ssh_tunnel statistics: billerica to zippy
Time: 2014-Apr-25 18:40:06 Fri
Current tunnel state: disabled          Current tunnel condition: DOWN
loader stats
------ loader (pid: 1244 ) ------------ (v3.31 2006-05-29) ----- State: disabled UP
Time: 2013-Apr-21 10:26:37 Sun
client: billerica
server: zippy
client heartbeat: Sun Apr 21 10:21:44 EDT 2013
server heartbeat: 2013-Apr-21 10:21:22 Sun
server heartbeat 1: 2013-Apr-21 10:21:22 Sun
server heartbeat 2: 2013-Apr-21 10:16:22 Sun
server heartbeat 3: 2013-Apr-21 10:11:22 Sun
server heartbeat 4: 2013-Apr-21 10:06:22 Sun
Sleep time: 300
loader loop counter: 10
bad port tests: 0 last: none yet
failed file updates: 0 last: none yet
tunnels killed: 2 last: 2013-Apr-21 10:26:06 Sun
emails sent: 3 last: 2013-Apr-21 10:26:06 Sun
email addresses: john@larsen-family.us
loader started: 2013-Apr-21 09:40:51 Sun
debug flags: 0x40000000
tunnel stats
------ tunnel (pid: 1908 ) ------------ (v3.31 2006-05-29) ----- State: enabled UP
Time: 2013-Apr-21 10:21:45 Sun
client: billerica
server: zippy
client heartbeat: Sun Apr 21 10:21:44 EDT 2013
server heartbeat: 2013-Apr-21 10:21:22 Sun
Sleep time: 300
tunnel loop counter: 9
bad port tests: 0 last: none yet
emails sent: 1 last: 2013-Apr-21 09:40:58 Sun
email addresses: john@larsen-family.us
tunnel started: 2013-Apr-21 09:41:31 Sun
debug flags: 0x40000000
Current users, uptime, and load average
18:40:06 up 16 min, 1 user, load average: 0.00, 0.00, 0.00
USER TTY LOGIN@ IDLE JCPU PCPU WHAT
Current processes
UID PID PPID C STIME TTY TIME CMD
1004 1200 1 0 18:25 ? 00:00:00 /usr/bin/cygrunsrv
1004 1608 1200 0 18:25 ? 00:00:00 /usr/sbin/cron -n
1004 2708 1 0 18:25 ? 00:00:00 /usr/bin/cygrunsrv
1004 2756 2708 0 18:25 ? 00:00:00 /usr/sbin/sshd -D
1004 3804 1608 0 18:40 ? 00:00:00 /usr/sbin/cron -n
1004 2320 1608 0 18:40 ? 00:00:00 /usr/sbin/cron -n
1000 1812 1 3 18:40 ? 00:00:00 /usr/bin/perl -w /home/StakeAdmin/ssh_tunnel/zippy/ssh_tunnel.pl
1000 4424 1 0 18:40 ? 00:00:00 /usr/bin/perl -w /home/StakeAdmin/ssh_tunnel/tunnels/ssh_tunnel.pl
1000 3748 1812 0 18:40 ? 00:00:00 /usr/bin/procps -edf
1000 4428 4424 0 18:40 ? 00:00:00 /usr/bin/procps -edf
Current netstat
Active Connections
Proto Local Address Foreign Address State
TCP 10.181.164.148:8194 LU-43060:49171 ESTABLISHED
TCP 10.181.164.148:49164 ldssr4:8194 ESTABLISHED
TCP 10.181.164.148:49171 LU-43060:8194 ESTABLISHED
TCP 10.181.164.148:49173 LU-43060:49174 ESTABLISHED
TCP 10.181.164.148:49174 LU-43060:49173 ESTABLISHED
TCP 10.181.164.148:49245 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49246 ec2-54-214-34-112:https CLOSE_WAIT
TCP 10.181.164.148:49247 ec2-54-214-34-112:https CLOSE_WAIT
TCP 10.181.164.148:49250 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49251 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49252 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49253 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49258 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49259 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49260 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49263 a23-13-170-73:http ESTABLISHED
TCP 10.181.164.148:49264 a23-13-170-73:http CLOSE_WAIT
TCP 10.181.164.148:49265 a23-13-170-73:http ESTABLISHED
TCP 10.181.164.148:49266 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49267 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49268 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49269 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49274 204.93.33.19:http ESTABLISHED
TCP 10.181.164.148:49276 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49277 204.93.33.19:http ESTABLISHED
TCP 10.181.164.148:49278 a23-13-166-135:http ESTABLISHED
TCP 10.181.164.148:49282 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49283 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49284 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49285 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49286 a23-13-154-156:http ESTABLISHED
TCP 10.181.164.148:49287 a23-13-166-238:http ESTABLISHED
TCP 10.181.164.148:49288 a23-13-166-238:http ESTABLISHED
TCP 10.181.164.148:49289 204.93.33.34:http ESTABLISHED
TCP 10.181.164.148:49290 204.93.33.34:http CLOSE_WAIT
TCP 10.181.164.148:49291 server-54-230-7-47:http CLOSE_WAIT
TCP 10.181.164.148:49293 a23-13-166-238:http ESTABLISHED
TCP 10.181.164.148:49294 a23-13-166-238:http ESTABLISHED
TCP 10.181.164.148:49295 dfw06s26-in-f28:https ESTABLISHED
TCP 10.181.164.148:49296 dfw06s26-in-f28:https ESTABLISHED
TCP 10.181.164.148:49298 64.233.160.95:http ESTABLISHED
TCP 10.181.164.148:49303 a23-15-8-216:http ESTABLISHED
TCP 10.181.164.148:49304 a23-15-8-216:http ESTABLISHED
TCP 10.181.164.148:49307 dfw06s26-in-f27:https ESTABLISHED
TCP 10.181.164.148:49308 dfw06s26-in-f27:https ESTABLISHED
TCP 10.181.164.148:49309 93.184.215.201:http CLOSE_WAIT
TCP 10.181.164.148:49310 93.184.215.201:http CLOSE_WAIT
TCP 10.181.164.148:49311 server-54-230-7-47:https CLOSE_WAIT
TCP 10.181.164.148:49314 ec2-54-236-169-75:https CLOSE_WAIT
TCP 10.181.164.148:49315 ec2-54-236-169-75:https CLOSE_WAIT
TCP 10.181.164.148:49316 66.70.34.125:http ESTABLISHED
TCP 10.181.164.148:49317 66.70.34.125:http ESTABLISHED
TCP 10.181.164.148:49318 ec2-54-214-34-112:http CLOSE_WAIT
TCP 10.181.164.148:49320 s3-us-west-2-w:http CLOSE_WAIT
TCP 10.181.164.148:49322 ec2-23-21-116-199:http CLOSE_WAIT
TCP 10.181.164.148:49323 ec2-23-21-116-199:http CLOSE_WAIT
TCP 10.181.164.148:49324 162.209.114.244:http CLOSE_WAIT
TCP 10.181.164.148:49326 162.210.192.99:http CLOSE_WAIT
TCP 10.181.164.148:49327 162.210.192.99:http CLOSE_WAIT
TCP 10.181.164.148:49328 hosted-by:http ESTABLISHED
TCP 10.181.164.148:49330 162.209.114.244:https CLOSE_WAIT
TCP 10.181.164.148:49332 224-124-232-198:http CLOSE_WAIT
TCP 10.181.164.148:49335 a23-13-159-139:http CLOSE_WAIT
TCP 10.181.164.148:49336 a23-13-159-139:http CLOSE_WAIT
TCP 10.181.164.148:49337 93.184.216.146:http CLOSE_WAIT
TCP 10.181.164.148:49338 93.184.216.146:http CLOSE_WAIT
TCP 10.181.164.148:49344 91.190.218.17:http ESTABLISHED
TCP 10.181.164.148:49345 91.190.218.17:http ESTABLISHED
TCP 10.181.164.148:49348 91.190.218.18:https ESTABLISHED
TCP 10.181.164.148:49349 91.190.218.18:https ESTABLISHED
TCP 10.181.164.148:49353 ec2-50-112-104-208:http CLOSE_WAIT
TCP 10.181.164.148:49357 edge-star-shv-04-ord1:https CLOSE_WAIT
TCP 10.181.164.148:49358 edge-star-shv-04-ord1:https CLOSE_WAIT
TCP 10.181.164.148:49359 a23-13-146-110:https CLOSE_WAIT
TCP 10.181.164.148:49360 107.14.41.192:http ESTABLISHED
TCP 10.181.164.148:49361 107.14.41.192:http ESTABLISHED
TCP 10.181.164.148:49366 edge-star-shv-04-ord1:http CLOSE_WAIT
TCP 10.181.164.148:49367 162.210.192.99:http CLOSE_WAIT
TCP 10.181.164.148:49368 162.210.192.99:http CLOSE_WAIT
TCP 10.181.164.148:49369 93.184.216.146:https CLOSE_WAIT
TCP 10.181.164.148:49372 162.210.192.99:http CLOSE_WAIT
TCP 10.181.164.148:49379 ec2-54-225-148-233:http CLOSE_WAIT
TCP 10.181.164.148:49380 ec2-54-225-148-233:http CLOSE_WAIT
TCP 10.181.164.148:49385 107.14.41.192:http ESTABLISHED
TCP 10.181.164.148:49386 107.14.41.192:http ESTABLISHED
TCP 10.181.164.148:49387 dfw06s46-in-f30:https ESTABLISHED
TCP 10.181.164.148:49388 dfw06s46-in-f30:https ESTABLISHED
TCP 10.181.164.148:49390 origin:http ESTABLISHED
TCP 10.181.164.148:49391 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49392 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49394 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49396 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49397 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49398 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49399 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49400 a23-13-181-117:https ESTABLISHED
TCP 10.181.164.148:49401 64.233.160.95:https ESTABLISHED
TCP 10.181.164.148:49402 64.233.160.95:https ESTABLISHED
TCP 10.181.164.148:49403 64.233.160.95:https ESTABLISHED
TCP 10.181.164.148:49405 dfw06s26-in-f10:https ESTABLISHED
TCP 10.181.164.148:49406 dfw06s26-in-f10:https ESTABLISHED
TCP 10.181.164.148:49407 dfw06s26-in-f10:https ESTABLISHED
TCP 10.181.164.148:49408 66.117.23.100:https CLOSE_WAIT
TCP 10.181.164.148:49409 66.117.23.100:https CLOSE_WAIT
TCP 10.181.164.148:49410 a23-13-145-169:https CLOSE_WAIT
TCP 10.181.164.148:49411 a23-13-145-169:https CLOSE_WAIT
TCP 10.181.164.148:49414 174.35.10.159:https CLOSE_WAIT
TCP 10.181.164.148:49415 174.35.10.159:https CLOSE_WAIT
TCP 10.181.164.148:49416 174.35.10.159:https CLOSE_WAIT
TCP 10.181.164.148:49417 server-54-230-7-47:https CLOSE_WAIT
TCP 10.181.164.148:49418 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49419 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49420 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49421 a23-13-181-116:https ESTABLISHED
TCP 10.181.164.148:49422 ec2-54-236-180-248:https CLOSE_WAIT
TCP 10.181.164.148:49423 ec2-54-236-180-248:https CLOSE_WAIT
TCP 10.181.164.148:49424 174.35.22.161:https CLOSE_WAIT
TCP 10.181.164.148:49425 174.35.22.161:https CLOSE_WAIT
TCP 10.181.164.148:49426 174.35.22.161:https CLOSE_WAIT
TCP 10.181.164.148:49427 ec2-54-236-180-248:https CLOSE_WAIT
TCP 10.181.164.148:49431 lds:https ESTABLISHED
TCP 10.181.164.148:49432 lds:https ESTABLISHED
TCP 10.181.164.148:49437 64.233.160.95:https ESTABLISHED
TCP 10.181.164.148:49438 192.243.250.36:https CLOSE_WAIT
TCP 10.181.164.148:49439 192.243.250.36:https CLOSE_WAIT
TCP 10.181.164.148:49447 ec2-54-214-34-112:https CLOSE_WAIT
TCP 10.181.164.148:49448 server-54-230-7-47:https CLOSE_WAIT
TCP 10.181.164.148:49450 dfw06s26-in-f26:https ESTABLISHED
TCP 10.181.164.148:49451 dfw06s26-in-f26:https ESTABLISHED
TCP 10.181.164.148:49452 hosted-by:https CLOSE_WAIT
TCP 10.181.164.148:49453 hosted-by:https CLOSE_WAIT
TCP 10.181.164.148:49459 192.243.250.36:https CLOSE_WAIT
TCP 10.181.164.148:49460 192.243.250.36:https CLOSE_WAIT
TCP 10.181.164.148:49461 ec2-50-112-104-208:https CLOSE_WAIT
TCP 10.181.164.148:49462 ec2-54-236-180-248:https CLOSE_WAIT
TCP 10.181.164.148:49463 ec2-54-236-180-248:https CLOSE_WAIT
TCP 10.181.164.148:49536 ldstem4:52311 TIME_WAIT
TCP 10.181.164.148:49537 157.56.30.46:https ESTABLISHED
TCP 10.181.164.148:49538 ldstem4:52311 TIME_WAIT
TCP 10.181.164.148:49539 wsus-mls:http ESTABLISHED
TCP 10.181.164.148:49542 173-14-166-5-NewEngland:ssh TIME_WAIT
TCP 10.181.164.148:49543 173-14-166-5-NewEngland:22022 TIME_WAIT
TCP 127.0.0.1:5354 LU-43060:49156 ESTABLISHED
TCP 127.0.0.1:5354 LU-43060:49157 ESTABLISHED
TCP 127.0.0.1:49156 LU-43060:5354 ESTABLISHED
TCP 127.0.0.1:49157 LU-43060:5354 ESTABLISHED
TCP 127.0.0.1:49161 LU-43060:49162 ESTABLISHED
TCP 127.0.0.1:49162 LU-43060:49161 ESTABLISHED
TCP 127.0.0.1:49168 LU-43060:49169 ESTABLISHED
TCP 127.0.0.1:49169 LU-43060:49168 ESTABLISHED
TCP 127.0.0.1:49223 LU-43060:49224 ESTABLISHED
TCP 127.0.0.1:49224 LU-43060:49223 ESTABLISHED
crontab file
# DO NOT EDIT THIS FILE - edit the master and reinstall.
# (/tmp/crontab.YgkKcgX0sx installed on Sun Jun 2 09:39:02 2013)
# (Cron version V5.0 -- $Id: crontab.c,v 1.12 2004/01/23 18:56:42 vixie Exp $)
#MAILTO=john@larsen-family.us
MAILTO=stakeadmin@nashuastake.dnsalias.org
#* * * * * echo "`date`: testing ssmtp"; echo `date` > /home/StakeAdmin/crontest.txt
# Run the backups
#30 4 * * * /home/StakeAdmin/backup/backup.cron
#15 17 * * * /home/StakeAdmin/backup/backup.cron
# Kill the sophos client firewall if it is running
#00,10,20,30,40,50 * * * * /home/StakeAdmin/bin/kill_scf.pl
# Keep the SSH tunnel going
0,10,20,30,40,50 * * * * /home/StakeAdmin/ssh_tunnel/zippy/ssh_tunnel.pl
0,10,20,30,40,50 * * * * /home/StakeAdmin/ssh_tunnel/tunnels/ssh_tunnel.pl
# Restart the VNC server in case someone shut it down
2 0 * * * /c/Windows/system32/net start "uvnc_service"
loader.conf file
# Filename: loader.conf
# Description: This is the configuration file for the loader portion of the
# ssh_tunnel program. Once configured the contents of this file never change.
# This insures that the loader will always operate. It is important not to
# change the formatting of this file because it is read by the ssh_tunnel and
# processed using perl which is expecting things to be in certain locations.
#
# loader.conf has two sections:
# 1. Configuration information such as the names of the ssh and sshd
# hosts, the working directories on each host, and other data as needed.
# 2. The ssh host configuration for the loader program is in this file.
# That configuration should never change. It needs to be at the end
# of the file because ssh uses everything between "Host" entries as
# configuration. There is only one Host section in this file.
#
########################################################################
# The following section contains host information
# SSH_CLIENT billerica
# SSH_CLIENT_DIR /home/StakeAdmin/ssh_tunnel/zippy
# SSH_SERVER zippy
# SSH_SERVER_DIR /home/tunnels/ssh_tunnel/billerica
#
########################################################################
# The following section is the ssh config file for the loader program.
# IMPORTANT! The path on the client MUST have the SSH_SERVER name in
# it. The script uses this name is search strings and it MUST be there.
Host loader
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.billerica
tunnel.conf file
# Filename: tunnel.conf
#
# Description: This is the configuration file for the tunnel and pulse sections of the
# ssh_tunnel program. The contents of this file can be changed during program execution.
# It is important not to change the formatting of the file because it is processed
# using perl which is expecting things to be in certain locations.
#
# tunnel.conf has three sections:
# 1. Configuration information such as email addresses and thresholds.
# 2. The ssh host configuration for the tunnel. This consists of two
# host definitions, tunnel and heartbeat. The tunnel is the permanent
# connection and defines port forwarding. The heartbeat uses one of
# the forwarded ports to write and copy heartbeat files between the
# ssh client and the ssh server. Changing heartbeats indicate that the
# tunnel is functioning.
# 3. The webpage configuration section as described below. This has the
# ssh host configuration for updating a webpage on a webserver.
#
################################################################################
# The following section contains configuration information. DON'T REMOVE the
# leading pound sign (#). The lines must be commented or the files won't work
# for ssh.
#
# The tunnel is either "enabled" or "disabled" based on the value given
# below. If disabled, then no processes are running on either the
# client or the server. A cron job on the client runs ssh_tunnel.pl periodically
# to check if tunnel.conf has changed on the server. If a change is detected
# then the new tunnel.conf file is transfered over. If the tunnel state
# becomes "enabled" then the tunnel is activated.
# TUNNEL_STATE disabled
#
# The email addresses below receive diagnostic messages. Separate
# multiple addresses with commas and no white space. The word "none"
# turns off email sending and is the default. The same email address
# is used by cron, loader, tunnel, and pulse.
# EMAIL_ADDRESS john@larsen-family.us
#
# The threshold defined below is how many port failures are required
# before an email is sent. Set this to "none" to turn this off. If
# the ssh_server's ssh port isn't accessible then the loader kills
# the tunnel. This periodic email serves as a reminder that the tunnel
# is enabled but down.
# EMAIL_THRESHOLD none
#
# The loader, tunnel, and pulse programs all have the same sleep value.
# The sleep time can be changed here. It should be in the range of
# 60 to 3600 seconds. Shorter sleep times increase system loading.
# The sleep time must be less than half the crontab time for ssh_tunnel.pl.
# SLEEP_TIME 300
#
#
################################################################################
# The following section is the ssh config file for the tunnel program.
# IMPORTANT! The path on the client MUST have the SSH_SERVER name in
# it. The script uses this name is search strings and it MUST be there.
#
# The ssh_server must be configured to allow remote port forwarding. This
# is normally off by default in the ssh_server's sshd_config file.
# Set "GatewayPorts yes" in sshd_config.
#
# Important info about port numbers used in the "ssh_tunnel" and "heartbeat"
# sections below. The "heartbeat" Port number must be the same as the last
# two port numbers in the "ssh_tunnel" section. In this example 50022 is
# used. The port number used must be unused by anything else on the two
# machines. If you have multiple tunnels connecting to a single ssh_server
# be sure to use different port numbers. The last two lines both use the
# name "localhost". You could put the actual names of the ssh server and
# client instead, but using localhost is safest. If the machine's name
# were changed the tunnel would no longer work. Using "localhost" guarantees
# the forwarding will work even if the machine's name changes. The other
# RemoteForward lines forward ports on the ssh server to ports on machines
# on the LAN where the ssh client resides. These aren't required and should
# be removed if not needed.
#
Host tunnel
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.billerica
Compression = yes
RemoteForward = 27900 localhost:5900
RemoteForward = 27022 localhost:22
LocalForward = 27022 localhost:22
################################################################################
Host heartbeat
HostName localhost
Port = 27022
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.billerica
################################################################################
Host pulse
HostName localhost
Port = 27022
UserKnownHostsFile = /home/tunnels/ssh_tunnel/billerica/known_hosts
User = StakeAdmin
IdentityFile = /home/tunnels/ssh_tunnel/billerica/id_rsa.billerica
################################################################################
# Note: This section must be last in tunnel.conf.
# A webpage will be copied to the directory set by WEBSERVER_DIR below. The
# default value "none" turns this feature off. Change "none" to the directory
# path where the webpage should be copied. The "webpage" host information
# below must also be changed to valid values to make this work.
# WEBSERVER_DIR /home/tunnels/ssh_tunnel_html
#
# The filename of the webpage copied to the webserver defaults to
# SSH_CLIENT_to_SSH_SERVER.html. To choose a different name replace the
# word "default" on the line below with the desired name.
# WEBPAGE_FILENAME default
#
# A copy of the webpage can be put in the directory define by WEBPAGE_LOCAL_DIR.
# Change "none" to a valid directory to enable this feature.
# WEBPAGE_LOCAL_DIR /home/StakeAdmin/ssh_tunnel/zippy
#
# The webpage update rate defaults to once per sleep time. Change the value below
# to select a different rate. The update rate is the number of times through the
# loader while loop before updating the webpage. This value is ignored when events
# occur such as the tunnel going down or during startup. The webpage is updated
# for all non normal runtime events.
# WEBPAGE_UPDATE_RATE 1
#
Host webpage
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.billerica