On Wed, May 13, 2009 at 11:39:19AM +0100, Sampsa Laine wrote:
The main disadvantage I can see is that SSH runs over TCP so any
dropped packets might cause more delays than using straight UDP.
Having done various SSH tunnels over the years another disadvantage is
that they are a complete pain to deal with. Honestly, I would find it
considerably easier to setup something like OpenVPN which would solve
both the UDP and the dynamic IP problems and give you everything you
wanted ssh to do for you except with less pain and suffering attached.
Don't get me wrong, ssh tunnels are a FANTASTIC tool, but they've only
ever caused me grief when I expected them to be a "permenent" tunneling
solution.
Just my $0.02
-brian
--
"Coding in C is like sending a 3 year old to do groceries. You gotta
tell them exactly what you want or you'll end up with a cupboard full of
pop tarts and pancake mix." -- IRC User (http://www.bash.org/?841435)
Came across this whilst looking for some SSH stuff and realized this could be used to either securely transmit HECnet data between two hosts or enable a host with a dynamic IP to run the bridge/MULTINET UDP thing:
http://24.97.150.195/nstwiki/index.php/Tunnelling_UDP_Traffic_Through_An_SS…
Basically, they use a combination of SSH port forwarding (which is TCP only) and nc to create a secure UDP tunnel between two sites. Setting this up would be trivial on a standard Unix box and if we use public key authentication we don't even need to store passwords anywhere. Also, we would of course benefit from the authentication and cryptographic features that SSH brings to the table.
The main disadvantage I can see is that SSH runs over TCP so any dropped packets might cause more delays than using straight UDP.
Sampsa
Yes, Urho Kekkonen ;) It's a joke from the past.
You got some extra letters, pretty close.
"Mielest ni teill on s p presidentti."
I'm not sure if I want to know more about your fetishes.. ;)
--Saku
On Thu, May 7, 2009 at 1:53 AM, Tore Sinding Bekkedal
<toresbe at ifi.uio.no> wrote:
Kekkonen? As in Urho Kekkonen? Am I missing something here? :)
Mielest ni teill onn s p presidenttin. (did I get that right?)
-Tore :)
http://www.facebook.com/album.php?aid=7441&id=1456476365&l=393493bbf6
Didn't even know these links are not permanent..
On Wed, May 6, 2009 at 5:47 PM, Tore Sinding Bekkedal
<toresbe at ifi.uio.no> wrote:
Saku Set l wrote:
Just wanted to share the photos.
I was at The Alternate Party with 20 VaxStations/Microvaxen.
Young people were more interested about playing Tetris but some
old-timers also had interest for the cluster.
http://www.facebook.com/album.php?aid=7441&l=39349&id=1456476365
Catching up on old list mail, and:
This public photo link has expired. To see these photos, please ask the
owner to generate a new public link.
Temporary links don't work very well with mailing lists...
-Tore :)
Saku Set l wrote:
Just wanted to share the photos.
I was at The Alternate Party with 20 VaxStations/Microvaxen.
Young people were more interested about playing Tetris but some
old-timers also had interest for the cluster.
http://www.facebook.com/album.php?aid=7441&l=39349&id=1456476365
Catching up on old list mail, and:
This public photo link has expired. To see these photos, please ask the owner to generate a new public link.
Temporary links don't work very well with mailing lists...
-Tore :)
Maybe I should clarify. I can talk with ZAPHOD (for instance), but it's not through my bridge program. I have connection through GORVAX (next hop).
But maybe Chrissie just isn't running the bridge?
Johnny
Steve Davidson wrote:
I can see you from the US. If you are running LATD on Linux I can not
see that however.
-Steve
Hollis, NH USA -----Original Message-----
From: owner-hecnet at Update.UU.SE [mailto:owner-hecnet at Update.UU.SE] On
Behalf Of Chrissie Caulfield
Sent: Monday, April 20, 2009 10:22
To: hecnet at Update.UU.SE
Subject: Re: [HECnet] Zaphod, new IP Address
Chrissie Caulfield wrote:
Hi,
Well, I'm all switched over and my new IP address (as of last week,
sorry for the delay in sending this email) is
86.10.38.192
I've updated chrissie.homelinux.net. No-one seems to be connected to
me
yet ...
Chrissie
Hmm, very strange. I'll investigate....
--
Johnny Billquist || "I'm on a bus
|| on a psychedelic trip
email: bqt at softjar.se || Reading murder books
pdp is alive! || tryin' to stay hip" - B. Idol
I can see you from the US. If you are running LATD on Linux I can not
see that however.
-Steve
Hollis, NH USA
-----Original Message-----
From: owner-hecnet at Update.UU.SE [mailto:owner-hecnet at Update.UU.SE] On
Behalf Of Chrissie Caulfield
Sent: Monday, April 20, 2009 10:22
To: hecnet at Update.UU.SE
Subject: Re: [HECnet] Zaphod, new IP Address
Chrissie Caulfield wrote:
Hi,
Well, I'm all switched over and my new IP address (as of last week,
sorry for the delay in sending this email) is
86.10.38.192
I've updated chrissie.homelinux.net. No-one seems to be connected to
me
yet ...
Chrissie
Hmm, very strange. I'll investigate....
--
Chrissie
Chrissie Caulfield wrote:
Hi,
Well, I'm all switched over and my new IP address (as of last week,
sorry for the delay in sending this email) is
86.10.38.192
I've updated chrissie.homelinux.net. No-one seems to be connected to me
yet ...
Chrissie
Hmm, very strange. I'll investigate....
--
Chrissie