Berkeley CSUA MOTD:Entry 16689
Berkeley CSUA MOTD
 
WIKI | FAQ | Tech FAQ
http://csua.com/feed/
2025/05/25 [General] UID:1000 Activity:popular
5/25    

1999/10/11-12 [Computer/SW/Security] UID:16689 Activity:high
10/10   Does sshd on soda have an idle timeout?  Or is it something
        that I need to configure on my client?  I keep getting
        "connection reset by peer" messages after about 10 minutes or
        so.
        \_ There's an option in ssh that lets you do keepalives. You
            might also be behind a firewall that timesout too quickly.
           \_ Yeah, I'm aware of keepalives.  It doesn't seem to help.
              The firewall that I'm behind is a simple Linux ipchains
              one.  I don't *think* it has any idle timeouts.  Weird.
              \_ ipchains masquerading has a 15-minute timeout by default.
                 You can raise it to (say) one day: "ipchains -MS 86400 0 0".
                 See "man ipchains" for details.
                 \_ Thanks for the info.  Is that 15 minutes default
                    timeout listed somewhere in the man page?  I didn't see it.
                    \_ It's not in the manpage, but it is mentioned in
                       /usr/doc/HOWTO/IPCHAINS-HOWTO (section 4.1.5).
        \_ Soda's keepalives are currently set for 24 hours, so if you're
                getting hozed after ten minutes, somethings fucked on your
                end.