- 论坛徽章:
- 0
|
/etc/sockd.conf内容如下
logoutput: stderr
internal: eth0 port = 1080
external: eth0
method: username
user.privileged: root
user.notprivileged: sockd
user.libwrap: sockd
client pass {
from: 0.0.0.0/0 to: 0.0.0.0/0
}
pass {
from: 0.0.0.0/0 to: 0.0.0.0/0 port gt 1080
}
日志如下
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_reseteuid(): current: 0, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 1007
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_reseteuid(): current: 1007, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 1007
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_reseteuid(): current: 1007, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_reseteuid(): current: 0, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: internal addresses (1):
Oct 10 17:56:36 (1223632596) sockd[14052]: 192.168.1.210.1080
Oct 10 17:56:36 (1223632596) sockd[14052]: external addresses (1):
Oct 10 17:56:36 (1223632596) sockd[14052]: eth0, tcp: 0, udp : 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: external address rotation: none
Oct 10 17:56:36 (1223632596) sockd[14052]: compatibility options:
Oct 10 17:56:36 (1223632596) sockd[14052]: extensions enabled:
Oct 10 17:56:36 (1223632596) sockd[14052]: logoutput goes to: "stderr",
Oct 10 17:56:36 (1223632596) sockd[14052]: cmdline options:
"configfile": "/etc/sockd.conf",
"daemon": "0",
"debug": "1",
"keepalive": "1",
"linebuffer": "1",
"servercount": "1",
Oct 10 17:56:36 (1223632596) sockd[14052]: resolveprotocol: udp
Oct 10 17:56:36 (1223632596) sockd[14052]: srchost:
Oct 10 17:56:36 (1223632596) sockd[14052]: negotiate timeout: 120s
Oct 10 17:56:36 (1223632596) sockd[14052]: i/o timeout: 86400s
Oct 10 17:56:36 (1223632596) sockd[14052]: euid: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: userid:
"privileged": "root",
"notprivileged": "sockd",
"libwrap": "sockd",
Oct 10 17:56:36 (1223632596) sockd[14052]: child.maxidle: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: method(s): username
Oct 10 17:56:36 (1223632596) sockd[14052]: clientmethod(s): none
Oct 10 17:56:36 (1223632596) sockd[14052]: client-rules (1):
Oct 10 17:56:36 (1223632596) sockd[14052]: client-rule #1, line #0
Oct 10 17:56:36 (1223632596) sockd[14052]: verdict: pass
Oct 10 17:56:36 (1223632596) sockd[14052]: src: 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: dst: 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: method(s): none,
Oct 10 17:56:36 (1223632596) sockd[14052]: log: connect, disconnect, error, iooperation,
Oct 10 17:56:36 (1223632596) sockd[14052]: socks-rules (1):
Oct 10 17:56:36 (1223632596) sockd[14052]: socks-rule #1, line #0
Oct 10 17:56:36 (1223632596) sockd[14052]: verdict: pass
Oct 10 17:56:36 (1223632596) sockd[14052]: src: 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: dst: 0.0.0.0/0, tcp: 1080, udp: 1080, op: gt, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: redirect from: 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: redirect to: 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: command(s): bind, bindreply, connect, udpassociate, udpreply,
Oct 10 17:56:36 (1223632596) sockd[14052]: extension(s):
Oct 10 17:56:36 (1223632596) sockd[14052]: protocol(s): tcp, udp,
Oct 10 17:56:36 (1223632596) sockd[14052]: method(s): username,
Oct 10 17:56:36 (1223632596) sockd[14052]: proxyprotocol(s): socks_v4, socks_v5,
Oct 10 17:56:36 (1223632596) sockd[14052]: log: connect, disconnect, error, iooperation,
Oct 10 17:56:36 (1223632596) sockd[14052]: routes (0):
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 1007
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 1007, new: 0
Oct 10 17:56:36 (1223632596) sockd[14052]: socks_seteuid(): old: 0, new: 1007
Oct 10 17:56:36 (1223632596) sockd[14053]: created new negotiatorchild
Oct 10 17:56:36 (1223632596) sockd[14053]: selectn(), timeout = NULL
Oct 10 17:56:36 (1223632596) sockd[14054]: created new requestchild
Oct 10 17:56:36 (1223632596) sockd[14055]: created new requestchild
Oct 10 17:56:36 (1223632596) sockd[14056]: created new requestchild
Oct 10 17:56:36 (1223632596) sockd[14057]: created new requestchild
Oct 10 17:56:36 (1223632596) sockd[14058]: created new iochild
Oct 10 17:56:36 (1223632596) sockd[14058]: selectn(), timeout = NULL
Oct 10 17:56:36 (1223632596) sockd[14052]: dante/server v1.1.19 running
Oct 10 17:56:40 (1223632600) sockd[14052]: selectn(), tv_sec = 0, tv_usec = 0
Oct 10 17:56:40 (1223632600) sockd[14052]: got accept(): 116.228.219.194.48732
Oct 10 17:56:40 (1223632600) sockd[14053]: addressmatch(): 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0, 116.228.219.194.48732, tcp, 0
Oct 10 17:56:40 (1223632600) sockd[14053]: addressmatch(): 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0, 192.168.1.210.1080, tcp, 0
Oct 10 17:56:40 (1223632600) sockd[14053]: accesscheck(): method: none, 116.228.219.194.48732 -> 192.168.1.210.1080
Oct 10 17:56:40 (1223632600) sockd[14053]: pass(1): tcp/accept [: 116.228.219.194.48732 -> 192.168.1.210.1080
Oct 10 17:56:40 (1223632600) sockd[14053]: selectn(), tv_sec = 120, tv_usec = 0
Oct 10 17:56:40 (1223632600) sockd[14053]: recv_username(): got socks v4 username:
Oct 10 17:56:40 (1223632600) sockd[14053]: selectn(), timeout = NULL
Oct 10 17:56:40 (1223632600) sockd[14053]: sending request to mother
Oct 10 17:56:40 (1223632600) sockd[14053]: selectn(), timeout = NULL
Oct 10 17:56:40 (1223632600) sockd[14052]: selectn(), tv_sec = 0, tv_usec = 0
Oct 10 17:56:40 (1223632600) sockd[14060]: created new requestchild
Oct 10 17:56:40 (1223632600) sockd[14054]: received request: (V4) VN: 4 CD: 1 address: 65.54.239.80.1863
Oct 10 17:56:40 (1223632600) sockd[14054]: addressmatch(): 0.0.0.0/0, tcp: 0, udp: 0, op: none, end: 0, 116.228.219.194.48732, tcp, 0
Oct 10 17:56:40 (1223632600) sockd[14054]: addressmatch(): 0.0.0.0/0, tcp: 1080, udp: 1080, op: gt, end: 0, 65.54.239.80.1863, tcp, 0
Oct 10 17:56:40 (1223632600) sockd[14054]: block(0): tcp/connect [: 116.228.219.194.48732 -> 65.54.239.80.1863
Oct 10 17:56:40 (1223632600) sockd[14054]: send_response(): sending response: (V4) VN: 0 CD: 91 address: 65.54.239.80.1863
但是我怎么都通不过
如果把method: none 就马上可以了
但是为什么不能通过本地用户认证呢??
有知道的说一下,先谢了。
[ 本帖最后由 gregorian 于 2008-10-10 18:23 编辑 ] |
|