|
Home > Archive > Anonymous Servers > April 2005 > Stunnel Setup Help Please
You are viewing an archived Text-only version of the thread.
To view this thread in it's original format and/or if you want to reply to
this thread please [click here]
| Author |
Stunnel Setup Help Please
|
|
| herehere@aussiemail.com.au 2005-04-16, 5:45 pm |
| Hello,
I am having trouble getting Stunnel running; I was hoping someone may
be able to help me.
I created a folder called "stunnel" in C:/ and I copied these files
into it:
stunnel 4.05 (renamed to stunnel.exe)
libeay32.dll
libssl32.dll
stunnel.conf (from Dr. Who)
stunnel.pem (I tried with and without .pem; stunnel didn't work
regardless)
I then made a shortcut of stunnel.exe and put it on my desktop.
I then put the Stunnel shortcut into FreeCap; FreeCap is pointed to
Tor. I have also tried SocksCap with no luck; I get the same error
message from FreeCap and SocksCap.
________________________________________
_______________________________
Here is my stunnel.conf file:
debug = 7
output = log.txt
client = yes
options = all
RNDbytes = 1024
RNDfile = random.bfa
RNDoverwrite = yes
ciphers =
+[TLS]DHE-RSA-AES256-SHA:DHE-DSS-AES256-SHA:AES256-SHA:DES-CBC3-SHA
#ensure this line is not wrapped, if it is unwrap it
[nntps]
accept = 119
connect = secure.news.easynews.com:563
delay = no
#[BANANA_SPLIT_NNTPS_563]
#accept = 119
#connect = news.bananasplit.info:563
#delay = no
#[BANANA_NNTPS_563]
#accept = 119
#connect = tyrndfbdb2x6g3vg.onion:563
#delay = no
#[BANANA_SPLIT_25]
#accept = 25
#connect = tyrndfbdb2x6g3vg.onion:25
#delay = no
[Panta_TLS_MAIL]
accept = 25
connect = www.panta-rhei.dyndns.org:465
delay = no
#[nntps_563]
#accept = 119
#connect = 127.0.0.1:563
#delay = no
________________________________________
______________________________________
***Note: I added the BANANA_SPLIT_NNTPS setting so I can access
alt.anonymous.messages via. ZAX's new.bananasplit.info NNTPS free news
service.
Did I write the following stunnel setting correctly for ZAX?
#[BANANA_SPLIT_NNTPS_563]
#accept = 119
#connect = news.bananasplit.info:563
#delay = no
________________________________________
_______________________________
Every time I startup Stunnel alone or with either FreeCap and SocksCap
I get the following error messages:
"Stunnel serer is down due to an error. You need to exit and correct
the problems. Click OK to see the error log window"
LOG5[3616:2376]: stunel 4.05 on x86-pc-mingw32-gnu WIN32 with OpenSSL
0.9.7f 22 Mar 2005
LOG7[3616:3424]: RAND_status claims sufficient entropy for the PRNG
LOG6[3616:3424]: PRNG seeded successfully
LOG7[3616:3424]: Configuration SSL options: 0x00000FFF
LOG7[3616:3424]: SSL options set: 0x00000FFF
LOG3[3616:3424]: error stack: 140E6118 : error:140E6118:SSL
routines:SSL_CIPHER_PROCESS_RULESTR:inva
lid command
LOG3[3616:3424]: SSL_CTX_set_cipher_list: 140E6118: error:140E6118:SSL
routines:SSL_CIPHER_PROCESS_RULESTR:inva
lid command
LOG3[3616:3424]: Server is down
________________________________________
________________________________________
_
I also tried to in install stunnel by creating a stunnel folder on
Desktop then D-loading all files into the stunnel folder:
1.I then created a shortcut and placed it on desktop.
2.I clicked on the stunnel shortcut's Properties and added
"-install" into the target line.
3.Then I ran services.msc and started the stunnel service.
This didn't work either.
________________________________________
________________________________________
I am new to QS and Stunnel and I don't want to use QS/Tor without
Stunnel.
Am I correct that Stunnel can be used for:
1. Sending Nym "Create" message through QS/Stunnel/Tor
2. Sending email through QS/Stunnel/Tor
3. Sending Usenet messages through QS/Stunnel/Tor
4.D-loading alt.anonymous.messages via. ZAX's free
news.bananasplit.info:563 through QS/Stunnel/Tor
5. D-loading messages from my newsserver (I have an anon NNTPS account
at my news server) through QS/Stunnel/Tor
6. Sending/Downloading Usenet messages via. Forte' Agent (newsreaders)
through Agent/Stunnel/Tor
________________________________________
_______________________________
Thank you very much for any help,
| |
| BiKiKii Admin 2005-04-16, 5:45 pm |
| -----BEGIN PGP SIGNED MESSAGE-----
On 16 Apr 2005, herehere@aussiemail.com.au wrote:
>Hello,
>
>I am having trouble getting Stunnel running; I was hoping someone may
>be able to help me.
>
>Here is my stunnel.conf file:
>
>ciphers = +[TLS]DHE-RSA-AES256-SHA:DHE-DSS-AES256-SHA:AES256-SHA:DES-CBC3-SHA
>
Assuming the line you posted reads as above...
The answer is below:
> routines:SSL_CIPHER_PROCESS_RULESTR:inva
lid command
>
Whatever this " +[TLS] " is meant to do I do not know, it is incorrect syntax.
>stunnel.conf (from Dr. Who)
>
OK I went to Panta's WiKi...
That cipher list should read:
ciphers = +DHE-RSA-AES256-SHA:DHE-DSS-AES256-SHA:AES256-SHA:DES-CBC3-SHA
Still I do not understand why that "Move" is employed;
basically moving "HIGH" bit(256 and 168) encryption to the end.
Why not just use +HIGH ?
Ciao!
BiKiKii
-----BEGIN PGP SIGNATURE-----
Version: N/A
iQEVAwUBQmFvD/Rwi/ QFFzi5AQHCWAf8C5sJkYxMqDkcW8SgwoLW3ThqXi
sf54RF
D77efhCvw2ByQtIr4uWhCoDQ6kjB5wx494hz+5F2
vvWQwVf0yh6UE5/2s0f+6+/R
yQ3sUtUCtLN64tifSsYGILz9sFDSSC0qEy2Ic32r
6IOUBqkZt0/YCEv1wPnmpi7e
T2QbHWX5I5WE7SGhBEDwGF+HpPqWXYghO0IDtppC
8FmxVvSGa0AENIbRC3t2UOu6
Bosr6sJ3W5JuV9VIydFZQ9v9u8t7KhPtb+jq+JEx
KtuJBAVM/Tx/bY8gkJ6aBocM
ad15gSrLgLv7fwSinNKYOijUxpe8QxmEVetAz3s5
GHe1IGL6j2Rcdw==
=LjOY
-----END PGP SIGNATURE-----
| |
| herehere@aussiemail.com.au 2005-04-18, 5:46 pm |
|
BiKiKii Admin wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
>
> On 16 Apr 2005, herehere@aussiemail.com.au wrote:
>
> Assuming the line you posted reads as above...
> The answer is below:
>
Thank you very muchf for your time; Stunnel is working great now.
|
|
|
|
|