rejetto forum

HTTP File server and Stunnel Menu/Limits/Bans dont works...

0 Members and 1 Guest are viewing this topic.

Offline gegemon2012

  • Occasional poster
  • *
    • Posts: 2
    • View Profile
Hello!
I used the instruction http://www.rejetto.com/wiki/index.php?title=HFS:_Secure_your_server namely item 7: "Launch HFS (version 2.1d at the time of writing) to listen on port 44300. On the menu / Limits / Barring ..., enter "\ 127.0.0.1" without quotes and check the "Disable unanswered" check box to deny every IP address other than 127.0.0.1 to block direct HTTP access to HFS from the "Host not Found "Message. Within the "friendly" network, you might consider adding, for example, "\ 192.168. *", To allow direct HTTP access to HFS from all computers on your network. " But it does not work. When I try to connect via HTTPS, it says: "You are not allowed." And if you go to HTTP, it says "Host not found".

P.S. Programm version 2.3k.299.
« Last Edit: August 25, 2017, 11:05:21 AM by gegemon2012 »


Offline Mars

  • Operator
  • Tireless poster
  • *****
    • Posts: 2059
    • View Profile
when you use stunnel on the same computer of hfs, all connection trough stunnel to hfs in https are made with the 127.0.0.1 ip, then it's not necessary to use the ban if you allow only connexion on this IP

check menu -> Accept connexion on > 127.0.0.1 

select for hfs an other port than 80, by example responding on 43080

if you have another computer or a tablet , you can verify that the direct access to hfs using  http://192.168.xx.xx:43080 fail where 192.168.xx.xx is the ip of your computer on local network
« Last Edit: August 25, 2017, 01:25:27 PM by Mars »



Offline Fysack

  • Tireless poster
  • ****
    • Posts: 598
  • present picture
    • View Profile
    • Admin
Mars is from mars, he have always been, hardcore that dude, he knows where te water is  8)
GOD CAN READ YOUR MIND