Re: stunnel4-5.50 start failed

Mike Spooner <[email protected]> Thu, 26 Dec 2019 09:59:48 +0000 (UTC)
Newsgroups gmane.network.stunnel.user
Message-ID <73343B0ECB307A75.cbd322fa-29bb-4d6c-bac9-1873daae1d12@mail.outlook.com>
--===============5297203610034875620==
Content-Type: multipart/alternative;  boundary="----=_Part_5062_462329752.1577354388735"

------=_Part_5062_462329752.1577354388735
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: quoted-printable

"Cannot open log file: /var/log/stunnel.log" is the problem. File permissio=
ns. Are you supposed to be running stunnel as a particular user, rather tha=
n as yourself?




- Mike




On Thu, Dec 26, 2019 at 2:48 AM +0000, "Hanhan lee" <[email protected]> =
wrote:










I compiled stunnel4-5.50 with openssl 1.1.1d.When I run stunnel, it will pr=
int some messages and stop:
[ ] Clients allowed=3D500
[.] stunnel 5.50 on arm-none-linux-gnueabi platform
[.] Compiled/running with OpenSSL 1.1.1d =C2=A010 Sep 2019
[.] Threading:PTHREAD Sockets:POLL,IPv6 TLS:ENGINE,FIPS,OCSP,PSK,SNI
[ ] errno: (*__errno_location ())
[.] Reading configuration from file /conf/stunnel.conf
[.] UTF-8 byte order mark not detected
[.] FIPS mode disabled
[ ] Compression disabled
[ ] No PRNG seeding was required
[ ] Initializing service [adviserd]
[ ] Ciphers: AES256-SHA256:!RC4:HIGH:!MD5:!aNULL:!EDH:!AESGCM
[ ] TLS options: 0x02104004 (+0x00004000, -0x00000000)
[ ] Loading certificate from file: /conf/certs/server.pem
[ ] Certificate loaded from file: /conf/certs/server.pem
[ ] Loading private key from file: /conf/certs/privkey.pem
[:] Insecure file permissions on /conf/certs/privkey.pem
[ ] Private key loaded from file: /conf/certs/privkey.pem
[ ] Private key check succeeded
[ ] DH initialization needed for DHE-PSK-CHACHA20-POLY1305
[ ] DH initialization
[ ] Could not load DH parameters from /conf/certs/server.pem
[ ] Using dynamic DH parameters
[ ] ECDH initialization
[ ] ECDH initialized with curve prime256v1
[.] Configuration successful
[ ] Binding service [adviserd]
[ ] Listening file descriptor created (FD=3D8)
[ ] Setting accept socket options (FD=3D8)
[ ] Option SO_REUSEADDR set on accept socket
[ ] Option TCP_NODELAY set on accept socket
[ ] Service [adviserd] (FD=3D8) bound to :::7582
[!] Cannot open log file: /var/log/stunnel.log
[ ] Deallocating section defaults
[ ] Unbinding service [adviserd]
[ ] Service [adviserd] closed (FD=3D8)
[ ] Service [adviserd] closed
[ ] Deallocating section [adviserd]

I have no idea what's wrong with this, help!
Many thanks






------=_Part_5062_462329752.1577354388735
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: quoted-printable

<html><head></head><body><div dir=3D"auto" style=3D"direction: ltr; margin:=
 0; padding: 0; font-family: sans-serif; font-size: 11pt; color: black; ">"=
Cannot open log file: /var/log/stunnel.log" is the problem. File permission=
s. Are you supposed to be running stunnel as a particular user, rather than=
 as yourself?<br>
<br>
</div>
<div dir=3D"auto" style=3D"direction: ltr; margin: 0; padding: 0; font-fami=
ly: sans-serif; font-size: 11pt; color: black; ">- Mike</div>
<br><br><br>
<div class=3D"gmail_quote">On Thu, Dec 26, 2019 at 2:48 AM +0000, "Hanhan l=
ee" <span dir=3D"ltr">&lt;<a href=3D"mailto:[email protected]" target=3D=
"_blank">[email protected]</a>&gt;</span> wrote:<br>
<br>

<blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p=
x #ccc solid;padding-left:1ex">




<div dir=3D"3D&quot;ltr&quot;">
<div dir=3D"ltr">I compiled stunnel4-5.50 with openssl 1.1.1d.<div>When I r=
un stunnel, it will print some messages and stop:</div><div><br></div><div>=
[ ] Clients allowed=3D500<br>[.] stunnel 5.50 on arm-none-linux-gnueabi pla=
tform<br>[.] Compiled/running with OpenSSL 1.1.1d &nbsp;10 Sep 2019<br>[.] =
Threading:PTHREAD Sockets:POLL,IPv6 TLS:ENGINE,FIPS,OCSP,PSK,SNI<br>[ ] err=
no: (*__errno_location ())<br>[.] Reading configuration from file /conf/stu=
nnel.conf<br>[.] UTF-8 byte order mark not detected<br>[.] FIPS mode disabl=
ed<br>[ ] Compression disabled<br>[ ] No PRNG seeding was required<br>[ ] I=
nitializing service [adviserd]<br>[ ] Ciphers: AES256-SHA256:!RC4:HIGH:!MD5=
:!aNULL:!EDH:!AESGCM<br>[ ] TLS options: 0x02104004 (+0x00004000, -0x000000=
00)<br>[ ] Loading certificate from file: /conf/certs/server.pem<br>[ ] Cer=
tificate loaded from file: /conf/certs/server.pem<br>[ ] Loading private ke=
y from file: /conf/certs/privkey.pem<br>[:] Insecure file permissions on /c=
onf/certs/privkey.pem<br>[ ] Private key loaded from file: /conf/certs/priv=
key.pem<br>[ ] Private key check succeeded<br>[ ] DH initialization needed =
for DHE-PSK-CHACHA20-POLY1305<br>[ ] DH initialization<br>[ ] Could not loa=
d DH parameters from /conf/certs/server.pem<br>[ ] Using dynamic DH paramet=
ers<br>[ ] ECDH initialization<br>[ ] ECDH initialized with curve prime256v=
1<br>[.] Configuration successful<br>[ ] Binding service [adviserd]<br>[ ] =
Listening file descriptor created (FD=3D8)<br>[ ] Setting accept socket opt=
ions (FD=3D8)<br>[ ] Option SO_REUSEADDR set on accept socket<br>[ ] Option=
 TCP_NODELAY set on accept socket<br>[ ] Service [adviserd] (FD=3D8) bound =
to :::7582<br>[!] Cannot open log file: /var/log/stunnel.log<br>[ ] Dealloc=
ating section defaults<br>[ ] Unbinding service [adviserd]<br>[ ] Service [=
adviserd] closed (FD=3D8)<br>[ ] Service [adviserd] closed<br>[ ] Deallocat=
ing section [adviserd]<br></div><div><br></div><div>I have no idea what's w=
rong with this, help!</div><div><br></div><div>Many thanks</div></div>

</div>

</blockquote>
</div>
</body></html>
------=_Part_5062_462329752.1577354388735--


--===============5297203610034875620==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
stunnel-users mailing list
[email protected]
https://www.stunnel.org/cgi-bin/mailman/listinfo/stunnel-users

--===============5297203610034875620==--