Open avdreith opened 7 years ago
Hello, am I the only one who experiences this? Is there no sollution? Anything else works perfectly. And it would be nice if this could be solved. Can I contribute more information like congfig files?
In the meantime I made a second fresh e2guardian installation. With the same result. And i don't think that this is due to an misconfiguration. Because it seams to happen randomly.
Sorry I'm not using SSLMITM right now You can also post your question here https://groups.google.com/forum/#!forum/e2guardian
YES! Thank you for posting this avdreith. This was the second problem I was waiting to post after the Youtube issue. Any HTTPS site will do this at times. google, youtube etc. This only happens with SSLMITM enabled. Discovered it does it mainly with Google Chrome. Do not get this on Firefox. When researching Chrome it stated that is was due to the way the browser handles the traffic. It will put itself into a loop when it doesn't see the traffic shaped as expected. I would suggest clearing all your browser information and starting with a new cache. My children who are constantly using this filter on another computer have stopped getting this and are always filtered, but I still do as I enable/disable my filter on my browser to troubleshoot and do not clear cache each time. My son to my understanding has not seen this on his cell phone (android mobile chrome) Samsung 7S.
Avdreith, have you seen it ever on a browser besides Chrome? Do you get this if you clear all history/cache, close browser, then retry?
Can you make a try with the dev branch 3.5.1, please ?
Hello, I tried 3.5.1 with my old config files. I still have the same error from the subject.
Am 13.03.2017 um 11:33 schrieb Fredb:
Can you make a try with the dev branch 3.5.1, please ?
— You are receiving this because you authored the thread. Reply to this email directly, view it on GitHub https://github.com/e2guardian/e2guardian/issues/176#issuecomment-286070363, or mute the thread https://github.com/notifications/unsubscribe-auth/AYjyIsS9_-adZeGqzS4MZi81LM8yr4Baks5rlRtsgaJpZM4L_oPV.
@avdreith could you please share all the steps you took and configs you changed to set up your e2guardian instance? I'd like to repro if possible so maybe I can help with investigation. thanks
Have been testing for 1.5 day and the recent patches have seemed to fix this issue. Will have to generate more testing to be sure, but so far so good.
./autogen.sh && ./configure '--prefix=/usr' '--enable-clamd=no' '--with-proxyuser=e2guardian' '--with-proxygroup=e2guardian' '--sysconfdir=/etc' '--localstatedir=/var' '--enable-icap=yes' '--enable-commandline=yes' '--enable-email=yes' '--enable-ntlm=yes' '--enable-trickledm=yes' '--mandir=${prefix}/share/man' '--infodir=${prefix}/share/info' 'CXXFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' 'LDFLAGS=-Wl,-z,relro' 'CPPFLAGS=-D_FORTIFY_SOURCE=2' 'CFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' '--enable-pcre=yes' '--enable-sslmitm=yes'
Edit: still getting them in google.com using Chrome.
— You are receiving this because you commented. Reply to this email directly, view it on GitHub https://github.com/e2guardian/e2guardian/issues/176#issuecomment-286269079, or mute the thread https://github.com/notifications/unsubscribe-auth/AXl4wUobetVmyaIsHhhpIx3ltNASmAPVks5rlcklgaJpZM4L_oPV .
Ok great, this confirm that there is a more large problem with http redirect code, I think that my fix is not "clean" enough
Le 16 mars 2017 16:18:04 GMT+01:00, Wade Young notifications@github.com a écrit :
Have been testing for 1.5 day and the recent patches have seemed to fix this issue. Will have to generate more testing to be sure, but so far so good.
./autogen.sh && ./configure '--prefix=/usr' '--enable-clamd=no' '--with-proxyuser=e2guardian' '--with-proxygroup=e2guardian' '--sysconfdir=/etc' '--localstatedir=/var' '--enable-icap=yes' '--enable-commandline=yes' '--enable-email=yes' '--enable-ntlm=yes' '--enable-trickledm=yes' '--mandir=${prefix}/share/man' '--infodir=${prefix}/share/info' 'CXXFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' 'LDFLAGS=-Wl,-z,relro' 'CPPFLAGS=-D_FORTIFY_SOURCE=2' 'CFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' '--enable-pcre=yes' '--enable-sslmitm=yes'
On Mon, Mar 13, 2017 at 5:54 PM, Spike notifications@github.com wrote:
@avdreith https://github.com/avdreith could you please share all the steps you took and configs you changed to set up your e2guardian instance? I'd like to repro if possible so maybe I can help with investigation. thanks
— You are receiving this because you commented. Reply to this email directly, view it on GitHub
https://github.com/e2guardian/e2guardian/issues/176#issuecomment-286269079, or mute the thread
-- You are receiving this because you commented. Reply to this email directly or view it on GitHub: https://github.com/e2guardian/e2guardian/issues/176#issuecomment-287090361
-- Envoyé de mon appareil Android avec K-9 Mail. Veuillez excuser ma brièveté.
Hello, here is how i installed e2guardian:
e2guardian 3.5.1
Built with: '--prefix=/usr' '--enable-clamd=yes' '--with-proxyuser=e2guardian' '--with-proxygroup=e2guardian' '--sysconfdir=/etc' '--localstatedir=/var' '--enable-icap=yes' '--enable-commandline=yes' '--enable-email=yes' '--enable-ntlm=yes' '--enable-trickledm=yes' '--mandir=${prefix}/share/man' '--infodir=${prefix}/share/info' 'CXXFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' 'LDFLAGS=-Wl,-z,relro' 'CPPFLAGS=-D_FORTIFY_SOURCE=2' 'CFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' '--enable-pcre=yes' '--enable-avastd=yes' '--enable-kavd=yes' '--enable-sslmitm=yes'
My two conig files are also attached.
I use clamd and avast for virus scanning. kaspersky is not used.
Am 13.03.2017 um 23:54 schrieb Spike:
@avdreith https://github.com/avdreith could you please share all the steps you took and configs you changed to set up your e2guardian instance? I'd like to repro if possible so maybe I can help with investigation. thanks
— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub https://github.com/e2guardian/e2guardian/issues/176#issuecomment-286269079, or mute the thread https://github.com/notifications/unsubscribe-auth/AYjyIh2mJl7fjNWhylczukSKdKvDEdv7ks5rlcklgaJpZM4L_oPV.
#
#
#
groupmode = 1
groupname = 'Standard'
#
bannedsitelist = '/etc/e2guardian/lists/bannedsitelist' greysitelist = '/etc/e2guardian/lists/greysitelist'
exceptionsitelist = '/etc/e2guardian/lists/exceptionsitelist' bannedurllist = '/etc/e2guardian/lists/bannedurllist' greyurllist = '/etc/e2guardian/lists/greyurllist' exceptionurllist = '/etc/e2guardian/lists/exceptionurllist' exceptionregexpurllist = '/etc/e2guardian/lists/exceptionregexpurllist' bannedregexpurllist = '/etc/e2guardian/lists/bannedregexpurllist'
contentregexplist = '/etc/e2guardian/lists/contentregexplist' urlregexplist = '/etc/e2guardian/lists/urlregexplist'
!! Not compiled !! authexceptionsitelist = '/etc/e2guardian/lists/authexceptionsitelist' !! Not compiled !! authexceptionurllist = '/etc/e2guardian/lists/authexceptionurllist'
#
#
#
# blockdownloads = off exceptionextensionlist = '/etc/e2guardian/lists/exceptionextensionlist' exceptionmimetypelist = '/etc/e2guardian/lists/exceptionmimetypelist' #
# bannedextensionlist = '/etc/e2guardian/lists/bannedextensionlist' bannedmimetypelist = '/etc/e2guardian/lists/bannedmimetypelist' #
# exceptionfilesitelist = '/etc/e2guardian/lists/exceptionfilesitelist' exceptionfileurllist = '/etc/e2guardian/lists/exceptionfileurllist'
maxuploadsize = -1
headerregexplist = '/etc/e2guardian/lists/headerregexplist' bannedregexpheaderlist = '/etc/e2guardian/lists/bannedregexpheaderlist'
naughtynesslimit = 50000
#
# #
#
#
categorydisplaythreshold = 0
#
#
embeddedurlweight = 0
#
enablepics = off
bypass = 0
bypasskey = ''
infectionbypass = 0
infectionbypasskey = ''
infectionbypasserrorsonly = on
disablecontentscan = off
deepurlanalysis = off
#
#
# reportinglevel = 3
#
#
ssldeniedrewrite = 'on'
#
#
#
usesmtp = on
mailfrom = ''
avadmin = ''
contentadmin = ''
avsubject = 'e2guardian virus block'
contentsubject = 'e2guardian violation'
notifyav = on
notifycontent = on
thresholdbyuser = off
violations = 10
threshold = 0
sslsiteregexplist = '/etc/e2guardian/lists/sslsiteregexplist'
sslcertcheck = on
sslmitm = on
onlymitmsslgrey = off
mitmcheckcert = on
nocheckcertsitelist = '/etc/e2guardian/lists/nocheckcertsitelist'
# languagedir = '/usr/share/e2guardian/languages'
language = 'german'
#
loglevel = 3
logexceptionhits = 0
logfileformat = 1
#
#
dstatlocation = '/var/log/e2guardian/dstats.log'
#
filterip =
filterports = 8080
proxyip = 127.0.0.1
proxyport = 3128
proxytimeout = 20
proxyexchange = 20
pcontimeout = 55
#
#
usecustombannedimage = on custombannedimagefile = '/usr/share/e2guardian/transparent1x1.gif'
usecustombannedflash = on custombannedflashfile = '/usr/share/e2guardian/blockedflash.swf'
filtergroups = 2 filtergroupslist = '/etc/e2guardian/lists/filtergroupslist'
bannediplist = '/etc/e2guardian/lists/bannediplist' exceptioniplist = '/etc/e2guardian/lists/exceptioniplist'
showweightedfound = on
urlcachenumber = 1000 #
urlcacheage = 900
scancleancache = on
phrasefiltermode = 2
preservecase = 0
hexdecodecontent = off
forcequicksearch = off
reverseaddresslookups = off
reverseclientiplookups = off
logclienthostnames = off
prefercachedlists = off
#
maxcontentfiltersize = 256
maxcontentramcachescansize = 2000
maxcontentfilecachescansize = 20000
filecachedir = '/tmp'
deletedownloadedtempfiles = on
initialtrickledelay = 20
trickledelay = 10
#
#
#
# downloadmanager = '/etc/e2guardian/downloadmanagers/fancy.conf'
downloadmanager = '/etc/e2guardian/downloadmanagers/default.conf'
#
# contentscanner = '/etc/e2guardian/contentscanners/avastdscan.conf' contentscanner = '/etc/e2guardian/contentscanners/clamdscan.conf'
contentscannertimeout = 60
contentscanexceptions = off
#
#
#
authplugin = '/etc/e2guardian/authplugins/ip.conf'
recheckreplacedurls = off
forwardedfor = off
usexforwardedfor = off
logconnectionhandlingerrors = on
logsslerrors = on
logchildprocesshandling = off
maxchildren = 180
minchildren = 20
minsparechildren = 16
preforkchildren = 10
maxsparechildren = 32
maxagechildren = 500
maxips = 0
ipcfilename = '/tmp/.e2guardianipc'
urlipcfilename = '/tmp/.e2guardianurlipc'
#
ipipcfilename = '/tmp/.e2guardianipipc'
nodaemon = off
nologger = off
logadblocks = off
loguseragent = off
daemonuser = 'e2guardian' daemongroup = 'clamav'
softrestart = off
mailer = '/usr/sbin/sendmail -t'
sslcertificatepath = ''
cacertificatepath = '/etc/e2guardian/ssl_cert/my_rootCA.crt'
caprivatekeypath = '/etc/e2guardian/ssl_cert/private_root.pem'
certprivatekeypath = '/etc/e2guardian/ssl_cert/private_cert.pem'
generatedcertpath = '/etc/e2guardian/generatedcerts/'
Fred, not sure if you noticed but I hit an edit on that reply that showed that some of my clients were still getting that error, although the frequency was not as much. I do think there are some bugs with the re-direct code. Can you tell me what I need to do to document them for you when I find them? I can script out a grab of the logs and send them to you directly if you wish.
On Thu, Mar 16, 2017 at 1:12 PM, Fredb notifications@github.com wrote:
Ok great, this confirm that there is a more large problem with http redirect code, I think that my fix is not "clean" enough
Le 16 mars 2017 16:18:04 GMT+01:00, Wade Young notifications@github.com a écrit :
Have been testing for 1.5 day and the recent patches have seemed to fix this issue. Will have to generate more testing to be sure, but so far so good.
./autogen.sh && ./configure '--prefix=/usr' '--enable-clamd=no' '--with-proxyuser=e2guardian' '--with-proxygroup=e2guardian' '--sysconfdir=/etc' '--localstatedir=/var' '--enable-icap=yes' '--enable-commandline=yes' '--enable-email=yes' '--enable-ntlm=yes' '--enable-trickledm=yes' '--mandir=${prefix}/share/man' '--infodir=${prefix}/share/info' 'CXXFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' 'LDFLAGS=-Wl,-z,relro' 'CPPFLAGS=-D_FORTIFY_SOURCE=2' 'CFLAGS=-g -O2 -fstack-protector --param=ssp-buffer-size=4 -Wformat -Werror=format-security' '--enable-pcre=yes' '--enable-sslmitm=yes'
On Mon, Mar 13, 2017 at 5:54 PM, Spike notifications@github.com wrote:
@avdreith https://github.com/avdreith could you please share all the steps you took and configs you changed to set up your e2guardian instance? I'd like to repro if possible so maybe I can help with investigation. thanks
— You are receiving this because you commented. Reply to this email directly, view it on GitHub
https://github.com/e2guardian/e2guardian/issues/ 176#issuecomment-286269079, or mute the thread
-- You are receiving this because you commented. Reply to this email directly or view it on GitHub: https://github.com/e2guardian/e2guardian/issues/ 176#issuecomment-287090361
-- Envoyé de mon appareil Android avec K-9 Mail. Veuillez excuser ma brièveté.
— You are receiving this because you commented. Reply to this email directly, view it on GitHub https://github.com/e2guardian/e2guardian/issues/176#issuecomment-287145305, or mute the thread https://github.com/notifications/unsubscribe-auth/AXl4wR1Zzcb7s1t3E6eMLSorgLL8Lnzsks5rmXuGgaJpZM4L_oPV .
Hello, I installed e2guardian 3.5.0 with mitm-support on Ubuntu 16.04 64 bit. First everything looked good. HTTPS-conections are tested by e2guardian. For example virusscanning also works on HTTPS. But now I'm expeariencing something strange. For example, when I open https://wiki.ubuntuusers.de first everything is ok. But after some time of surfing on this site, no pictures are beeing shown anymore. If I click on a picture Google Chrome displays the message "ERR_TOO_MANY_REDIRECTS" and recomends to delete my cookies. After deleting the cookies the site works for a couple of minutes. This also happens on other sites. The access.log don't show much information. The affected picture is logged again and again as listed below in:
2017.2.13 20:15:39 192.168.177.25 192.168.177.25 https://media-cdn.ubuntu-de.org/wiki/attachments/59/00/iagno.png GET 0 0 1 302 - Standard - - 2017.2.13 20:15:39 192.168.177.25 192.168.177.25 https://media-cdn.ubuntu-de.org/wiki/attachments/59/00/iagno.png GET 0 0 1 302 - Standard - - 2017.2.13 20:15:39 192.168.177.25 192.168.177.25 https://media-cdn.ubuntu-de.org/wiki/attachments/59/00/iagno.png GET 0 0 1 302 - Standard - - 2017.2.13 20:15:39 192.168.177.25 192.168.177.25 https://media-cdn.ubuntu-de.org/wiki/attachments/59/00/iagno.png GET 0 0 1 302 - Standard - - 2017.2.13 20:15:39 192.168.177.25 192.168.177.25 https://media-cdn.ubuntu-de.org/wiki/attachments/59/00/iagno.png GET 0 0 1 302 - Standard - - ....
The syslog contains this (logsslerrors = on):
Feb 13 20:15:36 server e2guardian[14783]: ssl_write failed
I'm not sure if this problem is related to bug #96. Openssl should be version 1.0.2g on ubuntu 16.04. Which solved this bug.