Re: Is there anybody out there?

Steve Platt <[email protected]> Tue, 14 Oct 2008 16:04:01 +0100
Newsgroups gmane.network.nocat
Message-ID <[email protected]>
>is there anyone still out there using/working on Nocat?

Further to Espen's remarks, we too are still using it as described below.


We use it (in "bridge mode") to authenticate users of our wireless network.

We had some trouble at first understanding the various timeout options and had 
to disable one of them (IdleTimeout) to stop active users being chucked off 
(hmmm, maybe ARP just ain't what it used to be?).

We still have the problem that users sometimes find they don't have to 
authenticate any more after a while. Of course they never complain about this! 
Of course, if we hadn't disabled the IdleTimeout option then we might never 
see this second problem.

Other than that it does the job we want so we're happy to be using NoCat ... 
thanks to everyone who has supported its development so far!



Recently, however, a minor query has arisen. We now find we need to allow 
"incoming" HTTP connections to one of our wireless hosts (on TCP port 80). As 
this host doesn't need to authenticate to NoCat we have already added an 
"exception" for this host and this allows most traffic (eg incoming SSH) to 
work as if the NoCat bridge were not there, which is what we want for this 
host.

It seems incoming HTTP connections to this host are being "captured" (since 
they are to port 80) despite the "exception". I guess NoCat in bridge mode 
cannot distinguish between "inside" and "outside"?

Any suggestions for overcoming this would be welcome. For now we've connected 
the host concerned to the other "side" of the bridge but this is slightly 
inconvenient and I'd rather avoid it if possible.


Thanks,
Steve Platt