In message <_A2423@delegate-en.ML_> on 09/30/03(02:51:30) you <payeabdyi-qjkxlpkukja6.ml@delegate.org> wrote: |As I noticed on delegate version 8.7.1 the https delegate tunnel to a |master-delegate does not function at all. | |Using | |/opt/delegate/delegated -P8080 SERVER=http SSLTUNNEL=192.168.1.1:3128 |MASTER=targethost.com:443 CONNECT=https:delegate FMD="sslway -cert cert.epm |-key key.epm" LIBPATH=/opt/delegate -v | |The log says that it establishes to the ssl tunnel and furthermore to the |master but the hello master negotiation does not work. How does the log say exactly? A DeleGate of mine says as enclosed and works without problem. Cheers, Yutaka -- D G Yutaka Sato <y.sato@delegate.org> http://www.delegate.org/y.sato/ ( - ) National Institute of Advanced Industrial Science and Technology (AIST) _< >_ 1-1-4 Umezono, Tsukuba, Ibaraki, 305-8568 Japan Do the more with the less -- B. Fuller 09/30 06:22:29.93 [23690] 0+0: --INITIALIZATION START: 8.8.0 on Linux/2.4.2-2-- 09/30 06:22:29.93 [23690] 0+0: server_open(delegate,:9000,listen=20) 09/30 06:22:29.94 [23690] 0+0: server_open(delegate,:9000) BOUND 09/30 06:22:29.94 [23690] 0+0: DGROOT=/home/y.sato/delegate^M 09/30 06:22:29.94 [23690] 0+0: <DeleGate/8.8.0 by ysato AT delegate DOT org> [23690] -P9000 READY^M 09/30 06:22:29.94 [23690] 0+0: PORT= 9000/9 (35,40) 09/30 06:22:29.94 [23690] 0+0: OWNER=nobody => OWNER=y.sato/y.sato(y.sato/y.sato) 09/30 06:22:29.95 [23690] 0+0: REMITTABLE = http,https/{443,563},gopher,ftp,wais 09/30 06:22:29.95 [23690] 0+0: LIBPATH: sslway -> /home/y.sato/dg/sslway 09/30 06:22:29.96 [23690] 0+0: PATH: gzip -> /usr/bin/gzip 09/30 06:22:29.96 [23690] 0+0: #### gzip = [/usr/bin/gzip]gzip 09/30 06:22:29.96 [23690] 0+0: #### gunzip = [/usr/bin/gzip]gzip -d 09/30 06:22:29.96 [23690] 0+0: ADMIN=y.sato@delegate.org protocol=http(specialist) 09/30 06:22:29.96 [23690] 0+0: MOUNT[0]X[2] /-/builtin/icons/* = default 09/30 06:22:29.96 [23690] 0+0: MOUNT[1]X[3] /-/* = forbidden,from=!.RELIABLE,default 09/30 06:22:29.96 [23690] 0+0: MOUNT[2]X[0] /-* = default 09/30 06:22:29.96 [23690] 0+0: MOUNT[3]X[1] /=* = default 09/30 06:22:29.96 [23690] 0+0: #### stack size limit = 800000 (000000X) 09/30 06:22:29.96 [23690] 0+0: Stay open PIDFILE for accept() lock[fd=13] 09/30 06:22:29.96 [23690] 0+0: env[24] RES_NS=192.168.1.41:8053 09/30 06:22:29.96 [23690] 0+0: env[26] LIBPATH=.;/home/y.sato/dg;/home/y.sato/delegate/lib;. 09/30 06:22:29.96 [23690] 0+0: env[28] RESOLV=cache,file,dns 09/30 06:22:29.96 [23690] 0+0: arg[3] SERVER=http 09/30 06:22:29.96 [23690] 0+0: arg[4] FMD=sslway 09/30 06:22:29.96 [23690] 0+0: arg[5] MASTER=localhost:9443 09/30 06:22:29.96 [23690] 0+0: arg[6] CACHE=no 09/30 06:22:29.96 [23690] 0+0: arg[7] SSLTUNNEL=localhost:9080 09/30 06:22:29.96 [23690] 0+0: arg[8] CONNECT=https:delegate 09/30 06:22:29.96 [23690] 0+0: DELEGATE_Modified[0]: 3f78a014 09/30 06:22:29.96 [23690] 0+0: --INITIALIZATION DONE: 8.8.0 on Linux/2.4.2-2-- 09/30 06:22:33.92 [23693] 1+0: -- Fork(SequentialServer): 23690 -> 23693 09/30 06:22:33.93 [23693] 1+1: (0) accepted [22] -@[127.0.0.1]localhost:60065 (0.013s)(1) 09/30 06:22:33.93 [23693] 1+1: Proxy: host=localhost; User-Agent: DeleGate/8.8.0 (dget); DIRECT 09/30 06:22:33.93 [23693] 1+1: REQUEST - GET http://localhost HTTP/1.0^M 09/30 06:22:33.93 [23693] 1+1: PATH> http://localhost:80!localhost:9000!localhost:60065!anonymous@localhost;1064870553 09/30 06:22:33.93 [23693] 1+1: REQUEST = [http://localhost:80/] GET / HTTP/1.0^M 09/30 06:22:33.94 [23693] 1+1: SSLtunnel connected [14] {127.0.0.1:9080 <- 127.0.0.1:60066} [0.007s] 09/30 06:22:33.94 [23693] 1+1: SSL-TUNNEL<< localhost:9443 09/30 06:22:33.95 [23693] 1+1: SSL-TUNNEL>> HTTP/1.1 200 Connection established.^M 09/30 06:22:33.95 [23693] 1+1: SSL-TUNNEL>> ^M 09/30 06:22:33.95 [23693] 1+1: MasterOpen 'delegate' via SSLtunnel = 14 09/30 06:22:33.95 [23693] 1+1: MASTER[1] says(1): DeleGate-HELLO 8.8.0 <23695.1064870553@yshome..>^M 09/30 06:22:33.95 [23693] 1+1: forwarding to [14] delegate://localhost:9080 09/30 06:22:33.96 [23693] 1+1: MASTER[1] says(2): 200 OK: http^M 09/30 06:22:33.96 [23693] 1+1: HTTP -> (localhost:80) GET / HTTP/1.0^M 09/30 06:22:33.96 [23693] 1+1: #PROXY REQUEST = GET http://localhost/ HTTP/1.0^M 09/30 06:22:33.96 [23693] 1+1: #HT11 FORCE HTTP/1.1 or Connection:keep-alive 09/30 06:22:33.96 [23697] 1+1: -- Fork(FMD): 23693 -> 23697 09/30 06:22:33.96 [23697] 1+1: #### execFilter[FMD] [/home/y.sato/dg/sslway]sslway ## SSLway[23697](localhost) server's cert. = **subject<</C=JP/ST=ib/L=ts/O=etl/OU=cs/CN=ca-x-1/Email=ca-x-1@delegate.org>> **issuer<</C=JP/ST=IB/L=TS/O=ETL/OU=CS/CN=CA-X/Email=CA-X@delegate.org>> 09/30 06:22:35.31 [23693] 1+1: #HT11 SERVER ver[HTTP/1.1] conn[close] 09/30 06:22:35.31 [23693] 1+1: HTTP/1.1 200 Content-{Type:text/html Encoding:[/] Leng:2890} Server:Apache/1.3.19 (Unix) (Red-Hat/Linux) PHP/4.0.4pl1 mod_perl/1.24_01 09/30 06:22:35.32 [23693] 1+1: HTTP transmitted: 368head+2890/2890body=>0txt+0bin->2890/2890, 14i/2o/0f/0.0 09/30 06:22:35.32 [23693] 1+1: #HT11 close svsokcs[18,19] 09/30 06:22:35.32 [23693] 1+1: disconnected [22] -@[127.0.0.1]localhost:60065 (1.403s)(0) 09/30 06:22:35.32 [23693] 1+1: CFI process [23697] done (1/1 AFT-0) 09/30 06:22:43.83 [23693] 1+2: (0) accepted [29] -@[127.0.0.1]localhost:60068 (0.001s)(1) 09/30 06:22:43.83 [23693] 1+2: Proxy: host=localhost; User-Agent: DeleGate/8.8.0 (dget); DIRECT 09/30 06:22:43.83 [23693] 1+2: REQUEST - GET http://localhost HTTP/1.0^M 09/30 06:22:43.83 [23693] 1+2: PATH> http://localhost:80!localhost:9000!localhost:60068!anonymous@localhost;1064870563 09/30 06:22:43.83 [23693] 1+2: REQUEST = [http://localhost:80/] GET / HTTP/1.0^M 09/30 06:22:43.83 [23693] 1+2: SSLtunnel connected [14] {127.0.0.1:9080 <- 127.0.0.1:60069} [0.000s] 09/30 06:22:43.83 [23693] 1+2: SSL-TUNNEL<< localhost:9443 09/30 06:22:43.84 [23693] 1+2: SSL-TUNNEL>> HTTP/1.1 200 Connection established.^M 09/30 06:22:43.84 [23693] 1+2: SSL-TUNNEL>> ^M 09/30 06:22:43.84 [23693] 1+2: MasterOpen 'delegate' via SSLtunnel = 14 09/30 06:22:43.84 [23693] 1+2: #### reuse MASTER[1] Ver=8.8.0 SERVER=http://localhost:80 [NOACK] 09/30 06:22:43.84 [23693] 1+2: forwarding to [14] delegate://localhost:9080 09/30 06:22:43.85 [23693] 1+2: ####[FMD] ToServ discarded (14 -> 19) 09/30 06:22:43.85 [23693] 1+2: HTTP -> (localhost:80) GET / HTTP/1.0^M 09/30 06:22:43.85 [23693] 1+2: #PROXY REQUEST = GET http://localhost/ HTTP/1.0^M 09/30 06:22:43.85 [23693] 1+2: #HT11 FORCE HTTP/1.1 or Connection:keep-alive 09/30 06:22:43.85 [23701] 1+2: -- Fork(FMD): 23693 -> 23701 09/30 06:22:43.85 [23701] 1+2: #### execFilter[FMD] [/home/y.sato/dg/sslway]sslway ## SSLway[23701](localhost) server's cert. = **subject<</C=JP/ST=ib/L=ts/O=etl/OU=cs/CN=ca-x-1/Email=ca-x-1@delegate.org>> **issuer<</C=JP/ST=IB/L=TS/O=ETL/OU=CS/CN=CA-X/Email=CA-X@delegate.org>> 09/30 06:22:45.19 [23693] 1+2: #HT11 SERVER ver[HTTP/1.1] conn[close] 09/30 06:22:45.19 [23693] 1+2: HTTP/1.1 200 Content-{Type:text/html Encoding:[/] Leng:2890} Server:Apache/1.3.19 (Unix) (Red-Hat/Linux) PHP/4.0.4pl1 mod_perl/1.24_01 09/30 06:22:45.20 [23693] 1+2: HTTP transmitted: 368head+2890/2890body=>0txt+0bin->2890/2890, 14i/2o/0f/0.0 09/30 06:22:45.20 [23693] 1+2: #HT11 close svsokcs[18,19] 09/30 06:22:45.20 [23693] 1+2: disconnected [29] -@[127.0.0.1]localhost:60068 (1.375s)(0) 09/30 06:22:45.20 [23693] 1+2: CFI process [23701] done (1/1 AFT-0) 09/30 06:22:48.35 [23693] 1+2: DeleGate SERVER EXITS: caught SIGINT [2] 09/30 06:22:48.35 [23690] 1+0: DeleGate SERVER EXITS: caught SIGINT [2] 09/30 06:22:48.35 [23690] 1+0: Killpg(23690,15) 09/30 06:22:48.39 [23690] 1+0: FINISH.