/srv/irclogs.ubuntu.com/2018/03/06/#ubuntu-za.txt

inetpro.07:58
chesedoI'm having a weird issue that some network guys might be able to figure11:27
chesedoI have been trying to solve a problem relating to connection to my public IP which seems to just get blocked...11:28
chesedoand have a server that i rent in DE which i am trying to use to debug this...11:28
chesedobut i lost my connection to the DE server which have happened before and logged into the web interface to see if it is stil up11:29
chesedoFrom the web interface in is up and i can start a virtual console from there...11:30
chesedonow in the virtual console i can ping 8.8.8.8 and what not except for for public ip11:31
chesedoand the same from my lappy which is on the other side of the public ip (expect for being able to react the DE server)11:32
chesedoSo i ran a traceroute (using mtr) on both...11:32
chesedoFrom my public ip (which is 41.168.11.36) the in uses 41.168.11.1 and then 41.160.0.245 which then looses the connection some 15 hops later...11:34
chesedobut from the DE server it reaches 41.160.0.244 (not 245) after about 15 hops with the next hop being undetermined...11:35
chesedoso it seem that some arp (or other) issue exists on the 41.160.0.0/24 network?11:37
chesedooh that should be routing issue, but then i now also spotted that there are a few addresses in the route that differ but are in the same subset (assuming /32)12:10
Cryterion_chesedo, are you trying to access a local machine from outside the public ip?16:10
=== Cryterion_ is now known as Cryterion
Cryterion.18:03
chesedoCryterion: the public ip has port forwards to a local machine yes - which is the original issue i'm trying to sort - but then the complete connection to the public ip (pings) went down as described above18:44
chesedoor the shh connection from me (behind the public ip) to the DE server so that i can fix the original issue18:46
CryterionDE server is the one at 41.168.11.36?18:50
chesedono that's my public ip18:51
chesedoDE is 185.172.59.16418:51
Cryterionping and ssh went through fine, although I can't login as don't have user acc18:52
chesedothat the thing, using a third ip I can get to both18:53
chesedobut they cannot get to each other18:53
CryterionI'm reading this as, you can't connect from behind the 41 ip?18:54
chesedowell i can get to the DE server via a web interface of the provider18:54
Cryterionbut not ssh18:54
chesedoyes, and using the web interface i cannot get to 41 either18:55
chesedonot even pings18:55
chesedothat is a virtual terminal in the web ui18:55
Cryteriondoes the server have any ip banning configured, I know mines setup to ban 24hrs on ssh fail18:56
chesedono, but the providers might18:57
chesedoi did an nmap scan from the DE to the 41 just before it went down18:58
chesedowell, it went down during...18:58
Cryterioncan you get into terminal via the web based ui18:58
chesedoyes18:59
chesedoit is just slow18:59
Cryterionchk if you have iptables running19:00
Cryterionyou'll need to be root19:00
chesedowaiting for the ui...19:01
Cryterionsudo iptables - that will let us know if it's installed19:01
chesedoyip v1.6.019:02
Cryterionsudo service iptables stop19:02
Cryterionthat'll stop the ip banning, try ssh afterwards19:02
CryterionI hope, just trying things out to help19:03
chesedohmm, 'failed to stop.... unit iptables.servie not loaded'19:04
Cryterionhmm19:04
chesedonat table is empty19:04
chesedonow checking filters...19:04
Cryterionok so if that's not running, gonna check a few things, brb19:05
chesedofilter table is empty too19:06
Cryterionother one is FailToBan19:07
chesedohmm, the DE server is only a mail server with nginx for webmail19:08
Cryterioncheck in /etc/ if you have a fail2ban dir19:09
chesedo...modoboa to be specific19:09
CryterionI used iRedMail, so mines different19:10
Cryterionbut looking it up19:10
chesedonope, no fail2ban dir19:10
CryterionI'm trying to find out which one your mail system is using modoboa looks like a python based mail server19:12
chesedoyes it is py based19:12
Cryterionchesedo, join #modoboa19:16
chesedoty Cryterion did so...19:17
CryterionI'm transfering our chat there, that seems to right channel for it, if we can't come right together, someone else there could help19:19
chesedoyip...19:19
chesedoalthough i think this might have happened in the past - i just took it as the server being down - so am thinking that it might also be a service provider located...19:20
chesedomight have to email my isp tomorrow19:21
chesedobtw, ty Cryterion for the help so far19:23
Cryterionnp19:24

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!