ssh_tunnel statistics: client1 to zippy
Time: 2014-Feb-16 11:30:04 Sun
Current tunnel state: disabled          Current tunnel condition: DOWN
loader stats
------ loader (pid: 188 ) ------------ (v3.31 2006-05-29) ----- State: disabled DOWN
Time: 2013-Dec-04 03:10:02 Wed
client: client1
server: zippy
client heartbeat: Client Heartbeat
server heartbeat: Server Heartbeat
server heartbeat 1: Server Heartbeat 1
server heartbeat 2: Server Heartbeat 2
server heartbeat 3: Server Heartbeat 3
server heartbeat 4: Server Heartbeat 4
Sleep time: 295
loader loop counter: 0
bad port tests: 0 last: none yet
failed file updates: 0 last: none yet
tunnels killed: 3 last: 2013-Dec-04 03:10:02 Wed
emails sent: 0 last: none yet
email addresses: stakeadmin@nashuastake.dnsalias.org
loader started: YYYY-MMM-DD HH:MM:SS DOW
debug flags: 0x0
tunnel stats
------ tunnel (pid: 1936 ) ------------ (v3.31 2006-05-29) ----- State: enabled UP
Time: 2013-Jun-11 07:29:36 Tue
client: client1
server: zippy
client heartbeat: Tue Jun 11 07:29:35 EDT 2013
server heartbeat: Tue Jun 11 07:24:42 EDT 2013
Sleep time: 295
tunnel loop counter: 9
bad port tests: 0 last: none yet
emails sent: 1 last: 2013-Jun-11 06:50:11 Tue
email addresses: stakeadmin@nashuastake.dnsalias.org
tunnel started: 2013-Jun-11 06:50:15 Tue
debug flags: 0x0
Current users, uptime, and load average
11:30:04 up 21:49, 0 users, load average: 0.00, 0.00, 0.00
USER TTY LOGIN@ IDLE JCPU PCPU WHAT
Current processes
UID PID PPID C STIME TTY TIME CMD
1011 2768 2724 0 Feb15 ? 00:00:00 /usr/sbin/sshd -D
1009 1472 1340 0 Feb15 ? 00:00:00 /usr/sbin/cron -n
1009 4064 5148 0 11:30 ? 00:00:00 /usr/bin/procps -edf
1009 1340 1 0 Feb15 ? 00:00:00 /usr/bin/cygrunsrv
1009 5148 1 0 11:30 ? 00:00:00 /usr/bin/perl -w /home/StakeAdmin/ssh_tunnel/zippy/ssh_tunnel.pl
1009 4016 4548 5 11:30 ? 00:00:00
1009 4548 1472 0 11:30 ? 00:00:00 /usr/sbin/cron -n
1011 2724 1 0 Feb15 ? 00:00:00 /usr/bin/cygrunsrv
Current netstat
Active Connections
Proto Local Address Foreign Address State
TCP 10.158.54.5:8194 client1:49166 ESTABLISHED
TCP 10.158.54.5:49166 client1:8194 ESTABLISHED
TCP 10.158.54.5:49168 client1:49169 ESTABLISHED
TCP 10.158.54.5:49169 client1:49168 ESTABLISHED
TCP 10.158.54.5:49182 fhc-beast:microsoft-ds ESTABLISHED
TCP 10.158.54.5:55700 216.49.178.216:8194 ESTABLISHED
TCP 10.158.54.5:56972 client2:49165 ESTABLISHED
TCP 10.158.54.5:56976 client2:epmap ESTABLISHED
TCP 10.158.54.5:56977 client2:49165 ESTABLISHED
TCP 10.158.54.5:56978 client2:49165 ESTABLISHED
TCP 10.158.54.5:56979 client2:49165 ESTABLISHED
TCP 10.158.54.5:57619 client2:microsoft-ds ESTABLISHED
TCP 10.158.54.5:57620 client2:49165 ESTABLISHED
TCP 10.158.54.5:57623 173-14-166-5-NewEngland:ssh TIME_WAIT
TCP 127.0.0.1:5354 Client1:49156 ESTABLISHED
TCP 127.0.0.1:49156 Client1:5354 ESTABLISHED
TCP 127.0.0.1:49157 Client1:49158 ESTABLISHED
TCP 127.0.0.1:49158 Client1:49157 ESTABLISHED
TCP 127.0.0.1:49160 Client1:49161 ESTABLISHED
TCP 127.0.0.1:49161 Client1:49160 ESTABLISHED
TCP 127.0.0.1:49183 Client1:49185 TIME_WAIT
crontab file
# DO NOT EDIT THIS FILE - edit the master and reinstall.
# (/tmp/crontab.g3YxMEzJF0 installed on Mon May 27 14:41:07 2013)
# (Cron version V5.0 -- $Id: crontab.c,v 1.12 2004/01/23 18:56:42 vixie Exp $)
#MAILTO=john@larsen-family.us
MAILTO=stakeadmin@nashuastake.dnsalias.org
#* * * * * echo "`date`: testing ssmtp"; echo `date` > /home/StakeAdmin/crontest.txt
# Run the backups
#30 4 * * * /home/StakeAdmin/backup/backup.cron
#15 17 * * * /home/StakeAdmin/backup/backup.cron
# Kill the sophos client firewall if it is running
00,10,20,30,40,50,05,15,25,35,45,55 * * * * /home/StakeAdmin/bin/kill_scf.pl
# Keep the ssh tunnel up and running
0,10,20,30,40,50 * * * * /home/StakeAdmin/ssh_tunnel/zippy/ssh_tunnel.pl
loader.conf file
# Filename: loader.conf
# Description: This is the configuration file for the loader portion of the
# ssh_tunnel program. Once configured the contents of this file never change.
# This insures that the loader will always operate. It is important not to
# change the formatting of this file because it is read by the ssh_tunnel and
# processed using perl which is expecting things to be in certain locations.
#
# loader.conf has two sections:
# 1. Configuration information such as the names of the ssh and sshd
# hosts, the working directories on each host, and other data as needed.
# 2. The ssh host configuration for the loader program is in this file.
# That configuration should never change. It needs to be at the end
# of the file because ssh uses everything between "Host" entries as
# configuration. There is only one Host section in this file.
#
########################################################################
# The following section contains host information
# SSH_CLIENT client1
# SSH_CLIENT_DIR /home/StakeAdmin/ssh_tunnel/zippy
# SSH_SERVER zippy
# SSH_SERVER_DIR /home/tunnels/ssh_tunnel/client1
#
########################################################################
# The following section is the ssh config file for the loader program.
# IMPORTANT! The path on the client MUST have the SSH_SERVER name in
# it. The script uses this name is search strings and it MUST be there.
Host loader
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.client1
tunnel.conf file
# Filename: tunnel.conf
#
# Description: This is the configuration file for the tunnel and pulse sections of the
# ssh_tunnel program. The contents of this file can be changed during program execution.
# It is important not to change the formatting of the file because it is processed
# using perl which is expecting things to be in certain locations.
#
# tunnel.conf has three sections:
# 1. Configuration information such as email addresses and thresholds.
# 2. The ssh host configuration for the tunnel. This consists of two
# host definitions, tunnel and heartbeat. The tunnel is the permanent
# connection and defines port forwarding. The heartbeat uses one of
# the forwarded ports to write and copy heartbeat files between the
# ssh client and the ssh server. Changing heartbeats indicate that the
# tunnel is functioning.
# 3. The webpage configuration section as described below. This has the
# ssh host configuration for updating a webpage on a webserver.
#
################################################################################
# The following section contains configuration information. DON'T REMOVE the
# leading pound sign (#). The lines must be commented or the files won't work
# for ssh.
#
# The tunnel is either "enabled" or "disabled" based on the value given
# below. If disabled, then no processes are running on either the
# client or the server. A cron job on the client runs ssh_tunnel.pl periodically
# to check if tunnel.conf has changed on the server. If a change is detected
# then the new tunnel.conf file is transfered over. If the tunnel state
# becomes "enabled" then the tunnel is activated.
# TUNNEL_STATE disabled
#
# The email addresses below receive diagnostic messages. Separate
# multiple addresses with commas and no white space. The word "none"
# turns off email sending and is the default. The same email address
# is used by cron, loader, tunnel, and pulse.
# EMAIL_ADDRESS stakeadmin@nashuastake.dnsalias.org
#
# The threshold defined below is how many port failures are required
# before an email is sent. Set this to "none" to turn this off. If
# the ssh_server's ssh port isn't accessible then the loader kills
# the tunnel. This periodic email serves as a reminder that the tunnel
# is enabled but down.
# EMAIL_THRESHOLD 50
#
# The loader, tunnel, and pulse programs all have the same sleep value.
# The sleep time can be changed here. It should be in the range of
# 60 to 3600 seconds. Shorter sleep times increase system loading.
# The sleep time must be less than half the crontab time for ssh_tunnel.pl.
# SLEEP_TIME 295
#
#
################################################################################
# The following section is the ssh config file for the tunnel program.
# IMPORTANT! The path on the client MUST have the SSH_SERVER name in
# it. The script uses this name is search strings and it MUST be there.
#
# The ssh_server must be configured to allow remote port forwarding. This
# is normally off by default in the ssh_server's sshd_config file.
# Set "GatewayPorts yes" in sshd_config.
#
# Important info about port numbers used in the "ssh_tunnel" and "heartbeat"
# sections below. The "heartbeat" Port number must be the same as the last
# two port numbers in the "ssh_tunnel" section. In this example 50022 is
# used. The port number used must be unused by anything else on the two
# machines. If you have multiple tunnels connecting to a single ssh_server
# be sure to use different port numbers. The last two lines both use the
# name "localhost". You could put the actual names of the ssh server and
# client instead, but using localhost is safest. If the machine's name
# were changed the tunnel would no longer work. Using "localhost" guarantees
# the forwarding will work even if the machine's name changes. The other
# RemoteForward lines forward ports on the ssh server to ports on machines
# on the LAN where the ssh client resides. These aren't required and should
# be removed if not needed.
#
Host tunnel
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.client1
Compression = yes
RemoteForward = 29995 localhost:5905
RemoteForward = 29022 localhost:22
LocalForward = 29022 localhost:22
################################################################################
Host heartbeat
HostName localhost
Port = 29022
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.client1
################################################################################
Host pulse
HostName localhost
Port = 29022
UserKnownHostsFile = /home/tunnels/ssh_tunnel/client1/known_hosts
User = StakeAdmin
IdentityFile = /home/tunnels/ssh_tunnel/client1/id_rsa.client1
################################################################################
# Note: This section must be last in tunnel.conf.
# A webpage will be copied to the directory set by WEBSERVER_DIR below. The
# default value "none" turns this feature off. Change "none" to the directory
# path where the webpage should be copied. The "webpage" host information
# below must also be changed to valid values to make this work.
# WEBSERVER_DIR /home/tunnels/ssh_tunnel_html
#
# The filename of the webpage copied to the webserver defaults to
# SSH_CLIENT_to_SSH_SERVER.html. To choose a different name replace the
# word "default" on the line below with the desired name.
# WEBPAGE_FILENAME default
#
# A copy of the webpage can be put in the directory define by WEBPAGE_LOCAL_DIR.
# Change "none" to a valid directory to enable this feature.
# WEBPAGE_LOCAL_DIR none
#
# The webpage update rate defaults to once per sleep time. Change the value below
# to select a different rate. The update rate is the number of times through the
# loader while loop before updating the webpage. This value is ignored when events
# occur such as the tunnel going down or during startup. The webpage is updated
# for all non normal runtime events.
# WEBPAGE_UPDATE_RATE 1
#
Host webpage
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /home/StakeAdmin/ssh_tunnel/zippy/known_hosts
User = tunnels
IdentityFile = /home/StakeAdmin/ssh_tunnel/zippy/id_rsa.client1