[sslh] Plan to integrate IP_TRANSPARENT

Jon Spriggs jon at sprig.gs
Fri Jul 5 22:52:51 CEST 2013


Well, actually, I'd guess you'd need two ports on the same IP address?
10443 and 10022 + 22?
--
Jon "The Nice Guy" Spriggs


On 5 July 2013 21:41, Alexandre TOSTIVINT <eclair121 at gmail.com> wrote:
> 2013/7/5 Yves Rutschle <yves at naryves.com>
>>
>> On Fri, Jul 05, 2013 at 02:41:20PM +0200, Yves Rutschle wrote:
>> > There is a patch to do this here:
>> > http://rutschle.net/pipermail/sslh/2013-February/000299.html
>> >
>> > and Antonia managed to get it working:
>> > http://rutschle.net/pipermail/sslh/2013-April/000308.html
>> >
>> > I personally haven't managed it, but the link you posted
>> > mentions it cannot work if you target localhost, which I
>> > did, so I'll need to try that again.
>>
>> Ok, I confirm that the patch works, you just have to target
>> addresses that aren't localhost. This means you can't have
>> Apache listen to localhost:443, but I guess that a small
>> price to pay to get transparent proxy-ing.
>>
>> I'll start cleaning up the patch and porting it to
>> sslh-select and add instructions to README, and release a
>> new version at some point.
>>
>> Cheers,
>> Y.
>
>
> So you need 2 IP devices ( a proxy + SSH/OpenVPN/HTTPS server ) to get sslh
> work with that ?
> Anyway, thank you very very much !
>
>
> _______________________________________________
> sslh mailing list
> sslh at rutschle.net
> http://rutschle.net/cgi-bin/mailman/listinfo/sslh
>



More information about the sslh mailing list