[tor-bugs] #30912 [Internal Services/Tor Sysadmin Team]: Investigate stunnel outage on crm-ext-01

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Jul 29 20:48:36 UTC 2019


#30912: Investigate stunnel outage on crm-ext-01
-------------------------------------------------+-------------------------
 Reporter:  peterh                               |          Owner:  tpa
     Type:  defect                               |         Status:
                                                 |  needs_information
 Priority:  Medium                               |      Milestone:
Component:  Internal Services/Tor Sysadmin Team  |        Version:
 Severity:  Normal                               |     Resolution:
 Keywords:                                       |  Actual Points:
Parent ID:                                       |         Points:
 Reviewer:                                       |        Sponsor:
-------------------------------------------------+-------------------------

Comment (by peterh):

 Thanks for jumping on this so quickly. I'm not super familiar with ipsec,
 but I suspect in order to get this to work we'll need to have redis on
 crm-int-01 to listen on 0.0.0.0 or the inet6 address instead of localhost?
 Currently it's only bound to localhost. I definitely can't telnet to crm-
 int-01 3679 from crm-ext-01 right now.

 Maybe we'll also want to setup an iptables rule or something so that only
 crm-ext-01 can connect to that port?

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/30912#comment:18>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list