8080 to 22 and had our IT guy temporarily open 22 outbound and I was able to connect to my router.

TinyProxy is running now and proxying.

Now I'm working on getting srelay to forward #### to 22 to keep 22 closed on the WAN.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘

Last edited by beakmyn : 10-26-2007 at 01:26 PM.
beakmyn is offline   Reply With Quote
Old 11-01-2007   #13 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,805
So XDMCP won't work through a SSH tunnel, now I know. So I set up OPENVPN. The webif interface on the router doesn't support OpenVPN server configs, now I know. So I run it manually. XDMCP is very slow under a WAN connection, particularly with Gnome as since there's so many more application that it has to run, now I know. So, now I'm going to set up VNC and hope that speeds things up but that's a desktop sharing app.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Google
 
Web NetStumbler.org

All times are GMT -7. The time now is 02:05 AM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0 ©2007, Crawlability, Inc.


All messages express the views of the author and are for entertainment purposes only. Netstumbler.org cannot be held responsible for the authenticity of the content or the actions of its members. By using this site and its services, you warrant that you will not post any messages that are discriminating, obscene, hateful, threatening, or otherwise violates any laws and you release Netstumbler.org from any future claims of any kind whatsoever including, but not limited to, addiction and loss of productivity. All forum messages, private messages and any other content are properties of Netstumbler.org. Even if publicly available, personal or copyrighted information are not to be posted without the consent of the owner. Distribution of licensed and copyrighted materials in any way not endorsed by the copyright owner is strictly prohibited. You may not use this site and its resources to spam other sites or individuals or perform any action that violates any law. Items sold or bought in the For Sale forum are sold as is and no warranty or insurance of any kind is provided. Netstumbler.org cannot be held responsible for the outcome of any transactions and no warranty of any kind is provided, either express or implied. Vulgar words are not allowed in the subject lines ; they may be used in the message body in any forum. The Administrator, Super Moderators and Moderators of Netstumbler.org have the right to remove, edit, move or close any thread for any reason and to reveal your identity and other known information in the event of a complaint or legal action arising from any message posted by you.