ss5-discuss Mailing List for Socks Server 5
Brought to you by:
matteoricchetti
You can subscribe to this list here.
2006 |
Jan
(2) |
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
(2) |
Aug
|
Sep
(3) |
Oct
(2) |
Nov
|
Dec
(2) |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2007 |
Jan
|
Feb
|
Mar
|
Apr
(1) |
May
|
Jun
|
Jul
|
Aug
(1) |
Sep
(2) |
Oct
|
Nov
|
Dec
(1) |
2008 |
Jan
(1) |
Feb
(3) |
Mar
|
Apr
(1) |
May
(1) |
Jun
|
Jul
(2) |
Aug
|
Sep
(2) |
Oct
|
Nov
|
Dec
|
2009 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
(1) |
Oct
(2) |
Nov
(12) |
Dec
(23) |
2010 |
Jan
(17) |
Feb
(18) |
Mar
(12) |
Apr
(20) |
May
(25) |
Jun
(13) |
Jul
(9) |
Aug
(19) |
Sep
(32) |
Oct
(30) |
Nov
(25) |
Dec
(19) |
2011 |
Jan
(1) |
Feb
|
Mar
(2) |
Apr
|
May
|
Jun
(2) |
Jul
(2) |
Aug
|
Sep
(4) |
Oct
|
Nov
|
Dec
(2) |
2012 |
Jan
|
Feb
(1) |
Mar
(1) |
Apr
(2) |
May
|
Jun
(1) |
Jul
|
Aug
|
Sep
|
Oct
(7) |
Nov
(17) |
Dec
(1) |
2013 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
(1) |
Aug
|
Sep
(1) |
Oct
(2) |
Nov
(1) |
Dec
|
2014 |
Jan
|
Feb
|
Mar
(1) |
Apr
|
May
|
Jun
(1) |
Jul
|
Aug
|
Sep
|
Oct
(2) |
Nov
|
Dec
|
2015 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
(4) |
Nov
|
Dec
|
2018 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
(1) |
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
2022 |
Jan
|
Feb
|
Mar
|
Apr
|
May
|
Jun
|
Jul
(1) |
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
From: David T. <da...@ar...> - 2018-07-12 22:31:01
|
Hi Is there a plan to support latest distros ? I cannot compile ss5 on Debian9 distro ( debian 7 is ok ) gcc -g -O2 -DLINUX -D_FILE_OFFSET_BITS=64 -I . -I ../../include -shared -fPIC -c -o SS5Supa.o SS5Supa.c SS5Supa.c: In function ss5_secure_dh_compute_key: SS5Supa.c:208:5: error: dereferencing pointer to incomplete type DH {aka struct dh_st} ss->p = BN_bin2bn ((pippo->p), pippo->lenp, NULL); ^~ SS5Supa.c: In function ss5_secure_dh_decrypt_key: SS5Supa.c:342:3: warning: implicit declaration of function DES_ede3_cbcm_encrypt [-Wimplicit-function-declaration] DES_ede3_cbcm_encrypt (pippo, pippo_crypt, l, &schedule1, &schedule2, &schedule1, &iv, &iv2, DES_DECRYPT); ^~~~~~~~~~~~~~~~~~~~~ In file included from SS5Supa.c:21:0: SS5Supa.c: At top level: ../../include/SS5Mod_authentication.h:71:3: warning: inline function S5AuthCacheHash declared but never defined S5AuthCacheHash( char *u, ^~~~~~~~~~~~~~~ <commande interne> : la recette pour la cible « SS5Supa.o » a échouée make[2]: *** [SS5Supa.o] Erreur 1 make[2] : on quitte le répertoire « /root/ss5-3.8.9/modules/mod_authen » Makefile:6 : la recette pour la cible « all » a échouée make[1]: *** [all] Erreur 1 make[1] : on quitte le répertoire « /root/ss5-3.8.9/modules » Makefile:27 : la recette pour la cible « modules » a échouée make: *** [modules] Erreur 2 |
From: Lukas B. <luk...@gm...> - 2015-10-15 12:58:46
|
I figured it out by crawling the code a little: SS5Mod_authentication.c line 235 on: if( err2 <= ERR ) { if( ci->Method != FAKEPWD ) { /* * Evaluate how to handle basic autentication: * 1. using an External Program (EAP) * 2. using PAM * 3. using RADIUS * 4. using local file /etc/opt/ss5/ss5.passwd */ switch( SS5SocksOpt.Authentication ) { case EAP_AUTHENTICATION: err = S5AuthProgramCheck(ci, pid); break; case PAM_AUTHENTICATION: err = S5PamCheck(ci); break; case RADIUS_AUTHENTICATION: err = S5RadiusAuth(ci, pid); break; case FILE_AUTHENTICATION: err = S5PwdFileCheck(ci); break; } } else { err = OK; } so the config must be simmilar to this to use external auth program: auth 0.0.0.0/0 - u external_auth_program /home/root/customAccept works because auth only means file based, external auth is ordered higher in the switch case so it is choosen first. Good day, Cookie 2015-10-15 14:00 GMT+02:00 Basin Ilya <bas...@gm...>: > Is ss5 running as nobody? Then it has no access to /home/root/ > > 15.10.2015 13:33, Lukas Bockel пишет: > > Greetings, > > > > I tried to use an external auth program. Very simple one to begin with: > > > > http://pastebin.com/C0jQihsd > > > > it just dumps the programm parameters and outputs "OK" since SS5 reads > > the pipe for "OK" > > > > I have the problem that the program just won't get called. My config > > runs like this: > > > > set SS5_CONSOLE > > external_auth_program /home/root/customAccept > > permit u0.0.0.0/0 <http://0.0.0.0/0>-0.0.0.0/0 <http://0.0.0.0/0>----- > > > > Can someone pitch me some ideas please? > > > > > > > ------------------------------------------------------------------------------ > > > > > > > > _______________________________________________ > > Ss5-discuss mailing list > > Ss5...@li... > > https://lists.sourceforge.net/lists/listinfo/ss5-discuss > > > |
From: Lukas B. <luk...@gm...> - 2015-10-15 12:07:16
|
it is started from root and running with: ss5 -u root -b 0.0.0.0:1080 the log says: [15/Oct/2015:14:06:06 CEST] [27692] 11.11.11.11 "" "" ISERROR - - - (-:- -- -:-) (Socks method unknown or bad request) 2015-10-15 14:00 GMT+02:00 Basin Ilya <bas...@gm...>: > Is ss5 running as nobody? Then it has no access to /home/root/ > > 15.10.2015 13:33, Lukas Bockel пишет: > > Greetings, > > > > I tried to use an external auth program. Very simple one to begin with: > > > > http://pastebin.com/C0jQihsd > > > > it just dumps the programm parameters and outputs "OK" since SS5 reads > > the pipe for "OK" > > > > I have the problem that the program just won't get called. My config > > runs like this: > > > > set SS5_CONSOLE > > external_auth_program /home/root/customAccept > > permit u0.0.0.0/0 <http://0.0.0.0/0>-0.0.0.0/0 <http://0.0.0.0/0>----- > > > > Can someone pitch me some ideas please? > > > > > > > ------------------------------------------------------------------------------ > > > > > > > > _______________________________________________ > > Ss5-discuss mailing list > > Ss5...@li... > > https://lists.sourceforge.net/lists/listinfo/ss5-discuss > > > |
From: Basin I. <bas...@gm...> - 2015-10-15 12:00:29
|
Is ss5 running as nobody? Then it has no access to /home/root/ 15.10.2015 13:33, Lukas Bockel пишет: > Greetings, > > I tried to use an external auth program. Very simple one to begin with: > > http://pastebin.com/C0jQihsd > > it just dumps the programm parameters and outputs "OK" since SS5 reads > the pipe for "OK" > > I have the problem that the program just won't get called. My config > runs like this: > > set SS5_CONSOLE > external_auth_program /home/root/customAccept > permit u0.0.0.0/0 <http://0.0.0.0/0>-0.0.0.0/0 <http://0.0.0.0/0>----- > > Can someone pitch me some ideas please? > > > ------------------------------------------------------------------------------ > > > > _______________________________________________ > Ss5-discuss mailing list > Ss5...@li... > https://lists.sourceforge.net/lists/listinfo/ss5-discuss > |
From: Lukas B. <luk...@gm...> - 2015-10-15 11:33:13
|
Greetings, I tried to use an external auth program. Very simple one to begin with: http://pastebin.com/C0jQihsd it just dumps the programm parameters and outputs "OK" since SS5 reads the pipe for "OK" I have the problem that the program just won't get called. My config runs like this: set SS5_CONSOLE external_auth_program /home/root/customAccept permit u 0.0.0.0/0 - 0.0.0.0/0 - - - - - Can someone pitch me some ideas please? |
From: Li, Z. <jy...@cn...> - 2014-10-14 01:55:20
|
Hi, I'm newer. I'm using ss5 to test,now. But I don’t know whether ss5 support cascading proxy or not. Is "proxy section "? Dose someone could tell me? Best Regards! lizl |
From: Li, Z. <jy...@cn...> - 2014-10-13 10:05:19
|
Hi I am using ss5 to test my app,and it works。 But I want to config cascading proxy for ss5 and failure.dose ss5 support it? e.g APP -> SS5 proxy -> parent proxy Best Regards! lizl |
From: Ilya B. <bas...@gm...> - 2013-10-28 18:09:40
|
IB> Hi list. IB> Please try to reproduce this. I'm getting an evasive crash in ss5. See IB> my system's default CFLAGS below, they seem to be important, but it IB> also crashes with '-g' added. IB> My version of ss5 is 3.8.9-8. attached test program -- |
From: Ilya B. <bas...@gm...> - 2013-10-28 18:00:58
|
Hi list. Please try to reproduce this. I'm getting an evasive crash in ss5. See my system's default CFLAGS below, they seem to be important, but it also crashes with '-g' added. My version of ss5 is 3.8.9-8. crash: term1: # ss5 term2: $ ./Debug/socksudp term1: [root@reallin ss5]# *** buffer overflow detected ***: ss5 terminated ======= Backtrace: ========= /usr/lib/libc.so.6(+0x72ecf)[0x7f89a5fbfecf] /usr/lib/libc.so.6(__fortify_fail+0x37)[0x7f89a6042c37] /usr/lib/libc.so.6(+0xf3e60)[0x7f89a6040e60] /usr/lib/libc.so.6(+0xf359b)[0x7f89a604059b] /usr/lib/libc.so.6(__snprintf_chk+0x78)[0x7f89a60404b8] /usr/lib/ss5/mod_proxy.so(UdpReceivingData+0x2cb)[0x7f89a4bd739b] ss5(S5Core+0x28de)[0x407b2e] ss5(main+0x94c)[0x4042ec] /usr/lib/libc.so.6(__libc_start_main+0xf5)[0x7f89a5f6ebc5] ss5[0x4044f1] ======= Memory map: ======== It becomes visible with SS5_DEBUG, SS5_VERBOSE (not sure which). Without -t option the child silently dies. /etc/ss5/ss5.conf : set SS5_DEBUG set SS5_VERBOSE auth 0.0.0.0/0 - - configure options: EXTRA_LIBS='-lcrypto' ./configure --with-libpath=/usr/lib \ CFLAGS="-march=x86-64 -mtune=generic -O2 -pipe -fstack-protector --param=ssp-buffer-size=4 -D_FORTIFY_SOURCE=2" \ --with-confpathbase=/etc \ --with-passwordfile=/etc/ss5/ss5.passwd \ --with-configfile=/etc/ss5/ss5.conf \ --with-peersfile=/etc/ss5/ss5.ha \ --with-profilepath=/etc/ss5 \ Archlinux x64 Linux reallin.basin 3.11.4-1-ARCH #1 SMP PREEMPT Sat Oct 5 21:22:51 CEST 2013 x86_64 GNU/Linux |
From: use f. <use...@gm...> - 2012-10-04 16:50:43
|
Hello, Trying to accounting with mysql using freeradius. Seems like ss5 does not like mysql_profile_ip in the radius.conf file. Isn’t this the right way or right place ? Followed the example here. *I have specified the below conf for mysql profiling .* mysql_profile_ip 127.0.0.1 mysql_profile_db radiusdb mysql_profile_user root mysql_profile_pass password mysql_profile_sqlstring SELECT username FROM radusergroup WHERE groupname like *lss5 log* [04/Oct/2012:09:33:28 PDT] [INFO] ------------------------------------------------------------------------------------------------------- [04/Oct/2012:09:33:28 PDT] [INFO] SS5 Version 3.8.9 - Release 6 starting [04/Oct/2012:09:33:28 PDT] [INFO] Copyright (C) 2002-2011 by Matteo Ricchetti - <mat...@li...> [04/Oct/2012:09:33:28 PDT] [INFO] Setting dynamic configuration. [04/Oct/2012:09:33:28 PDT] [INFO] Cleaning old configuration. [04/Oct/2012:09:33:28 PDT] [INFO] Loading and validating new configuration. [04/Oct/2012:09:33:28 PDT] [VERB] Option SS5_VERBOSE set. [04/Oct/2012:09:33:28 PDT] [VERB] Option SS5_RADIUS_AUTH set. [04/Oct/2012:09:33:28 PDT] [VERB] Radius (ip): 127.0.0.1. [04/Oct/2012:09:33:28 PDT] [VERB] Radius auth port: 1812. [04/Oct/2012:09:33:28 PDT] [VERB] Radius acct port: 1813. [04/Oct/2012:09:33:28 PDT] [VERB] Radius secret: radiuspwd. [04/Oct/2012:09:33:28 PDT] [ERRO] Wrong line "mysql_profile_ip" in configuration file. [04/Oct/2012:09:33:28 PDT] [ERRO] Configuration not switched. [04/Oct/2012:09:33:28 PDT] [VERB] SS5 exiting. |
From: 吴鹏亮 <ale...@gm...> - 2012-04-11 18:22:02
|
Hello, I don't know whether ss5 can run on a host of two network interfaces? How to configure it? I would really appreciate any ideas anyone is willing to share with me! Thanks, -- Alex.Wu |
From: Milen P. <ma...@mi...> - 2012-03-01 09:43:27
|
Hi, I did write to this list sometime ago and although I didn't get any answer I will try my luck again. I have been using ss5 for quite some time and there are some things that I still didn't figure out how to accomplish: 1. Is it possible to set different outgoing ip address for ss5 to use? Currently it seems to use only the default one. Is it possible to set multiple outgoing addresses ss5 to use at random bases? 2. I can't understand how exactly expdate feature works. When I did set expdate for an entry to 29-02-2012 the entry did work ok during the same day. I tried to use the server at 23:50 (server time) but the entry did not work anymore. I expected it should work until 23:59. The log message was "ACLDENY - - - (sourceip:sourceport -> destip:destport) (Pre authorization failed)". When exactly does expdate apply? I would appreciate if somebody helps. Thanks, Milen |
From: Milen P. <ma...@mi...> - 2012-02-20 20:56:23
|
Hi, Is it possible in ss5 to redirect all requests from certain ips and/or subnets to a specific ip address. I mean no matter what the client requests (google.com, yahoo.com, etc) to redirect it a single ip. Thanks, Milen |
From: Payam P. <me...@pa...> - 2011-12-05 15:02:41
|
Hi all, I have started a ss5 instances. When I configure socks configuration on MSIE, it works. On Mozilla Firefox when I put socks configuration and set socks5 checkbox, it does not work. Googling on log, could not find any relevant info [05/Dec/2011:09:44:14 EST] [INFO] SS5 Version 3.8.9 - Release 2 starting [05/Dec/2011:09:44:14 EST] [INFO] Copyright (C) 2002-2011 by Matteo Ricchetti - <mat...@li...> [05/Dec/2011:09:44:14 EST] [INFO] Setting dynamic configuration. [05/Dec/2011:09:44:14 EST] [INFO] Cleaning old configuration. [05/Dec/2011:09:44:14 EST] [INFO] Loading and validating new configuration. [05/Dec/2011:09:44:14 EST] [VERB] Option SS5_VERBOSE set. [05/Dec/2011:09:44:14 EST] [VERB] Option SS5_DEBUG set. [05/Dec/2011:09:44:14 EST] [INFO] Loading configuration completed [05/Dec/2011:09:44:14 EST] [VERB] N. 1 permit lines loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 0 method lines loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 0 proxy lines loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 0 bandwidth lines loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 0 dump lines loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 0 virtual lines loaded. [05/Dec/2011:09:44:14 EST] [INFO] Loading HA configuration completed [05/Dec/2011:09:44:14 EST] [VERB] N. 0 route lines loaded. [05/Dec/2011:09:44:14 EST] [INFO] Switching to new configuration. [05/Dec/2011:09:44:14 EST] [VERB] Role is ALONE. [05/Dec/2011:09:44:14 EST] [INFO] Loading network interfaces. [05/Dec/2011:09:44:14 EST] [VERB] Interface lo 127.0.0.1 255.0.0.0 loaded. [05/Dec/2011:09:44:14 EST] [VERB] Interface eth0 *.*.*.* 255.255.255.255 loaded. [05/Dec/2011:09:44:14 EST] [VERB] Interface eth0:1 192.168.255.1 255.255.255.0 loaded. [05/Dec/2011:09:44:14 EST] [VERB] N. 3 network interfaces loaded. [05/Dec/2011:09:44:18 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving socks version: 5. [05/Dec/2011:09:44:18 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving number of methods: 1. [05/Dec/2011:09:44:18 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving supported client methods: 0. [05/Dec/2011:09:44:18 EST] [1090189632] 94.182.208.228 "" "" ISERROR - - - (-:- -- -:-) (Socks method unknown or bad request) [05/Dec/2011:09:44:19 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving socks version: 5. [05/Dec/2011:09:44:19 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving number of methods: 1. [05/Dec/2011:09:44:19 EST] [1090189632] [DEBU] [METHOD PACKET] Receiving supported client methods: 0. [05/Dec/2011:09:44:19 EST] [1090189632] 94.182.208.228 "" "" ISERROR - - - (-:- -- -:-) (Socks method unknown or bad request) I would like to have authentication on this socks server so as I know, I should configure my system to work with socks5 Any idea? |
From: Picasa W. A. <pic...@go...> - 2011-09-29 03:53:17
|
Dear Purchase Manager, Good day! We are glad to learn from your website that you are in the market of printing. We would like to introduce our company and products, with the hope that we can have the chance of cooperation with you in the near future. We are an experienced company in printing work. Our products are of a wide variety: books, catalogs, flyers, magazines, calendars etc. We have advantages in the quality, price, service and logistics. If you are interested in any product, please let me know. We will be very glad to give you the best quotation upon receipt of your detailed requirements. Any inquiries, feel free to contact me by ad...@hc... . Best regards, Kola ad...@hc... |
From: Luis D. L. Q. <lui...@gm...> - 2011-09-11 18:54:55
|
Read http://ss5.sourceforge.net/configuration.htm 2011/7/15 s7...@sk... <s7...@sk...> > Hy, > > > > I am new to this software, need little help. > > Where can I find some sample configs or tutorials, I have a server with 3 > interfaces. I want the socks server to listen on one of those interfaces and > route the traffic through other. > > > > I would also want client authentication via some way but not to send > passwords in plain text and if I could somehow encrypt the connection it > would be great. > > > > Thanks > > > > -s7r > > > ------------------------------------------------------------------------------ > AppSumo Presents a FREE Video for the SourceForge Community by Eric > Ries, the creator of the Lean Startup Methodology on "Lean Startup > Secrets Revealed." This video shows you how to validate your ideas, > optimize your ideas and identify your business strategy. > http://p.sf.net/sfu/appsumosfdev2dev > _______________________________________________ > Ss5-discuss mailing list > Ss5...@li... > https://lists.sourceforge.net/lists/listinfo/ss5-discuss > > |
From: Luis D. L. Q. <lui...@gm...> - 2011-09-11 18:52:30
|
I guess it ismore eay to place a VPN with OpenVPN and then let him to se hour current SS5 implementation, rathern than dealing with too complex configurations LD http://www.twitter.com/ldlq 2011/9/8 Loïc Derrien <lde...@gm...> > Hi guys, > > My first post on this list and apologies for my probably rookie question. > Well, I've been given a task at work which consists in giving a remote > access to a workmate who's working remotely from another country. I've > already set the NAT rule in one of our Internet box to redirect his ssh > tunnel to a server in our LAN. > Basically, what he needs is three different proxies he can switch via his > browser from one to another. The idea is that he can choose another ISP box > by using the appropriate proxy. > Proxy 1 ==> Box 1 > Proxy 2 ==> Box 2 > ..... > Proxy n ==> Box n > > I really need help cos i'm not very good at networking. > > OS is a Debian. > iproute2 and ss5 are installed. > > Thanks in advance > > > ------------------------------------------------------------------------------ > Doing More with Less: The Next Generation Virtual Desktop > What are the key obstacles that have prevented many mid-market businesses > from deploying virtual desktops? How do next-generation virtual desktops > provide companies an easier-to-deploy, easier-to-manage and more affordable > virtual desktop model.http://www.accelacomm.com/jaw/sfnl/114/51426474/ > _______________________________________________ > Ss5-discuss mailing list > Ss5...@li... > https://lists.sourceforge.net/lists/listinfo/ss5-discuss > > |
From: Loïc D. <lde...@gm...> - 2011-09-08 16:30:10
|
Hi guys, My first post on this list and apologies for my probably rookie question. Well, I've been given a task at work which consists in giving a remote access to a workmate who's working remotely from another country. I've already set the NAT rule in one of our Internet box to redirect his ssh tunnel to a server in our LAN. Basically, what he needs is three different proxies he can switch via his browser from one to another. The idea is that he can choose another ISP box by using the appropriate proxy. Proxy 1 ==> Box 1 Proxy 2 ==> Box 2 ..... Proxy n ==> Box n I really need help cos i'm not very good at networking. OS is a Debian. iproute2 and ss5 are installed. Thanks in advance |
From: <s7...@sk...> - 2011-07-15 15:14:24
|
Hy, I am new to this software, need little help. Where can I find some sample configs or tutorials, I have a server with 3 interfaces. I want the socks server to listen on one of those interfaces and route the traffic through other. I would also want client authentication via some way but not to send passwords in plain text and if I could somehow encrypt the connection it would be great. Thanks -s7r |
From: admin <sa...@hc...> - 2011-06-01 10:30:26
|
%{CURRENT_MAILCONTENT} %{CURRENT_CURRTIME} Subscribe This Mail UnSubscribe This Mail |
From: HostV S. <su...@ho...> - 2011-03-23 19:03:56
|
liword, Your Ticket has been received and a member of our staff will review it and reply accordingly. Listed below are details of this Ticket. Please make sure the Ticket ID remains in the subject at all times. Ticket ID: PJE-395267 Subject: RE:sv: x--w Department: HostV Support Priority: Medium Status: Open You can check the status of or reply to this ticket online at: https://support.cirtex.com/modifications/dwk_directlogin.php?email=li...@gm...&ticketid=250352&sessionid=xxgcxry594 Please do let us know if we can assist you any further, Cirtex Corp |
From: raju <raj...@gm...> - 2011-03-06 19:22:02
|
Hi All, I really appreciate your services to SS5 server , I need help in configuring SS5 server with multiple public ip's as socks5 ip's, I have configured one SS5 server, now I am having 200 public IP's were should I configure those IP's in ss5.conf file in order to use those IP's to server as socks5 IP's in my browser? Please help me in this regard. Thanks, Raju |
From: Luis D. L. Q. <lui...@gm...> - 2010-11-19 14:10:30
|
Helo i rememmber in site that it was claiming that 3.8.3 will have icap support, the fact is that i dont find any reference in tarball, does anyone knows where is icap configuration? A+ |
From: Ilo L. <sne...@gm...> - 2010-09-17 14:50:15
|
Hi, I've setup my ss5 config very basic for now which follows but I get the following error in the logs which says it cannot send , is there something im missing, The way i understand the config is I have given the host 57.24.183.157 ip access to the subnet 160.43.250.0/24 yet the logs says $UdpSendingData$: (Permission denied). and my firewall has the right permission .. is there something im missing? permit - 57.24.183.157 - 160.43.250.0/24 - - - - - permit - 57.24.183.157 - 206.156.53.0/24 - - - - - permit - 57.24.183.157 - 205.216.112.0/24 - - - - - permit - 57.24.183.157 - 208.22.56.0/24 - - - - - permit - 57.24.183.157 - 208.22.57.0/24 - - - - - permit - 57.24.183.157 - 69.191.192.0/24 - - - - - [17/Sep/2010:18:59:14 SAST] [1078823232] 57.24.185.157 "" "UDP ASSOCIATE" STARTED 0 0 0 (57.24.185.157:48129 -> :48129) [17/Sep/2010:18:59:14 SAST] [1078823232] [ERRO] $UdpSendingData$: (Permission denied). [17/Sep/2010:18:59:14 SAST] [1078823232] 57.24.185.157 "" "UDP ASSOCIATE" SUCCEDED 0 0 - (57.24.185.157:48129 -> :48129) (Udp send error) |
From: Doug T. <tu...@ly...> - 2010-09-15 19:38:45
|
Recently, our traffic levels through ss5 increased by a marginal amount and it causing major issues in clients ability to connect to websites. Anytime the open files gets around 950 and up, clients can no longer get to websites. The box is running with a < 1 load, context switching is at < 400, 160mb of ram used (out of 16gb), 99% processor time free, and I have tuned the box to give the user nobody 8192 ulimit. The logs do not show too many open files, in fact, it shows connects when users request a website, and then the close, no errors whatsover but we are basically dead in the water. I installed squid on the box as well, moved about 40 users over, and they are all now working just fine. So from this I can determine that it is not a resource issue on the box itself, and nothing upstream getting in the way. Is there some limitation within ss5 that is causing this behaviour? I have been trying to trouble shoot this for a week now, and the only problem I can find is ss5 itself failing to allow clients to retrieve pages when the open files gets to a certain level. Please help, this is killing us! Sincerely, Doug |