From brandon@49ers.com Tue Apr 9 22:37:07 2013 Received: from cluster-g.mailcontrol.com (cluster-g.mailcontrol.com [208.87.233.190]) by underdog.stansell.org (8.14.5/8.14.5) with ESMTP id r39Mb01C004517 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=OK) for ; Tue, 9 Apr 2013 22:37:07 GMT Received: from nfl.net (njimail02.nfl.net [204.141.132.42]) by rly16g.srv.mailcontrol.com (MailControl) with ESMTP id r39MawMm017691 for ; Tue, 9 Apr 2013 23:36:59 +0100 X-SEF-Processed: 5_0_0_910__2013_04_09_18_41_11 X-SEF-0000-1111-2222-3333: 1 Received: from NJHUB01 [10.201.194.32] by NJIMAIL02 - SurfControl E-mail Filter (5.2.1); Tue, 09 Apr 2013 18:41:11 -0400 Received: from SFVEX01.sf.nfl.net (10.163.101.4) by NJHUB01.info.nfl.net (10.201.194.32) with Microsoft SMTP Server (TLS) id 8.2.176.0; Tue, 9 Apr 2013 18:36:59 -0400 Received: from SFVEX01.sf.nfl.net ([10.163.101.4]) by SFVEX01.sf.nfl.net ([10.163.101.4]) with mapi; Tue, 9 Apr 2013 15:36:59 -0700 From: "Stout, Brandon" To: "users@conserver.com" Date: Tue, 9 Apr 2013 15:36:56 -0700 Subject: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down Thread-Topic: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down Thread-Index: Ac41cr8L2zgkhRXLSJ2Nkhb+JY27Qg== Message-ID: Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: user-agent: Microsoft-MacOutlook/14.3.2.130206 acceptlanguage: en-US Content-Type: text/html; charset="us-ascii" Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 X-Scanned-By: MailControl 14771.152 (www.mailcontrol.com) on 10.71.0.126 X-Spam-Score: -0.3 () BAYES_00,HTML_MESSAGE,MIME_HTML_ONLY X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 09 Apr 2013 22:37:07 -0000
does anyone know what th= is error means?

conserver (22203): ERROR: [trfw01a= ] connect(5): No route to host: forcing down

I am = not sure if this is something internal to related to the application o= r if it has to do with DNS or something along those lines. 
=

Here is my conserver.cf

defaul= t cyclades        { type host; portbase 7000; portinc 1= ; }

break 1 { string "\z"; }
break 2 { s= tring "\r\d~\d^b"; delay 600; }
break 3 { string "#."; }
break 4 { string "+\d+\d+"; delay 300; }
break 5 { string "\033= c"; }

default * {
logfile /var/log/consoles/&;=
timestamp 1hab;
rw *;
include full;
master localhost;
}

default cons01 {
include cyclades;
host cons01.fqdn.com;=
}

console trfw01a { include cons01; port 2; }


access * {
    &nb= sp;   trusted 127.0.0.1;
        allowed= 10.0.0.0/8;
}

From jdwhite@menelos.com Tue Apr 9 23:12:42 2013 Received: from mail-ia0-f172.google.com (mail-ia0-f172.google.com [209.85.210.172]) by underdog.stansell.org (8.14.5/8.14.5) with ESMTP id r39NCZbp005867 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK) for ; Tue, 9 Apr 2013 23:12:42 GMT Received: by mail-ia0-f172.google.com with SMTP id k38so3110535iah.3 for ; Tue, 09 Apr 2013 16:12:35 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=x-received:references:mime-version:in-reply-to:content-type :content-transfer-encoding:message-id:cc:x-mailer:from:subject:date :to:x-gm-message-state; bh=SrnoREPYWarQR8HOr0+xyvBCCkH6QWDiRCcYeGc2Rqo=; b=ZVnR56DWCvKgmqBJjFd2SeT8JAwVHRiDdIDHo7gm32AfoLRsDyXIN85G4HFBWh12Xl 4jxonkwsHwsQMAMP8Yd8CoVQFQIDbbpFn/HAHFXrAEMOpwJl1QdKQKqnQZ4/5iMLOhEE /I0eJQIi9IdwiM84fOCHPX5ScR/pUeP3EuCL3nceee1JYL/UGqfAuZ7a0p7POqIN5Cvm Ygu7TIpEgiQBugixrbohaMGetyh4hBLrszcHsQ5Q5/CYA0HfPJXbPr8hZ1SsWEHunJ9P 3Dt8NylHUnCwfy1orAKIbkbO6aPhXiGnLbpe2sNwYcugUD9ad/f2eXnqbF6AR3MoE+wj 84nA== X-Received: by 10.50.119.39 with SMTP id kr7mr971123igb.19.1365549155006; Tue, 09 Apr 2013 16:12:35 -0700 (PDT) Received: from [192.168.69.226] (173-25-192-172.client.mchsi.com. [173.25.192.172]) by mx.google.com with ESMTPS id p11sm24889245igr.4.2013.04.09.16.12.32 (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Tue, 09 Apr 2013 16:12:33 -0700 (PDT) References: Mime-Version: 1.0 (1.0) In-Reply-To: Content-Type: text/plain; charset=us-ascii Message-Id: X-Mailer: iPad Mail (10B329) From: Jason White Subject: Re: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down Date: Tue, 9 Apr 2013 18:12:33 -0500 To: "Stout, Brandon" X-Gm-Message-State: ALoCoQnPj1IOcigkAL9iRsmdz94mw87UIa9x1zWFfHSc0H8QSWlA6SldbSd5iUNC2yQVcDgzrJ7s X-Spam-Score: -1.5 () BAYES_00 X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from quoted-printable to 8bit by underdog.stansell.org id r39NCZbp005867 Cc: "users@conserver.com" X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 09 Apr 2013 23:12:42 -0000 On Apr 9, 2013, at 5:36 PM, "Stout, Brandon" wrote: > does anyone know what this error means? > > conserver (22203): ERROR: [trfw01a] connect(5): No route to host: forcing down It means the network routing tables on the console server are such that the it cannot find route to the IP address that cons01.fqdn.com resolves to. You should be able to confirm this on the command line by first resolving cons01.fqdn.com and then trying to ping it. A 'netstat -nr' will show you the routing tables. I'm assuming that 'cons01.fqdn.com' isn't really what's in your conserver.cf. If it is, that's likely your problem and you'd need to replace it with the host name or IP address of your Cyclades box. -Jason -- Jason White jdwhite@menelos.com > I am not sure if this is something internal to related to the application or if it has to do with DNS or something along those lines. > > Here is my conserver.cf > > default cyclades { type host; portbase 7000; portinc 1; } > > break 1 { string "\z"; } > break 2 { string "\r\d~\d^b"; delay 600; } > break 3 { string "#."; } > break 4 { string "+\d+\d+"; delay 300; } > break 5 { string "\033c"; } > > default * { > logfile /var/log/consoles/&; > timestamp 1hab; > rw *; > include full; > master localhost; > } > > default cons01 { > include cyclades; > host cons01.fqdn.com; > } > > console trfw01a { include cons01; port 2; } > > > access * { > trusted 127.0.0.1; > allowed 10.0.0.0/8; > } > > _______________________________________________ > users mailing list > users@conserver.com > https://www.conserver.com/mailman/listinfo/users From consoleteam@gmail.com Tue Apr 9 23:38:22 2013 Received: from mail-bk0-f43.google.com (mail-bk0-f43.google.com [209.85.214.43]) by underdog.stansell.org (8.14.5/8.14.5) with ESMTP id r39NcFqF006441 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK) for ; Tue, 9 Apr 2013 23:38:21 GMT Received: by mail-bk0-f43.google.com with SMTP id jm2so3803876bkc.16 for ; Tue, 09 Apr 2013 16:38:14 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:x-received:in-reply-to:references:date:message-id :subject:from:to:cc:content-type; bh=WUlwQ1ZNSWZwH8qogqzr1ZCuIByFv4CHWlu31GIg8to=; b=NidcG3akPNRkTMHs8MdbHcpShcNtIqTxkliAOQwkBKzCg9/MvEkdlYiN8VSMFYyfbF 19MkChq8PXtQQeBop9VEn3/mg0WDD/78q4IRx/rG+GXuDizDcAA25i9j1DCv79cMPyn5 dcF74S0BYL4beOXd/zt2em7vriYet/tuy6pb/TvnqBu45umWk8XL7CSORfGdolPrq3CN AsA67N4u5sTba+oKmGkOyKScAVrpfJ2L3Bnx4zr6DWtuPuL5KacM+PoDIKDM5uVQBcw8 O7VmhtzRAyJRsfWJerlqCzDs9AEpmwz5zd8BnHnE857cL1ERTKpbIprUPPWUaipb0qhJ or4w== MIME-Version: 1.0 X-Received: by 10.205.68.4 with SMTP id xw4mr13449818bkb.79.1365550694152; Tue, 09 Apr 2013 16:38:14 -0700 (PDT) Received: by 10.204.39.197 with HTTP; Tue, 9 Apr 2013 16:38:14 -0700 (PDT) In-Reply-To: References: Date: Tue, 9 Apr 2013 16:38:14 -0700 Message-ID: Subject: Re: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down From: Zonker To: "Stout, Brandon" Content-Type: multipart/alternative; boundary=f46d041558be0c6ae504d9f60c03 X-Spam-Score: -0.693 () BAYES_00, FREEMAIL_FROM, HTML_MESSAGE, NORMAL_HTTP_TO_IP, T_DKIM_INVALID X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 Cc: "users@conserver.com" X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 09 Apr 2013 23:38:23 -0000 --f46d041558be0c6ae504d9f60c03 Content-Type: text/plain; charset=ISO-8859-1 Jason is on the right track. As a Best Practice, my Conserver hosts use an /etc/host file, with all of my console servers (and other infrastructure listed)., and my resolv.conf file prefers the local file to network resources. (I do this, because I want this box to be one of the first things I bring up, along with console servers, *before* I start bringing of infrastructure switches and servers, so that I can log their startups.) Try nslookup for your console server names... if that fails, conserver won't be able to talk to them. Best regards, -Z- On Tue, Apr 9, 2013 at 3:36 PM, Stout, Brandon wrote: > does anyone know what this error means? > > conserver (22203): ERROR: [trfw01a] connect(5): No route to host: forcing > down > > I am not sure if this is something internal to related to the > application or if it has to do with DNS or something along those lines. > > Here is my conserver.cf > > default cyclades { type host; portbase 7000; portinc 1; } > > break 1 { string "\z"; } > break 2 { string "\r\d~\d^b"; delay 600; } > break 3 { string "#."; } > break 4 { string "+\d+\d+"; delay 300; } > break 5 { string "\033c"; } > > default * { > logfile /var/log/consoles/&; > timestamp 1hab; > rw *; > include full; > master localhost; > } > > default cons01 { > include cyclades; > host cons01.fqdn.com; > } > > console trfw01a { include cons01; port 2; } > > > access * { > trusted 127.0.0.1; > allowed 10.0.0.0/8; > } > > > _______________________________________________ > users mailing list > users@conserver.com > https://www.conserver.com/mailman/listinfo/users > > -- ConsoleTeam - Support and training services for Conserver users. www.conserver.com/consoles/ consoleteam.blogspot.com - - - - - - - - www.ncry.org www.d4tm.org www.hackerdojo.com --f46d041558be0c6ae504d9f60c03 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable
=A0 Jason is on the right track.=A0 As a Best Practic= e, my Conserver hosts use an /etc/host file, with all of my console servers= (and other infrastructure listed)., and my resolv.conf file prefers the lo= cal file to network resources. (I do this, because I want this box to be on= e of the first things I bring up, along with console servers, *before* I st= art bringing of infrastructure switches and servers, so that I can log thei= r startups.)

=A0 Try nslookup for your console server names... if that fa= ils, conserver won't be able to talk to them.

=A0=A0= =A0=A0=A0=A0 Best regards,

=A0=A0=A0=A0=A0=A0=A0=A0=A0=A0=A0= =A0=A0 -Z-


On Tue, Apr 9, 2013 at 3:36 PM, Stout, B= randon <brandon@49ers.com> wrote:
does anyone know what this error means?

conserver (22203): ERROR: [trfw01a] connect(5): No route to host: forcing= down

I am not sure if this is something internal to related = to the application=A0or if it has to do with DNS or=A0something along those= lines.=A0

Here is my conserver.cf

default cyclades =A0 =A0 =A0 =A0{ type host; portbase 7= 000; portinc 1; }

break 1 { string "\z";= }
break 2 { string "\r\d~\d^b"; delay 600; }
break 3 { string "#."; }
break 4 { string "+\d+\d+"; delay 300; }
break 5 {= string "\033c"; }

default * {
logfile /var/log/consoles/&am= p;;
timestamp 1hab;
rw *;
include full;
master localhost;
}

default cons01 {
include cyclades;
}

console trfw01a { include cons01; port 2; }


=
access * {
=A0 =A0 =A0 =A0 trusted 127.0.0.1;
=A0 =A0 =A0 =A0 allowed 1= 0.0.0.0/8;
}


_______________________________________________
users mailing list
users@conserver.com
https://www.conserver.com/mailman/listinfo/users




--
ConsoleTeam - Suppo= rt and training services for Conserver users.
www.conserver.com/consoles/
<= a href=3D"http://consoleteam.blogspot.com" target=3D"_blank">consoleteam.bl= ogspot.com
- - - - - - - -
www.n= cry.org
www.d4tm.o= rg
www.hacke= rdojo.com --f46d041558be0c6ae504d9f60c03-- From saku@ytti.fi Wed Apr 10 08:10:51 2013 Received: from mail-oa0-f43.google.com (mail-oa0-f43.google.com [209.85.219.43]) by underdog.stansell.org (8.14.5/8.14.5) with ESMTP id r3A8AiTi013395 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK) for ; Wed, 10 Apr 2013 08:10:50 GMT Received: by mail-oa0-f43.google.com with SMTP id l10so176023oag.16 for ; Wed, 10 Apr 2013 01:10:43 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:x-received:date:message-id:subject:from:to :content-type:x-gm-message-state; bh=M1V4SRBNQ2X8B1DfLqdrHntEPO9DVxmRJIUOg+6cL7I=; b=X0pYXky1wCMSdw2Kb7rGj7DG2EQQZvGNHPVO0d3MapuOqiWnAW913OJDLDIDyZIPDT LiU1rTdL0YFwQ51AYhF1mPzjD0oIBtvfvFXazVPilWimMn4Izxdhz1hoDYtW3NF+nq1Y fM36XtHqtW1kwZ3qC5LnERkhetvBuCb+C7wky58toB3cnoDWuyZD/lD4JduvJeEfTx8o 94KW3afZUO9Qej0IoKPSMUIG0Q9Tyr+IYgmrpTOBZ3TfnpQJ6GXHSyaM2PSAzHiLmLW4 uqiSX56pnnfmCRW1Nx9GGs76X51A0SsOn0coYY9Y+62TQV3WzDqueH/g1FcNWpfb/aTa 2cvA== MIME-Version: 1.0 X-Received: by 10.60.7.97 with SMTP id i1mr362579oea.89.1365581443447; Wed, 10 Apr 2013 01:10:43 -0700 (PDT) Received: by 10.182.105.197 with HTTP; Wed, 10 Apr 2013 01:10:43 -0700 (PDT) Date: Wed, 10 Apr 2013 11:10:43 +0300 Message-ID: Subject: Sessions not respawned From: Saku Ytti To: users@conserver.com Content-Type: text/plain; charset=UTF-8 X-Gm-Message-State: ALoCoQkj1I6WKgElOxqApFUOCHf5c5MnbfEVlOlCM5A2IIq3SXcXjFSPg5avVIyXYdJhgmQ6jAf8 X-Spam-Score: -1.5 () BAYES_00 X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 10 Apr 2013 08:10:51 -0000 After few hours some of my connections might die, and not be restarted. In logs I see. --- Connection closed by foreign host. [-- Console down -- Tue Apr 9 16:45:49 2013] [-- Console up -- Tue Apr 9 16:45:50 2013] [-- MARK -- Tue Apr 9 17:00:00 2013] [-- MARK -- Tue Apr 9 18:00:00 2013] ---- In host 'ps aux' shows the needed telnet sessions are not there. If I restart conserve, everything is ok again, I get in logs: --- Trying x.y.j.k... Connected to x.y.j.k. Escape character is '^]'. --- When it is broken, and I do 'console broken_box', I get connected. And with '^E c o' I can get it working again. So what might cause the telnet not being automatically restarted sometimes? conserver.cf: config * { sslrequired no; setproctitle yes; } access * { trusted localhost, host1, host2; } default * { logfile /var/log/oob/&.log; logfilemax 1m; timestamp 1hab; master localhost; rw *; } # default telnet based OOB device, absoolute port numbers # e.g. Cisco HWIC-8A and HWIC-4A/S default telnet { #portbase 2003; #portinc 1; type exec; exec telnet -48KNc -S192 h p; execsubst h=hs,p=pd; #exec nc -4t -T0xc0 h p; #exec socat -,icanon=0,echo=0 TCP:z:x; #execsubst z=hs,x=pd; } ## kern.pts_maxdev kern.maxfiles kern.maxproc ##include /usr/local/etc/conserver/country1 #include /usr/local/etc/conserver/country2 ##include /usr/local/etc/conserver/testnet country2: default pop1 { include telnet; host x.y.j.k; } # map hostname to console port number # HWIC-8A first port (P0) is 2003 # HWIC-4A/S first port (S0) is 2019 console router1 { include pop1; port 2003; } console router2 { include pop1; port 2019; } console routerN { include pop1; port 2023; } host% conserver -V conserver: conserver.com version 8.1.18 conserver: default access type `r' conserver: default escape sequence `^Ec' conserver: default configuration in `/usr/local/etc/conserver.cf' conserver: default password in `/usr/local/etc/conserver.passwd' conserver: default logfile is `/var/log/conserver' conserver: default pidfile is `/var/run/conserver.pid' conserver: default limit is 16 members per group conserver: default primary port referenced as `782' conserver: default secondary base port referenced as `0' conserver: options: libwrap, openssl, pam conserver: openssl version: OpenSSL 0.9.8q 2 Dec 2010 conserver: built with `./configure --with-master=localhost --with-port=782 --with-pam --with-libwrap --with-openssl --prefix=/usr/local --mandir=/usr/local/man --infodir=/usr/local/info/ --build=amd64-portbld-freebsd8.3' host% uname -a FreeBSD host 8.3-RELEASE-p4 FreeBSD 8.3-RELEASE-p4 #0: Tue Aug 14 17:29:18 CEST 2012 root@host/usr/obj/usr/src/sys/GENERIC amd64 I'm running 'conserve-con' from freebsd ports. Thanks, -- ++ytti From brandon@49ers.com Wed Apr 10 17:05:30 2013 Received: from cluster-h.mailcontrol.com (cluster-h.mailcontrol.com [208.87.234.190]) by underdog.stansell.org (8.14.5/8.14.5) with ESMTP id r3AH5NGt029855 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=OK) for ; Wed, 10 Apr 2013 17:05:30 GMT Received: from nfl.net (njimail01.nfl.net [204.141.132.41]) by rly15h.srv.mailcontrol.com (MailControl) with ESMTP id r3AH56X6017298; Wed, 10 Apr 2013 18:05:18 +0100 X-SEF-Processed: 5_0_0_910__2013_04_10_13_10_08 X-SEF-0000-1111-2222-3333: 1 Received: from NJHUB02 [10.201.194.33] by NJIMAIL01 - SurfControl E-mail Filter (5.2.1); Wed, 10 Apr 2013 13:10:08 -0400 Received: from INFOHC03.info.NFL.NET (10.201.194.34) by NJHUB02.info.nfl.net (10.201.194.33) with Microsoft SMTP Server (TLS) id 8.2.176.0; Wed, 10 Apr 2013 13:05:12 -0400 Received: from SFVEX01.sf.nfl.net (10.163.101.4) by INFOHC03.info.NFL.NET (10.201.194.34) with Microsoft SMTP Server (TLS) id 14.1.355.2; Wed, 10 Apr 2013 13:05:12 -0400 Received: from SFVEX01.sf.nfl.net ([10.163.101.4]) by SFVEX01.sf.nfl.net ([10.163.101.4]) with mapi; Wed, 10 Apr 2013 10:05:11 -0700 From: "Stout, Brandon" To: Zonker Date: Wed, 10 Apr 2013 10:05:07 -0700 Subject: Re: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down Thread-Topic: conserver (22474): ERROR: [trfw01a] connect(5): No route to host: forcing down Thread-Index: Ac42DY8vyk+g1r8hQie3Omely5djDg== Message-ID: In-Reply-To: Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: user-agent: Microsoft-MacOutlook/14.3.2.130206 acceptlanguage: en-US Content-Type: text/html; charset="us-ascii" Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 X-Scanned-By: MailControl 14771.152 (www.mailcontrol.com) on 10.72.0.125 X-Spam-Score: 0.495 () BAYES_00,HTML_MESSAGE,MIME_HTML_ONLY,NORMAL_HTTP_TO_IP Cc: "users@conserver.com" X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 10 Apr 2013 17:05:30 -0000
Thanks Z and Jason, ther= e turned out to be a switching problem that prevented the server from reach= ing the console device. DNS was all good though.

T= hanks
Brandon

From: Zonker <co= nsoleteam@gmail.com>
Date: Tuesday, April 9, 2013 4:38 PM
To: <= /span> Brandon Stout <brandon@49ers= .com>
Cc: "users@conserver.com" <users@conserver.com>
Subject: Re: conserver (22474): ERROR: [trfw01a] connect(5)= : No route to host: forcing down

  Jason is on the right track.  As a Best Practice,= my Conserver hosts use an /etc/host file, with all of my console servers (= and other infrastructure listed)., and my resolv.conf file prefers the loca= l file to network resources. (I do this, because I want this box to be one of the first things I bring up, along with console= servers, *before* I start bringing of infrastructure switches and servers,= so that I can log their startups.)

  Try nslookup f= or your console server names... if that fails, conserver won't be able to t= alk to them.

       Best re= gards,

            &nb= sp; -Z-


On Tue, Apr 9, 2013 at 3:36 PM, Stout, Brandon <brandon@49ers.co= m> wrote:
does = anyone know what this error means?

conserver (2220= 3): ERROR: [trfw01a] connect(5): No route to host: forcing down
<= br>
I am not sure if this is something internal to related to the= application or if it has to do with DNS or something along those= lines. 

Here is my conserver.cf

default = cyclades        { type host; portbase 7000; portinc 1; = }

break 1 { string "\z"; }
break 2 { str= ing "\r\d~\d^b"; delay 600; }
break 3 { string "#."; }
= break 4 { string "+\d+\d+"; delay 300; }
break 5 { string "\033c"= ; }

default * {
logfile /var/log/consoles/&;
timestamp 1hab;
rw *;
include full;
<= /span>master localhost;
}

default cons01= {
include cyclades;<= /div>
= }

console trfw01a { include cons01; port 2; }


access * {
    &nbs= p;   trusted 127.0.0.1;
        allowed = 10.0.0.0/8;
}=


_______________________________________________
users mailing list
users@conserve= r.com
https://www.conserver.com/mailman/listinfo/users



--
ConsoleTeam - Support and training services for Conserver users.
www.conserver.com= /consoles/
consoleteam.blogspot.com
- - - - - - - -
www.nc= ry.org
www.d4tm.or= g
www.hacker= dojo.com
From consoleteam@gmail.com Mon Apr 29 21:53:14 2013 Received: from mail-bk0-f43.google.com (mail-bk0-f43.google.com [209.85.214.43]) by underdog.stansell.org (8.14.7/8.14.7) with ESMTP id r3TLq66s025130 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK); Mon, 29 Apr 2013 21:52:43 GMT Received: by mail-bk0-f43.google.com with SMTP id jm19so2941791bkc.2 for ; Mon, 29 Apr 2013 14:52:05 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:x-received:date:message-id:subject:from:to :content-type; bh=e0GUKi5npp6zZOXV+HHinNXfOGcy351VBo5+6aqIYas=; b=d/aunQurHkmjvh3ALEN61C+Nx1r+HjwPO9kU2ykNR40Z/P7OCqOWwjgzRV8psv//La gdn9DRZzvA+9cE43Uog9aN+6WsSr38D3enGd9K200RZeJ6xZ6BlJFc7LuOQr8ObU5r8c hBBiPKVSjOSZErxlTcmyY03wuBwXOd+a52+1MwA7+VAoUZNJCwxLiFocWwleex3d7Xj0 u1zmqCVisBw9VpU+K/IEXTUGEo1jDhfkKOo1WAOmsAJsvgoepZYj6YwLN+1zrn667zcF PFM0CdA2JUbl2MeRQlhFc3eR3k65UeKgqHzXa89dOQ339Hswo9wul5JjNcfTzgdn0JMp p0DA== MIME-Version: 1.0 X-Received: by 10.204.174.193 with SMTP id u1mr2312999bkz.81.1367272324097; Mon, 29 Apr 2013 14:52:04 -0700 (PDT) Received: by 10.205.105.1 with HTTP; Mon, 29 Apr 2013 14:52:03 -0700 (PDT) Date: Mon, 29 Apr 2013 14:52:03 -0700 Message-ID: Subject: How to "bridge" a serial connection over the Internet? From: Zonker To: zonker@conserver.com, "users@conserver.com" Content-Type: multipart/alternative; boundary=bcaec52e601d30996f04db86e5e0 X-Spam-Score: -1.488 () BAYES_00,FREEMAIL_FROM,HTML_MESSAGE,T_DKIM_INVALID X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 29 Apr 2013 21:53:14 -0000 --bcaec52e601d30996f04db86e5e0 Content-Type: text/plain; charset=ISO-8859-1 This is a bit of an unusual connection style. Any ideas how to achieve it? I think I'm suffering tunnel vision, and I could use a few clues to help expand my vision. At the remote site is a modem-like device. The remote site uses DHCP addressing, and NAT to get to the Internet, so I'm thinking that the remote site would use telnet-to-a-high-port to reach the server... likely a 1- or 2-port console server, triggering off the DTR to establish a connection to a known destination automatically. local modem console server? (auto-telnet to IPaddr:port) `------RS-232 cable------' At the IP address (the server), preferably a Linux machine, the TCP listener would present as a local TTY. No exec/login function. A local application would use the TTY port as though it was a locally-attached serial port or USB serial dongle. Best regards, -Z- -- ConsoleTeam - Support and training services for Conserver users. www.conserver.com/consoles/ consoleteam.blogspot.com - - - - - - - - www.ncry.org www.d4tm.org www.hackerdojo.com --bcaec52e601d30996f04db86e5e0 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable
=A0=A0=A0 This is a bit of an unusual connection= style. Any ideas how to achieve it? I think I'm suffering tunnel visio= n, and I could use a few clues to help expand my vision.

=
At the remote site is a modem-like device. The remote site uses DHCP a= ddressing, and NAT to get to the Internet, so I'm thinking that the rem= ote site would use telnet-to-a-high-port to reach the server... likely a 1-= or 2-port console server, triggering off the DTR to establish a connection= to a known destination automatically.

local modem=A0=A0=A0 =A0 =A0 =A0 console server?=A0 (auto-telnet = to IPaddr:port)=A0=A0
=A0=A0=A0=A0=A0=A0 `------RS-232 cable-----= -'

=A0 At the IP address (the= server), preferably a Linux machine, the TCP listener would present as a l= ocal TTY. No exec/login function. A local application would use the TTY por= t as though it was a locally-attached serial port or USB serial dongle.

=A0=A0=A0=A0=A0 Best regards,

=A0=A0=A0=A0= =A0=A0=A0=A0=A0=A0=A0=A0=A0=A0=A0=A0=A0 -Z-

--
Consol= eTeam - Support and training services for Conserver users.
www.conserver.com/conso= les/
consoleteam.b= logspot.com
- - - - - - - -
www.ncry.org
www.d4tm.org
www.hackerdojo.com<= /a>
--bcaec52e601d30996f04db86e5e0-- From windsor@warthog.com Mon Apr 29 22:22:34 2013 Received: from mailhost.warthog.com (warthog.com [174.136.4.16]) by underdog.stansell.org (8.14.7/8.14.7) with ESMTP id r3TMLwok026370 for ; Mon, 29 Apr 2013 22:22:33 GMT Received: from localhost (localhost [127.0.0.1]) by mailhost.warthog.com (Postfix) with ESMTP id C514FAAC12E; Mon, 29 Apr 2013 17:21:57 -0500 (CDT) X-Virus-Scanned: amavisd-new at warthog.com Received: from mailhost.warthog.com ([127.0.0.1]) by localhost (mailhost.warthog.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2LAN0XCeqp8w; Mon, 29 Apr 2013 17:21:33 -0500 (CDT) Received: from mailhost.warthog.com (vps-1.warthog.com [174.136.4.16]) by mailhost.warthog.com (Postfix) with ESMTP id 8E332AAC0E7; Mon, 29 Apr 2013 17:21:33 -0500 (CDT) Date: Mon, 29 Apr 2013 17:21:33 -0500 (CDT) From: Rob Windsor To: Zonker Subject: Re: How to "bridge" a serial connection over the Internet? Message-ID: <4a31d20e-cdeb-4ba1-a92e-f6d7b4821b7b@warthog.com> In-Reply-To: Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit MIME-Version: 1.0 X-Originating-IP: [76.182.236.160] X-Mailer: Zimbra 7.1.0_GA_3140 (ZimbraWebClient - FF3.0 (Win)/7.1.0_GA_3140) X-Spam-Score: -2.053 () BAYES_00,RP_MATCHES_RCVD X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 Cc: users@conserver.com X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 29 Apr 2013 22:22:35 -0000 Digi sells an EtherLite box that we're proofing out for purposes of virtualizing (VMware) some modem-hanger servers. Rob++ ----- Original Message ----- > From: "Zonker" > To: zonker@conserver.com, users@conserver.com > Sent: Monday, April 29, 2013 4:52:03 PM > Subject: How to "bridge" a serial connection over the Internet? > > > > > > This is a bit of an unusual connection style. Any ideas how to > achieve it? I think I'm suffering tunnel vision, and I could use a > few clues to help expand my vision. > > > > At the remote site is a modem-like device. The remote site uses DHCP > addressing, and NAT to get to the Internet, so I'm thinking that the > remote site would use telnet-to-a-high-port to reach the server... > likely a 1- or 2-port console server, triggering off the DTR to > establish a connection to a known destination automatically. > > local modem console server? (auto-telnet to IPaddr:port) > `------RS-232 cable------' > > > > > At the IP address (the server), preferably a Linux machine, the TCP > listener would present as a local TTY. No exec/login function. A > local application would use the TTY port as though it was a > locally-attached serial port or USB serial dongle. > > > Best regards, > > > -Z- > > > -- > ConsoleTeam - Support and training services for Conserver users. > www.conserver.com/consoles/ > consoleteam.blogspot.com > - - - - - - - - > www.ncry.org > www.d4tm.org > www.hackerdojo.com > _______________________________________________ > users mailing list > users@conserver.com > https://www.conserver.com/mailman/listinfo/users > -- pubkey: http://www.talgas.com/misc/rob_windsor-pubkey.txt Internet: windsor@warthog.com Life: Rob@Allen.Texas.USA.Earth "They couldn't hit an elephant at this distance." -- Major General John Sedgwick From saku@ytti.fi Tue Apr 30 05:50:00 2013 Received: from mail-ob0-f177.google.com (mail-ob0-f177.google.com [209.85.214.177]) by underdog.stansell.org (8.14.7/8.14.7) with ESMTP id r3U5nMWc023885 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK) for ; Tue, 30 Apr 2013 05:50:00 GMT Received: by mail-ob0-f177.google.com with SMTP id ef5so125883obb.36 for ; Mon, 29 Apr 2013 22:49:22 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:x-received:in-reply-to:references:date:message-id :subject:from:to:cc:content-type:x-gm-message-state; bh=1cjTDZ4QS/M6jDU/6CoGtYAI3i60z32TyIQPM5w+IJU=; b=Dlac2uNNC2Ue7LQ8Cpy0qCQsZ8HLxE2aZpolxLOdUssP+chSyjna4Kwmi+lgx9HXaM +nUFT6uZdgXFgh/lRTXETmw+qMX+YzXKmD5B7ar+Wiu7SqYfPgsVWhMAfJoYc6Sml/zn Qu3ESOe08zRY4qVp0HjlGBv7fL5eVL5XKD/zATlAuJib0d+n/D3hLEYY73pEF7BehTN2 cjQEH+MJ0SKlXO60EozlfDgnL0/IsH9lXLZm1W/bIHmwKVtAg2U1zUYa020bkYIio998 YzS7BS1mMFRZ8JTqUyBh1lL1yvL1hCmDTFKunAIh6tu7OggsMW5yf31eco9BaY59yST4 OKiQ== MIME-Version: 1.0 X-Received: by 10.60.101.163 with SMTP id fh3mr26133180oeb.95.1367300961074; Mon, 29 Apr 2013 22:49:21 -0700 (PDT) Received: by 10.182.23.83 with HTTP; Mon, 29 Apr 2013 22:49:20 -0700 (PDT) In-Reply-To: References: Date: Tue, 30 Apr 2013 08:49:20 +0300 Message-ID: Subject: Re: How to "bridge" a serial connection over the Internet? From: Saku Ytti To: Zonker Content-Type: text/plain; charset=UTF-8 X-Gm-Message-State: ALoCoQnJzyn66QmgEmBci58DwkX9Uj1RQ7rZ3HEcWCVdThcQ7dcNQdlQpyeObQ6BJ9GuB5N4aalU X-Spam-Score: -1.5 () BAYES_00 X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 Cc: zonker@conserver.com, "users@conserver.com" X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 30 Apr 2013 05:50:01 -0000 On 30 April 2013 00:52, Zonker wrote: > local modem console server? (auto-telnet to IPaddr:port) > `------RS-232 cable------' > > At the IP address (the server), preferably a Linux machine, the TCP > listener would present as a local TTY. No exec/login function. A local > application would use the TTY port as though it was a locally-attached > serial port or USB serial dongle. Pretty much any Cisco CPE can do this, it's called 'reverse-telnet'. You attach your RS232 device to Cisco and then telnet to like 2001 port on Cisco to get to the serial port. There are obviously solution for how to do this on Linux as well. 'opengear' is common vendor, which is just embedded linux doing this, they offer their software open-source. I'm sure there are more than one apt-gettable packages to solve this as well. If you need to RS232 port to appear on local machines as serial port (maybe proprietary management software, not just telnet) then you need RFC2217 solution, which also you can acquire open source to your linux PC. -- ++ytti From consoleteam@gmail.com Tue Apr 30 16:03:57 2013 Received: from mail-bk0-f50.google.com (mail-bk0-f50.google.com [209.85.214.50]) by underdog.stansell.org (8.14.7/8.14.7) with ESMTP id r3UG2jHp002621 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=OK); Tue, 30 Apr 2013 16:03:21 GMT Received: by mail-bk0-f50.google.com with SMTP id ik5so307349bkc.23 for ; Tue, 30 Apr 2013 09:02:44 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:x-received:in-reply-to:references:date:message-id :subject:from:to:cc:content-type; bh=MS6QIAk0CBI1BEgTOLM6GxIJmuVq3q0pcREvA+JQrNA=; b=rXVB5MckVsKF/407ng4FMO5NmZkFYjIdE0kaDij3feq8nd1833LLUgZegdU6Z05nnE 8kRFIXFzcUumptp3mzOF3fvapmkxwnsoYr8QBEWI1yfkzcaDAoMsiqjIkouwetZtOdK6 bH5jL7QzU/fapBMKn66V+cFuVCEaYLGzXMZg/uruLkiBLKbzsQsVW/eZHh5WH50nSZ+S 9NrHhiRfxSBbqq/ME9V9Gn9X3OTLvWyzMIJ0ov+O76KmDPtWv4QbQry440c5BYY2haOB IckZlwdf4Ai53cSHwYbYZWWIh+YvF0jGUTN7UTtYP/PuAHId5v01Wn9LNtqeMXpKNagN wPYg== MIME-Version: 1.0 X-Received: by 10.204.231.132 with SMTP id jq4mr9007288bkb.77.1367337763735; Tue, 30 Apr 2013 09:02:43 -0700 (PDT) Received: by 10.205.105.1 with HTTP; Tue, 30 Apr 2013 09:02:43 -0700 (PDT) In-Reply-To: References: Date: Tue, 30 Apr 2013 09:02:43 -0700 Message-ID: Subject: Re: How to "bridge" a serial connection over the Internet? From: Zonker To: Saku Ytti Content-Type: multipart/alternative; boundary=485b3979d7aab23c4d04db962187 X-Spam-Score: -1.488 () BAYES_00,FREEMAIL_FROM,HTML_MESSAGE,T_DKIM_INVALID X-Scanned-By: MIMEDefang 2.72 on 198.151.248.21 Cc: zonker@conserver.com, "users@conserver.com" X-BeenThere: users@conserver.com X-Mailman-Version: 2.1.12 Precedence: list List-Id: Conserver Users List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 30 Apr 2013 16:03:58 -0000 --485b3979d7aab23c4d04db962187 Content-Type: text/plain; charset=ISO-8859-1 Hi Saku, all, I'm pretty good with the "console server" (reserve-telnet) concept, and I've worked with many serial concentrator devices, including the Cisco lines. But this questions is different than most "typical" deployments in two ways; - low port density at the remote sites (Only one, or maybe two, serial ports at each location) - the 'destination' for the auto-telnet is not a serial concentrator, but a socket on the linux (or Windows) host itself, which an application will see as a TTY or COM port. The reasons for looking into this applications are the costs. At a few hundred dollars each, I can't put many 2-port concentrators around. If I put another serial concentrator at the server end to essentially "present the serial ports locally", I'd still need another concentrator, connected with null modem to let the OS connect to them and interact (again, with some substantial cost). It's not a typical conserver-type model. But, I offered the puzzle hear, because many of us are known for thinking beyond the traditional implementations, and for bringing unique solutions and suggestions to the conversations. (Thank Rob. :-) Right now, the solution is to run with a dedicated server at each remote site, running an application which watches the serial port(s), and then the server feeds a TCP stream to an aggregation server across the Internet. If I leave out the server, the cost of a small console server would cost just about the same, and I still need to resolve the server-end connection. This could be an Arduino with an Ethernet shield, or a small 'embedded' serial-to-Ethernet device, but it needs to work in the "telnet" direction, as opposed to the "reverse-telnet" direction. And, I'd prefer something a bit mature, rather than a hack.(If I roll the code wrong, it will mean a visit to many remote sites to install a new code version.) Time to explore the Digi website, I think! Best regards, -Z- http://www.conserver.com/consoles/Cisco/ciscocons.html On Mon, Apr 29, 2013 at 10:49 PM, Saku Ytti wrote: > On 30 April 2013 00:52, Zonker wrote: > > > local modem console server? (auto-telnet to IPaddr:port) > > `------RS-232 cable------' > > > > At the IP address (the server), preferably a Linux machine, the TCP > > listener would present as a local TTY. No exec/login function. A local > > application would use the TTY port as though it was a locally-attached > > serial port or USB serial dongle. > > Pretty much any Cisco CPE can do this, it's called 'reverse-telnet'. > You attach your RS232 device to Cisco and then telnet to like 2001 > port on Cisco to get to the serial port. > > There are obviously solution for how to do this on Linux as well. > 'opengear' is common vendor, which is just embedded linux doing this, > they offer their software open-source. > > I'm sure there are more than one apt-gettable packages to solve this as > well. > > If you need to RS232 port to appear on local machines as serial port > (maybe proprietary management software, not just telnet) then you need > RFC2217 solution, which also you can acquire open source to your linux > PC. > > > > -- > ++ytti > -- ConsoleTeam - Support and training services for Conserver users. www.conserver.com/consoles/ consoleteam.blogspot.com - - - - - - - - www.ncry.org www.d4tm.org www.hackerdojo.com --485b3979d7aab23c4d04db962187 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable
=A0 Hi Saku, all,

=A0= I'm pretty good with the "console server" (reserve-telnet) c= oncept, and I've worked with many serial concentrator devices, includin= g the Cisco lines. But this questions is different than most "typical&= quot; deployments in two ways;

=A0 -=A0 low port density at the remote sites (Only one, or maybe= two, serial ports at each location)
=A0 -=A0 the 'destination= ' for the auto-telnet is not a serial concentrator, but a socket on the= linux (or Windows) host itself, which an application will see as a TTY or = COM port.

=A0 The reasons for looking into this applications are the costs.= =A0 At a few hundred dollars each, I can't put many 2-port concentrator= s around. If I put another serial concentrator at the server end to essenti= ally "present the serial ports locally", I'd still need anoth= er concentrator, connected with null modem to let the OS connect to them an= d interact (again, with some substantial cost).

=A0 It's not a typical conserver-type model. But, I offered t= he puzzle hear, because many of us are known for thinking beyond the tradit= ional implementations, and for bringing unique solutions and suggestions to= the conversations. (Thank Rob. :-)

=A0 Right now, the solution is to run with a dedicated serve= r at each remote site, running an application which watches the serial port= (s), and then the server feeds a TCP stream to an aggregation server across= the Internet. If I leave out the server, the cost of a small console serve= r would cost just about the same, and I still need to resolve the server-en= d connection.

=A0 This could be an Arduino with an Ethernet shield, or a s= mall 'embedded' serial-to-Ethernet device, but it needs to work in = the "telnet" direction, as opposed to the "reverse-telnet&qu= ot; direction. And, I'd prefer something a bit mature, rather than a ha= ck.(If I roll the code wrong, it will mean a visit to many remote sites to = install a new code version.) Time to explore the Digi website, I think!

=A0=A0=A0=A0 Best regards,

=A0=A0=A0=A0= =A0=A0=A0=A0=A0=A0=A0=A0=A0 -Z-=A0=A0=A0=A0=A0
http://www.conserver.com/consoles/Ci= sco/ciscocons.html


On Mon, Apr 29, 2013 at 10:49 PM, Saku Y= tti <saku@ytti.fi> wrote:
On 30 April 2013 00:52, Zonker <consoleteam@gmail.com> wrote:

> local modem =A0 =A0 =A0 =A0 =A0console server? =A0(auto-telnet to IPad= dr:port)
> =A0 =A0 =A0 =A0`------RS-232 cable------'
>
> =A0 At the IP address (the server), preferably a Linux machine, the TC= P
> listener would present as a local TTY. No exec/login function. A local=
> application would use the TTY port as though it was a locally-attached=
> serial port or USB serial dongle.

Pretty much any Cisco CPE can do this, it's called 'reverse-t= elnet'.
You attach your RS232 device to Cisco and then telnet to like 2001
port on Cisco to get to the serial port.

There are obviously solution for how to do this on Linux as well.
'opengear' is common vendor, which is just embedded linux doing thi= s,
they offer their software open-source.

I'm sure there are more than one apt-gettable packages to solve this as= well.

If you need to RS232 port to appear on local machines as serial port
(maybe proprietary management software, not just telnet) then you need
RFC2217 solution, which also you can acquire open source to your linux
PC.



--
=A0 ++ytti



--
ConsoleTeam - Support a= nd training services for Conserver users.
www.conserver.com/consoles/
consoleteam.blogsp= ot.com
- - - - - - - -
www.n= cry.org
www.d4tm.o= rg
www.hacke= rdojo.com
--485b3979d7aab23c4d04db962187--