sshuttle acting funny

178 views
Skip to first unread message

ztb...@gmail.com

unread,
Mar 20, 2013, 5:58:45 PM3/20/13
to sshu...@googlegroups.com

Here are my symptoms:


I connect successfully and it asks for my remote ssh password.

I provide it and the connection is completed with no errors.

I traceroute to an external site, and it does not show as going to my server tunneled. It shows me going directly from my local network (here not my tunneled network) to the site.

I try and ping equipment within my tunneled network and it can't connect to host.

This confuses me because it throws no errors and properly authenticates to the ssh server.

I also believe it was working before but recently quit.

Any ideas? Suggestions?

Command I am using: sshuttle --dns -r myusername@mydomain:alternateport 0/0

Cheers,



Tony Godshall

unread,
Mar 20, 2013, 8:23:22 PM3/20/13
to ztb...@gmail.com, sshu...@googlegroups.com
Um, have you read what sshuttle is for? It forwards TCP connections.
Ping does not go over TCP.
> --
> You received this message because you are subscribed to the Google Groups
> "sshuttle" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to sshuttle+u...@googlegroups.com.
> For more options, visit https://groups.google.com/groups/opt_out.
>
>



--
Best Regards.
This is unedited.

ztb...@gmail.com

unread,
Mar 21, 2013, 10:56:02 AM3/21/13
to sshu...@googlegroups.com, ztb...@gmail.com
I'm aware of that, however I'm trying to illustrate a total inability to connect to my own personal equipment via the connection. For instance RDP to my server does not work either. TCP

Tony Godshall

unread,
Mar 21, 2013, 11:39:59 AM3/21/13
to ztb...@gmail.com, sshu...@googlegroups.com
Ping and traceroute are both useless in this context, so you'll have
to find tcp-based alternatives for troubleshooting at tcp-only routing
issues.

I've never used --dns or 0/0, so my next step would be might try
narrow down the problem to see if sshuttle works for its more common
purpose of accessing a remote "local network" - perhaps the issue is
at the remote end letting your traffic get to 0/0.

Gert Van Gool

unread,
Mar 21, 2013, 3:24:28 PM3/21/13
to Tony Godshall, ztb...@gmail.com, sshuttle
Maybe the easiest way to test it is via a website.

Run:. curl https://icanhazip.com
It should return your (remote) ip.

-- Gert

Mobile: +32 498725202

ztb...@gmail.com

unread,
Mar 21, 2013, 3:29:40 PM3/21/13
to sshu...@googlegroups.com, ztb...@gmail.com
I know this is going to sound weird, but now all of a sudden it is showing the correct ip. Not only via the curl command you gave me but on the websites I normally check. I didn't restart anything, it has just started acting as expected again.
Odd..

Tony Godshall

unread,
Mar 21, 2013, 5:19:24 PM3/21/13
to ztb...@gmail.com, sshu...@googlegroups.com
Perhaps you are the subject of The Man In The Middle, agent z t b 0001. :-)
Reply all
Reply to author
Forward
0 new messages