[sslh] Apache and the right IP address?

Brom brom at ldkf.de
Sat Jul 19 19:17:54 CEST 2014


Hi,
on Debian I compiled sslh now because the package distributed by Debian
was too old for transparent proxying. So far, so good. I replaced the
binaries then with the new ones and did the other steps like it's said
in the readme (setcap and iptables rules). And I changed the loopback
addresses in /etc/default/sslh to my external IP, too. Everything's is
OK when I restart. Then I add "--transparent" to DAEMON_OPRS and
restart. When I visit the website I get in Firefox "The connection to
*** was interrupted while the page was loading.". In the Terminal I see
"setsockopt: Operation not permitted". When I change the user sslh runs
under to root, the page is loading very long until I get again "The
connection to *** was interrupted while the page was loading.". There's
also no change between sslh-select and sslh-fork.

Can you (or anybody else in the mailing list) help me with this please?
And is there a possibility to have a more detailed log for all ongoing
and outgoing connections over sslh?

Brom

Am 18.07.2014 21:44, schrieb Yves Rutschle:
> Hi Brom,
>
> On Fri, Jul 18, 2014 at 06:10:08PM +0200, Brom wrote:
>> is it possible that Apache (or Piwik at least) can see the true IP
>> addresses of the visitors?
> Yes, at least on Linux, look up "transparent proxying" in
> the README.
>
> Y.
>




More information about the sslh mailing list