Forum Replies Created
-
AuthorPosts
-
Vadim, great news, 1.1.5 passes the handshake and correctly redirects traffic through the WG server.
I think, after purchased another equipment from China, the specialists didn’t completely configured it, and left the some default settings, with the blocked WG service, because Open VPN and other famous protocols works correctly.
Thank you very much for taking the time to resolve this issue!
Vadim, good evening,
Sorry for the late reply, I haven’t had the time in recent days to reinstall and reconfigure my Dante server.
After I set up user and password authentication on Dante, the handshake between WG server and WireSock was successful.
But despite the fact that the handshake was successful, the program did not work correctly, redirecting traffic through the server, or access to the server over a private network failed. I also noticed that when I starting the service, the TUN network adapter does not appear, as it did normally when the wireguard client was started. Also, I did not understand the server redirection to strange addresses that can be seen in the logs:
[SOCKS5]: S2C_AFTER: 2.0.0.0 : 14080 -> 192.168.1.105 : 64262
[SOCKS5]: S2C_AFTER: 3.0.0.0 : 2560 -> 192.168.1.105 : 64262
[SOCKS5]: S2C_AFTER: 4.0.0.0 : 2304 -> 192.168.1.105 : 64262 etc.
the log file is bellow:
Vadim, I turned off the Dante server filtering by IP, but still the error remained.
Dante logs at the time of the error give the below entries:Feb 15 07:29:54 (1644892194.992458) danted[18143]: info: pass(1): tcp/accept [: [CLIENT EXT IP].46837 [SERVER EXT IP].1080
Feb 15 07:29:55 (1644892195.080458) danted[18143]: info: block(1): tcp/accept ]: [CLIENT EXT IP].46837 [SERVER EXT IP].1080: error after reading 4 bytes in 0 seconds: Connection reset by peer
Feb 15 07:33:52 (1644892432.568395) danted[18143]: info: pass(1): tcp/accept [: [CLIENT EXT IP].23938 [SERVER EXT IP].1080
Feb 15 07:33:52 (1644892432.662061) danted[18143]: info: block(1): tcp/accept ]: [CLIENT EXT IP].23938 [SERVER EXT IP].1080: error after reading 4 bytes in 1 second: Connection reset by peerIt looks like something is preventing UDP traffic from passing through Dante
Vadim, bellow link to pcap files:
Vadim, good evening,
How have you configured the Dante server?
Dante (SOCKS5 proxy) server, configured according instructions:
logoutput: /var/log/socks.log
internal: eth0 port = 1080
external: eth0
clientmethod: none
socksmethod: none
user.privileged: root
user.notprivileged: nobodyclient pass {
from: [CLIENT EXT IP]/32 to: 0.0.0.0/0
log: error connect disconnect
}
client block {
from: 0.0.0.0/0 to: 0.0.0.0/0
log: connect error
}
socks pass {
from: 0.0.0.0/0 to: 0.0.0.0/0
udp.portrange: 40000-45000
#command: udpassociate
log: error connect disconnect
}
socks block {
from: 0.0.0.0/0 to: 0.0.0.0/0
log: connect error
}According to the log, it does not use username/password authentication, right? How have you limited access to it? By an IP address?
Temporarily for testing Dante server does not use username/password authentication, I limited access by only an IP address.
I checked the availability of the server by setting the browser socks5 proxy settings on the client machine, and browser traffic is redirected through the this socos5 server correctly.
Vadim, good evening, thanks for your fast response.
The program has been successfully installed, but, after the start of the WireSock service, the handshake does not occur, and the following error is recorded to a log file screenshot bellow:
WireGuard and Dante servers are on the same VPS (Debian 10) with the one IP address.
Dante (SOCKS5 proxy) server, configured according by your instructions. I checked on the client computer: by writing the address of my proxy in the browser settings, browser traffic is redirected through the proxy server correctly.
I can’t find where the problem could be, or may be win7 unable to work correctly by redirecting udp traffic via socks5?
-
AuthorPosts