Advertisement
Guest User

Untitled

a guest
Apr 2nd, 2011
218
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.57 KB | None | 0 0
  1. root@ben:~# stunnel4 /etc/stunnel/stunnel.conf
  2. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Snagged 64 random bytes from /root/.rnd
  3. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Wrote 1024 new random bytes to /root/.rnd
  4. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: RAND_status claims sufficient entropy for the PRNG
  5. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: PRNG seeded successfully
  6. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Certificate: /root/ssl_keys/certificate.crt
  7. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Certificate loaded
  8. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Key file: /root/ssl_keys/privateKey.key
  9. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Private key loaded
  10. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: SSL context initialized for service https
  11. 2011.04.02 15:49:12 LOG5[5001:140695474398976]: stunnel 4.29 on x86_64-pc-linux-gnu with OpenSSL 0.9.8o 01 Jun 2010
  12. 2011.04.02 15:49:12 LOG5[5001:140695474398976]: Threading:PTHREAD SSL:ENGINE Sockets:POLL,IPv6 Auth:LIBWRAP
  13. 2011.04.02 15:49:12 LOG6[5001:140695474398976]: file ulimit = 1024 (can be changed with 'ulimit -n')
  14. 2011.04.02 15:49:12 LOG6[5001:140695474398976]: poll() used - no FD_SETSIZE limit for file descriptors
  15. 2011.04.02 15:49:12 LOG5[5001:140695474398976]: 500 clients allowed
  16. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: FD 10 in non-blocking mode
  17. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: FD 11 in non-blocking mode
  18. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: FD 12 in non-blocking mode
  19. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: SO_REUSEADDR option set on accept socket
  20. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: https bound to 0.0.0.0:443
  21. 2011.04.02 15:49:12 LOG7[5001:140695474398976]: Created pid file /stunnel4.pid
  22.  
  23. # local "curl -k https://10.0.3.48/"
  24.  
  25. 2011.04.02 15:49:19 LOG7[5001:140695474398976]: https accepted FD=13 from 10.0.3.48:52426
  26. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: https started
  27. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: FD 13 in non-blocking mode
  28. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: TCP_NODELAY option set on local socket
  29. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Waiting for a libwrap process
  30. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Acquired libwrap process #0
  31. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Releasing libwrap process #0
  32. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Released libwrap process #0
  33. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: https permitted by libwrap from 10.0.3.48:52426
  34. 2011.04.02 15:49:19 LOG5[5001:140695474525952]: https accepted connection from 10.0.3.48:52426
  35. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): before/accept initialization
  36. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read client hello A
  37. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write server hello A
  38. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write certificate A
  39. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write server done A
  40. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 flush data
  41. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read client key exchange A
  42. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read finished A
  43. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write change cipher spec A
  44. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write finished A
  45. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 flush data
  46. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 1 items in the session cache
  47. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 client connects (SSL_connect())
  48. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 client connects that finished
  49. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 client renegotiations requested
  50. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 1 server connects (SSL_accept())
  51. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 1 server connects that finished
  52. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 server renegotiations requested
  53. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 session cache hits
  54. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 external session cache hits
  55. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 session cache misses
  56. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: 0 session cache timeouts
  57. 2011.04.02 15:49:19 LOG6[5001:140695474525952]: SSL accepted: new session negotiated
  58. 2011.04.02 15:49:19 LOG6[5001:140695474525952]: Negotiated ciphers: AES256-SHA SSLv3 Kx=RSA Au=RSA Enc=AES(256) Mac=SHA1
  59. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: FD 14 in non-blocking mode
  60. 2011.04.02 15:49:19 LOG6[5001:140695474525952]: local_bind succeeded on an ephemeral port
  61. 2011.04.02 15:49:19 LOG6[5001:140695474525952]: connect_blocking: connecting 127.0.0.1:80
  62. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: connect_blocking: s_poll_wait 127.0.0.1:80: waiting 10 seconds
  63. 2011.04.02 15:49:19 LOG5[5001:140695474525952]: connect_blocking: connected 127.0.0.1:80
  64. 2011.04.02 15:49:19 LOG5[5001:140695474525952]: https connected remote server from 10.0.3.48:34990
  65. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Remote FD=14 initialized
  66. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: TCP_NODELAY option set on remote socket
  67. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL alert (read): warning: close notify
  68. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL closed on SSL_read
  69. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Socket write shutdown
  70. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: Socket closed on read
  71. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL write shutdown
  72. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: SSL alert (write): warning: close notify
  73. 2011.04.02 15:49:19 LOG6[5001:140695474525952]: SSL_shutdown successfully sent close_notify
  74. 2011.04.02 15:49:19 LOG5[5001:140695474525952]: Connection closed: 460 bytes sent to SSL, 150 bytes sent to socket
  75. 2011.04.02 15:49:19 LOG7[5001:140695474525952]: https finished (0 left)
  76.  
  77. # remote "curl -k https://10.0.3.48/"
  78.  
  79. 2011.04.02 15:49:24 LOG7[5001:140695474398976]: https accepted FD=13 from 10.0.0.88:45518
  80. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: https started
  81. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: FD 13 in non-blocking mode
  82. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: TCP_NODELAY option set on local socket
  83. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: Waiting for a libwrap process
  84. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: Acquired libwrap process #0
  85. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: Releasing libwrap process #0
  86. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: Released libwrap process #0
  87. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: https permitted by libwrap from 10.0.0.88:45518
  88. 2011.04.02 15:49:24 LOG5[5001:140695474525952]: https accepted connection from 10.0.0.88:45518
  89. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): before/accept initialization
  90. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read client hello A
  91. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write server hello A
  92. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write certificate A
  93. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write server done A
  94. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 flush data
  95. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read client key exchange A
  96. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 read finished A
  97. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write change cipher spec A
  98. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 write finished A
  99. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: SSL state (accept): SSLv3 flush data
  100. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 2 items in the session cache
  101. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 client connects (SSL_connect())
  102. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 client connects that finished
  103. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 client renegotiations requested
  104. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 2 server connects (SSL_accept())
  105. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 2 server connects that finished
  106. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 server renegotiations requested
  107. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 session cache hits
  108. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 external session cache hits
  109. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 session cache misses
  110. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: 0 session cache timeouts
  111. 2011.04.02 15:49:24 LOG6[5001:140695474525952]: SSL accepted: new session negotiated
  112. 2011.04.02 15:49:24 LOG6[5001:140695474525952]: Negotiated ciphers: AES256-SHA SSLv3 Kx=RSA Au=RSA Enc=AES(256) Mac=SHA1
  113. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: FD 14 in non-blocking mode
  114. 2011.04.02 15:49:24 LOG6[5001:140695474525952]: local_bind succeeded on the original port
  115. 2011.04.02 15:49:24 LOG6[5001:140695474525952]: connect_blocking: connecting 127.0.0.1:80
  116. 2011.04.02 15:49:24 LOG7[5001:140695474525952]: connect_blocking: s_poll_wait 127.0.0.1:80: waiting 10 seconds
  117. ^C2011.04.02 15:49:34 LOG3[5001:140695474398976]: Received signal 2; terminating
  118. 2011.04.02 15:49:34 LOG7[5001:140695474398976]: removing pid file /stunnel4.pid
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement