Re: stunnel4-5.50 start failed
Mike Spooner <[email protected]> Thu, 26 Dec 2019 09:59:48 +0000 (UTC)
| Newsgroups | gmane.network.stunnel.user |
|---|---|
| Message-ID | <73343B0ECB307A75.cbd322fa-29bb-4d6c-bac9-1873daae1d12@mail.outlook.com> |
--===============5297203610034875620== Content-Type: multipart/alternative; boundary="----=_Part_5062_462329752.1577354388735" ------=_Part_5062_462329752.1577354388735 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable "Cannot open log file: /var/log/stunnel.log" is the problem. File permissio= ns. Are you supposed to be running stunnel as a particular user, rather tha= n as yourself? - Mike On Thu, Dec 26, 2019 at 2:48 AM +0000, "Hanhan lee" <[email protected]> = wrote: I compiled stunnel4-5.50 with openssl 1.1.1d.When I run stunnel, it will pr= int some messages and stop: [ ] Clients allowed=3D500 [.] stunnel 5.50 on arm-none-linux-gnueabi platform [.] Compiled/running with OpenSSL 1.1.1d =C2=A010 Sep 2019 [.] Threading:PTHREAD Sockets:POLL,IPv6 TLS:ENGINE,FIPS,OCSP,PSK,SNI [ ] errno: (*__errno_location ()) [.] Reading configuration from file /conf/stunnel.conf [.] UTF-8 byte order mark not detected [.] FIPS mode disabled [ ] Compression disabled [ ] No PRNG seeding was required [ ] Initializing service [adviserd] [ ] Ciphers: AES256-SHA256:!RC4:HIGH:!MD5:!aNULL:!EDH:!AESGCM [ ] TLS options: 0x02104004 (+0x00004000, -0x00000000) [ ] Loading certificate from file: /conf/certs/server.pem [ ] Certificate loaded from file: /conf/certs/server.pem [ ] Loading private key from file: /conf/certs/privkey.pem [:] Insecure file permissions on /conf/certs/privkey.pem [ ] Private key loaded from file: /conf/certs/privkey.pem [ ] Private key check succeeded [ ] DH initialization needed for DHE-PSK-CHACHA20-POLY1305 [ ] DH initialization [ ] Could not load DH parameters from /conf/certs/server.pem [ ] Using dynamic DH parameters [ ] ECDH initialization [ ] ECDH initialized with curve prime256v1 [.] Configuration successful [ ] Binding service [adviserd] [ ] Listening file descriptor created (FD=3D8) [ ] Setting accept socket options (FD=3D8) [ ] Option SO_REUSEADDR set on accept socket [ ] Option TCP_NODELAY set on accept socket [ ] Service [adviserd] (FD=3D8) bound to :::7582 [!] Cannot open log file: /var/log/stunnel.log [ ] Deallocating section defaults [ ] Unbinding service [adviserd] [ ] Service [adviserd] closed (FD=3D8) [ ] Service [adviserd] closed [ ] Deallocating section [adviserd] I have no idea what's wrong with this, help! Many thanks ------=_Part_5062_462329752.1577354388735 Content-Type: text/html; charset=utf-8 Content-Transfer-Encoding: quoted-printable <html><head></head><body><div dir=3D"auto" style=3D"direction: ltr; margin:= 0; padding: 0; font-family: sans-serif; font-size: 11pt; color: black; ">"= Cannot open log file: /var/log/stunnel.log" is the problem. File permission= s. Are you supposed to be running stunnel as a particular user, rather than= as yourself?<br> <br> </div> <div dir=3D"auto" style=3D"direction: ltr; margin: 0; padding: 0; font-fami= ly: sans-serif; font-size: 11pt; color: black; ">- Mike</div> <br><br><br> <div class=3D"gmail_quote">On Thu, Dec 26, 2019 at 2:48 AM +0000, "Hanhan l= ee" <span dir=3D"ltr"><<a href=3D"mailto:[email protected]" target=3D= "_blank">[email protected]</a>></span> wrote:<br> <br> <blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p= x #ccc solid;padding-left:1ex"> <div dir=3D"3D"ltr""> <div dir=3D"ltr">I compiled stunnel4-5.50 with openssl 1.1.1d.<div>When I r= un stunnel, it will print some messages and stop:</div><div><br></div><div>= [ ] Clients allowed=3D500<br>[.] stunnel 5.50 on arm-none-linux-gnueabi pla= tform<br>[.] Compiled/running with OpenSSL 1.1.1d 10 Sep 2019<br>[.] = Threading:PTHREAD Sockets:POLL,IPv6 TLS:ENGINE,FIPS,OCSP,PSK,SNI<br>[ ] err= no: (*__errno_location ())<br>[.] Reading configuration from file /conf/stu= nnel.conf<br>[.] UTF-8 byte order mark not detected<br>[.] FIPS mode disabl= ed<br>[ ] Compression disabled<br>[ ] No PRNG seeding was required<br>[ ] I= nitializing service [adviserd]<br>[ ] Ciphers: AES256-SHA256:!RC4:HIGH:!MD5= :!aNULL:!EDH:!AESGCM<br>[ ] TLS options: 0x02104004 (+0x00004000, -0x000000= 00)<br>[ ] Loading certificate from file: /conf/certs/server.pem<br>[ ] Cer= tificate loaded from file: /conf/certs/server.pem<br>[ ] Loading private ke= y from file: /conf/certs/privkey.pem<br>[:] Insecure file permissions on /c= onf/certs/privkey.pem<br>[ ] Private key loaded from file: /conf/certs/priv= key.pem<br>[ ] Private key check succeeded<br>[ ] DH initialization needed = for DHE-PSK-CHACHA20-POLY1305<br>[ ] DH initialization<br>[ ] Could not loa= d DH parameters from /conf/certs/server.pem<br>[ ] Using dynamic DH paramet= ers<br>[ ] ECDH initialization<br>[ ] ECDH initialized with curve prime256v= 1<br>[.] Configuration successful<br>[ ] Binding service [adviserd]<br>[ ] = Listening file descriptor created (FD=3D8)<br>[ ] Setting accept socket opt= ions (FD=3D8)<br>[ ] Option SO_REUSEADDR set on accept socket<br>[ ] Option= TCP_NODELAY set on accept socket<br>[ ] Service [adviserd] (FD=3D8) bound = to :::7582<br>[!] Cannot open log file: /var/log/stunnel.log<br>[ ] Dealloc= ating section defaults<br>[ ] Unbinding service [adviserd]<br>[ ] Service [= adviserd] closed (FD=3D8)<br>[ ] Service [adviserd] closed<br>[ ] Deallocat= ing section [adviserd]<br></div><div><br></div><div>I have no idea what's w= rong with this, help!</div><div><br></div><div>Many thanks</div></div> </div> </blockquote> </div> </body></html> ------=_Part_5062_462329752.1577354388735-- --===============5297203610034875620== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ stunnel-users mailing list [email protected] https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users --===============5297203610034875620==--