tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: IPfilter NAT and stalled TCP connexions



On Mar 30, 2010, at 1:12 23AM, Daniel Carosone wrote:

> On Tue, Mar 30, 2010 at 03:53:37PM +1100, Daniel Carosone wrote:
>> ssh has the ServerAliveInterval option to do that for you. set & forget. 
> 
> Especially useful when the span of a tcp connection and its keepalives
> is not the same as the span of the ssh session, such as when going
> through certain types of proxies (socks, http connect, etc) that
> terminate tcp.   
> 
> See how easy it is to forget? :)

You're assuming, of course, that I want all that extra traffic all the time...

Yes, I have tinkered with my keep-alive settings, both for TCP and ssh.  But 
they're tuned to *normal* middleboxes..

                --Steve Bellovin, http://www.cs.columbia.edu/~smb







Home | Main Index | Thread Index | Old Index