ssh_tunnel statistics: jellyfish to screamer

Time: 2006-Dec-11 10:00:10 Mon

Current tunnel state: disabled          Current tunnel condition: DOWN

loader stats

------ loader (pid: 26049 ) ------------ (v3.26 2006/04/15) ----- State: disabled DOWN
Time:                2006-Dec-10 00:00:33 Sun
client:              jellyfish
server:              screamer
client heartbeat:    Client Heartbeat
server heartbeat:    Server Heartbeat
server heartbeat 1:  Server Heartbeat 1
server heartbeat 2:  Server Heartbeat 2
server heartbeat 3:  Server Heartbeat 3
server heartbeat 4:  Server Heartbeat 4
Sleep time:          240
loader loop counter: 0
bad port tests:      0     last: none yet
failed file updates: 0     last: none yet
tunnels killed:      2     last: 2006-Dec-10 00:00:33 Sun
emails sent:         1     last: 2006-Dec-10 00:00:32 Sun
email addresses:     john@larsen-family.us
loader started:      YYYY-MMM-DD HH:MM:SS DOW
debug flags:         0x0

tunnel stats

------ tunnel (pid: 12022 ) ------------ (v3.26 2006/04/15) ----- State: enabled UP
Time:                2006-Jul-18 11:45:27 Tue
client:              jellyfish
server:              screamer
client heartbeat:    Tue Jul 18 11:45:19 EDT 2006
server heartbeat:    Tue Jul 18 11:42:11 EDT 2006
Sleep time:          240
tunnel loop counter: 2
bad port tests:      0     last: none yet
emails sent:         1     last: 2006-Jul-18 11:40:46 Tue
email addresses:     john@larsen-family.us
tunnel started:      2006-Jul-18 11:41:19 Tue
debug flags:         0x0

Current users, uptime, and load average

 10:00am  up 195 day(s), 11 min(s),  0 users,  load average: 1.03, 1.00, 1.00
User     tty           login@  idle   JCPU   PCPU  what

Current processes

     UID   PID  PPID  C    STIME TTY      TIME CMD
    root     0     0  0   May 30 ?        0:00 sched
    root     1     0  0   May 30 ?        6:25 /etc/init -
    root     2     0  0   May 30 ?        0:00 pageout
    root     3     0  0   May 30 ?       318:08 fsflush
    root   787     1  0   May 30 ?        0:00 /usr/lib/saf/sac -t 300
    root   302     1  0   May 30 ?        0:07 /usr/sbin/nsrexecd -s legato
    root   152     1  1   May 30 ?       274:53 /usr/sbin/rpcbind
    root    53     1  0   May 30 ?        0:00 /usr/lib/sysevent/syseventd
    root    55     1  0   May 30 ?        0:00 /usr/lib/sysevent/syseventconfd
    root    63     1  0   May 30 ?        0:00 /usr/lib/picl/picld
    root   207     1  1   May 30 ?       69:05 /usr/lib/autofs/automountd
    root   251     1  0   May 30 ?        0:06 /usr/lib/inet/xntpd
    root   190     1  0   May 30 ?        0:00 /usr/lib/nfs/lockd
    root   155     1  0   May 30 ?        1:36 /usr/sbin/keyserv
    root   283   281  0   May 30 ?        0:00 /usr/sadm/lib/smc/bin/smcboot
    root   788     1  0   May 30 pts/1    0:00 /usr/lib/saf/ttymon -g -h -p jellyfish console login:  -T sun -d /dev/console -
    root   157     1  0   May 30 ?        2:37 /usr/sbin/nis_cachemgr
  daemon   191     1  0   May 30 ?        0:00 /usr/lib/nfs/statd
    root   252     1  0   May 30 ?        0:00 /usr/lib/lpsched
    root   187     1  0   May 30 ?        0:01 /usr/sbin/inetd -s
    root   221     1  0   May 30 ?        1:42 /usr/sbin/syslogd
    root   245     1  0   May 30 ?       402:30 /usr/sbin/nscd
    root   357   316  0   May 30 ?        0:29 /usr/openwin/bin/Xsun :0 -nobanner -auth /var/dt/A:0-sYaGNa
    root   228     1 57   May 30 ?       19555:32 /usr/sbin/cron
    root   266     1  0   May 30 ?        0:03 /usr/lib/power/powerd
    root   275     1  0   May 30 ?        0:04 /usr/lib/utmpd
    root   281     1  0   May 30 ?        0:00 /usr/sadm/lib/smc/bin/smcboot
    root   290     1  0   May 30 ?        0:04 /usr/lib/sendmail -bd -q15m
    root   291     1  0   May 30 ?        0:02 /usr/sbin/vold
    root   304   302  0   May 30 ?        0:09 /usr/sbin/nsrexecd -s legato
    root   392     1  0   May 30 ?        0:00 /usr/lib/nfs/nfsd -a 16
    root   397     1  0   May 30 ?        0:07 /usr/sbin/rpc.bootparamd
    root   316     1  0   May 30 ?        0:28 /usr/dt/bin/dtlogin -daemon
    root   318     1  0   May 30 ?        0:04 /opt/samba/sbin/smbd -D -d 0
    root   390     1  0   May 30 ?        0:00 /usr/lib/nfs/mountd
    root   395     1  0   May 30 ?       13:19 /usr/sbin/in.rarpd -a
    root   398   316  0   May 30 ?        0:00 /usr/dt/bin/dtlogin -daemon
    root   403     1  0   May 30 ?        0:00 /usr/lib/snmp/snmpdx -y -c /etc/snmp/conf
    root   429     1  0   May 30 ?        3:11 /opt/rational/clearcase/etc/albd_server
    root   408   403  0   May 30 ?       277:54 mibiisa -r -p 32834
    root   428   398  0   May 30 ?        0:27 dtgreet -display :0
    root   410     1  0   May 30 ?        0:00 /usr/openwin/bin/fbconsole -d :0
    root   431     1  0   May 30 ?        0:22 /opt/rational/clearcase/etc/lockmgr -a /var/adm/rational/clearcase/almd -q 1024
    root   970   187  0   May 30 ?        0:58 cachefsd
    root   790   787  0   May 30 ?        0:00 /usr/lib/saf/ttymon
    root   737     1  0   May 30 ?        0:00 /usr/lib/dmi/snmpXdmid -s jellyfish
    root   736     1  0   May 30 ?        0:01 /usr/lib/dmi/dmispd
    root   782     1  0   May 30 ?        0:20 /opt/sbin/sshd
atangrin 19192   429  0   Nov 14 ?        0:00 view_server /private1/views/fia_spvr -u a628e446.e34f11d4.b149.00:01:80:8d:a9:3
    root  8082  8065  0 10:00:05 ?        0:00 /usr/local/bin/perl -w /etc/ssh/ssh_tunnel/old-beast/ssh_tunnel.pl
    root  8062   228  0 10:00:00 ?        0:00 sh -c /etc/ssh/ssh_tunnel/old-beast/ssh_tunnel.pl
    root  8134  8128  1 10:00:10 ?        0:00 /bin/ps -edf
    root  8084  8083  0 10:00:05 ?        0:00 /usr/bin/telnet larsen-family.us 143
    root  8083  8082  0 10:00:05 ?        0:00 sh -c echo test | /usr/bin/telnet larsen-family.us 143 2>1
    root  8085  8084  0                   0:00 
    root  8065  8062  5 10:00:00 ?        0:01 /usr/local/bin/perl -w /etc/ssh/ssh_tunnel/old-beast/ssh_tunnel.pl
    root  8128     1  0 10:00:10 ?        0:00 /usr/local/bin/perl -w /etc/ssh/ssh_tunnel/screamer/ssh_tunnel.pl

Current netstat


TCP: IPv4
   Local Address        Remote Address    Swind Send-Q Rwind Recv-Q  State
-------------------- -------------------- ----- ------ ----- ------ -------
jellyfish.969        speedy.nfsd          26280      0 24820      0 TIME_WAIT
jellyfish.968        iris.nfsd             8760      0 24820      0 TIME_WAIT
jellyfish.967        fog2.nfsd            24820      0 24820      0 TIME_WAIT
jellyfish.966        fog1.nfsd            24820      0 24820      0 TIME_WAIT
jellyfish.53012      speedy.nfsd          26280      0 24820      0 TIME_WAIT
jellyfish.965        speedy.nfsd          26280      0 24820      0 ESTABLISHED
jellyfish.964        iris.nfsd             8760      0 24820      0 ESTABLISHED
jellyfish.53015      fog2.32986           24820      0 24820      0 TIME_WAIT
jellyfish.53016      fog2.32986           24820      0 24820      0 TIME_WAIT
jellyfish.53017      fog2.32986           24820      0 24820      0 TIME_WAIT
jellyfish.53018      fog2.32986           24820      0 24820      0 TIME_WAIT
jellyfish.963        fog2.nfsd            24820      0 24820      0 ESTABLISHED
jellyfish.53019      fog1.32896           24820      0 24820      0 TIME_WAIT
jellyfish.53020      fog1.32896           24820      0 24820      0 TIME_WAIT
jellyfish.53021      fog1.32896           24820      0 24820      0 TIME_WAIT
jellyfish.53022      fog1.32896           24820      0 24820      0 TIME_WAIT
jellyfish.962        fog1.nfsd            24820      0 24820      0 ESTABLISHED
jellyfish.53023      c-66-31-7-212.hsd1.nh.comcast.net.22  9480      0 24820      0 TIME_WAIT

Active UNIX domain sockets
Address  Type          Vnode     Conn  Local Addr      Remote Addr
7098fd48 stream-ord 707e5130 00000000 /tmp/.X11-unix/X0                
7098fe68 stream-ord 00000000 00000000                               

crontab file

#ident	"@(#)root	1.19	98/07/06 SMI"	/* SVr4.0 1.1.3.1	*/
#
# The root crontab should be used to perform accounting data collection.
#
# The rtc command is run to adjust the real time clock if and when
# daylight savings time changes.
#
10 3 * * 0,4 /etc/cron.d/logchecker
10 3 * * 0   /usr/lib/newsyslog
15 3 * * 0 /usr/lib/fs/nfs/nfsfind
1 2 * * * [ -x /usr/sbin/rtc ] && /usr/sbin/rtc -c > /dev/null 2>&1
30 3 * * * [ -x /usr/lib/gss/gsscred_clean ] && /usr/lib/gss/gsscred_clean
0,10,20,30,40,50 * * * * /etc/ssh/ssh_tunnel/screamer/ssh_tunnel.pl
0,10,20,30,40,50 * * * * /etc/ssh/ssh_tunnel/old-beast/ssh_tunnel.pl

loader.conf file

# Filename:  loader.conf
# Description:  This is the configuration file for the loader portion of the 
# ssh_tunnel program.  The contents of this file never change.  This insures
# that the loader will always operate.  It is important not to change the 
# formatting of this file because it is read by the ssh_tunnel and processed 
# using perl which is expecting things to be in certain locations.
#
# loader.conf has two sections:
# 1. Configuration information such as the names of the ssh and sshd
#    hosts, the working directories on each host, and other data as needed.
# 2. The ssh host configuration for the loader program is in this file.
#    That configuration should never change.  It needs to be at the end
#    of the file because ssh uses everything between "Host" entries as
#    configuration.  There is only one Host section in this file.
#
########################################################################
# The following section contains host information 
# SSH_CLIENT      jellyfish
# SSH_CLIENT_DIR  /etc/ssh/ssh_tunnel/screamer
# SSH_SERVER      screamer
# SSH_SERVER_DIR  /home/tunnels/ssh_tunnel/jellyfish
#
########################################################################
# The following section is the ssh config file for the loader program.
# IMPORTANT!  The path on the client MUST have the SSH_SERVER name in
# it.  The script uses this name is search strings and it MUST be there.
Host loader
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /etc/ssh/ssh_tunnel/screamer/known_hosts
User = tunnels
IdentityFile = /etc/ssh/ssh_tunnel/screamer/id_rsa.jellyfish

tunnel.conf file

# Filename:  tunnel.conf
#
# Description:  This is the configuration file for the tunnel portion of the 
# ssh_tunnel program.  The contents of this file can be changed during program execution.
# It is important not to change the formatting of the file because it is read by the
# tunnel program and processed using awk which is expecting things to be in certain
# locations.
#
# tunnel.conf has three sections:
# 1. Configuration information such as email addresses and thresholds.
# 2. The ssh host configuration for the tunnel.  This consists of two
#    host definitions, tunnel and heartbeat.  The tunnel is the permanent
#    connection and defines port forwarding.  The heartbeat uses one of 
#    the forwarded ports to write and copy heartbeat files between the
#    ssh client and the ssh server.  Changing heartbeats indicate that the
#    tunnel is functioning.
# 3. The webpage configuration section as described below.  This has the
#    ssh host configuration for updating a webpage on a webserver.
#
################################################################################
# The following section contains configuration information
#
# The tunnel is either "enabled" or "disabled" based on the value given
# below.  If disabled, then no processes are running on either the
# client or the server.  A cron job on the client runs ssh_tunnel.pl periodically
# to check if tunnel.conf has changed on the server.  If a change is detected
# then the new tunnel.conf file is transfered over.  If the tunnel state
# becomes "enabled" then the tunnel is activated.
# TUNNEL_STATE disabled
#
# The email addresses below receive diagnostic messages.  Separate
# multiple addresses with commas and no white space.  The word "none"
# turns off email sending and is the default.  The same email address
# is used by cron, loader, tunnel, and pulse.
# EMAIL_ADDRESS     john@larsen-family.us
#
# The threshold defined below is how many port failures are required
# before an email is sent.  Set this to "none" to turn this off.  If
# the ssh_server's ssh port isn't accessible then the loader kills 
# the tunnel.  This periodic email serves as a reminder that the tunnel
# is down.
# EMAIL_THRESHOLD   50
#
# The loader, tunnel, and pulse programs all have the same sleep value.
# The sleep time can be changed here.  It should be in the range of
# 60 to 3600 seconds.  Shorter sleep times increase system loading.
# The sleep time must be less than half the crontab time for ssh_tunnel.pl.
# SLEEP_TIME        240
#
#
################################################################################
# The following section is the ssh config file for the tunnel program.
# IMPORTANT!  The path on the client MUST have the SSH_SERVER name in
# it.  The script uses this name is search strings and it MUST be there.
#
# Important info about port numbers used in the "ssh_tunnel" and "heartbeat"
# sections below.  The "heartbeat" Port number must be the same as the last
# two port numbers in the "ssh_tunnel" section.  In this example 50022 is
# used.  The port number used must be unused by anything else on the two
# machines.  If you have multiple tunnels connecting to a single ssh_server
# be sure to use different port numbers.  
#
# Another requirement is that the ssh_server must be configured to
# allow remote port forwarding.  This is normally off by default in the 
# ssh_server's sshd_config file.  Set "GatewayPorts yes" in sshd_config.
#
Host tunnel
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /etc/ssh/ssh_tunnel/screamer/known_hosts
User = tunnels
IdentityFile = /etc/ssh/ssh_tunnel/screamer/id_rsa.jellyfish
Compression = yes
RemoteForward = 12322 localhost:22
LocalForward = 12322 localhost:22

################################################################################
Host heartbeat
HostName localhost
Port = 12322
UserKnownHostsFile = /etc/ssh/ssh_tunnel/screamer/known_hosts
User = tunnels
IdentityFile = /etc/ssh/ssh_tunnel/screamer/id_rsa.jellyfish

################################################################################
Host pulse
HostName localhost
Port = 12322
UserKnownHostsFile = /home/tunnels/ssh_tunnel/jellyfish/known_hosts
User = root
IdentityFile = /home/tunnels/ssh_tunnel/jellyfish/id_rsa.jellyfish

################################################################################
# Note: This section must be last in tunnel.conf.
# A webpage will be copied to the directory set by WEBSERVER_DIR below.  The
# default value "none" turns this feature off.  Change "none" to the directory
# path where the webpage should be copied.  The "webpage" host information 
# below must also be changed to valid values to make this work.
# WEBSERVER_DIR     /home/tunnels/ssh_tunnel_html
#
# The filename of the webpage copied to the webserver defaults to
# SSH_CLIENT_to_SSH_SERVER.html.  To choose a different name replace the
# word "default" on the line below with the desired name.
# WEBPAGE_FILENAME  default
#
# A copy of the webpage can be put in the directory define by WEBPAGE_LOCAL_DIR.
# Change "none" to a valid directory to enable this feature.
# WEBPAGE_LOCAL_DIR  none
#
# The webpage update rate defaults to once per sleep time. Change the value below
# to select a different rate.  The update rate is the number of times through the
# loader while loop before updating the webpage.  This value is ignored when events
# occur such as the tunnel going down or during startup.  The webpage is updated
# for all non normal runtime events.
# WEBPAGE_UPDATE_RATE   1
#
Host webpage
HostName larsen-family.us
Port = 22
UserKnownHostsFile = /etc/ssh/ssh_tunnel/screamer/known_hosts
User = tunnels
IdentityFile = /etc/ssh/ssh_tunnel/screamer/id_rsa.jellyfish