setting TOS Minimize-Delay breaks scp uploads for _some_ hosts

Marc Heckmann heckmann@hbesoftware.com
Thu, 2 Nov 2000 12:05:48 -0500


Hi,

	When doing :

iptables -t mangle -A PREROUTING -p tcp --sport ssh -j TOS --set-tos Minimize-Delay

most (it does work for a minority of remote hosts) uploads using scp jam, no data get's sent after the
password is entered. This only happens for connections that originate behind the firewall, an scp
initiated from the firewall box itself works fine. ssh shell connections work fine for the same hosts. As
soon as I turn off mangling of the TOS bit all scp's work fine. Has anyone seen this before? I am using
2.4.0-test10pre7 with iptables-1.1.1. Thanks in advance.

	Cheers,

--
	Marc Heckmann  -  Network Operations  
        HBE Software/Opendesk.Com
        heckmann@hbesoftware.com www.hbesoftware.com
        heckmann@opendesk.com www.opendesk.com
        Tel. (514) 876-7881 ext. 219
        Fax. (514) 876-9223