Dashboard no Workie
William WY7WL
Installed DVSwitch on a debian 9 amazon AWS, used the dvswitch builder for the install.
No joy on the dashboard...I've opened port 80 on the instance... 403 forbidden when I enter the public IP address. I've tried a changing a few permissions, but with no luck. Thanks for any ideas. Will KC3CPO
|
|
Please show the output of netstat -tnap as root.
toggle quoted messageShow quoted text
Steve N4IRS
On 12/1/20 8:19 PM, William KC3CPO
wrote:
Installed DVSwitch on a debian 9 amazon AWS, used the dvswitch builder for the install.
|
|
William WY7WL
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 531/sshd tcp 0 0 172.31.9.220:38680 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38664 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38668 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:34579 107.191.121.105:9007 ESTABLISHED 681/ircddbgatewayd tcp 0 0 172.31.9.220:41388 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41332 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38628 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38640 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41356 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38644 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41400 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38620 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38652 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38612 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41404 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38648 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41360 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41380 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38660 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41344 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38656 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38636 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41372 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41384 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41336 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38676 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41340 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41368 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41396 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41352 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41376 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38616 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41392 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38632 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38672 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:38624 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:41348 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:41364 172.217.9.36:443 TIME_WAIT - tcp 0 0 172.31.9.220:38684 172.217.4.78:443 TIME_WAIT - tcp6 0 0 :::2812 :::* LISTEN 550/monit tcp6 0 0 :::80 :::* LISTEN 522/lighttpd tcp6 0 0 :::22 :::* LISTEN 531/sshd
|
|
edit /etc/lighttpd/lighttpd.conf
toggle quoted messageShow quoted text
Comment out line 42 include_shell "/usr/share/lighttpd/use-ipv6.pl " + server.port change to # include_shell "/usr/share/lighttpd/use-ipv6.pl " + server.port save systemctl restart lighttpd retest
On 12/1/20 9:03 PM, William KC3CPO
wrote:
|
|
William WY7WL
Didn't seem to work....
|
|
Show me netstat -tnap again as root.
toggle quoted messageShow quoted text
On 12/1/20 9:40 PM, William KC3CPO
wrote:
Didn't seem to work....
|
|
William WY7WL
Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name tcp 0 0 0.0.0.0:1994 0.0.0.0:* LISTEN 686/Quantar_Bridge tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN 518/lighttpd tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 530/sshd tcp 0 0 0.0.0.0:2812 0.0.0.0:* LISTEN 547/monit tcp 0 0 172.31.9.220:59310 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45236 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45224 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45228 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45232 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47762 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45244 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47770 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45272 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47766 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:59286 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45204 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47742 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:37123 107.191.121.105:9007 ESTABLISHED 693/ircddbgatewayd tcp 0 0 172.31.9.220:59294 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45212 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45268 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59306 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45264 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47750 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45260 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59290 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:47758 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45240 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45208 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45220 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45256 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59298 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:59282 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:59314 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45276 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47746 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45248 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47754 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45216 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59278 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:47774 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:59302 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45252 172.217.4.78:443 TIME_WAIT - tcp6 0 0 :::22 :::* LISTEN 530/sshd tcp6 0 0 :::2812 :::* LISTEN 547/monit
|
|
tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN 518/lighttpd
Tells me the web server is listening on port 80. I suspect a local firewall or provider is blocking port 80.
Sent by smoke signal (AT&T)
From: main@DVSwitch.groups.io <main@DVSwitch.groups.io> on behalf of William KC3CPO <lipscomb724@...>
Sent: Wednesday, December 2, 2020 3:59:19 PM To: main@DVSwitch.groups.io <main@DVSwitch.groups.io> Subject: Re: [DVSwitch] Dashboard no Workie Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name tcp 0 0 0.0.0.0:1994 0.0.0.0:* LISTEN 686/Quantar_Bridge tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN 518/lighttpd tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 530/sshd tcp 0 0 0.0.0.0:2812 0.0.0.0:* LISTEN 547/monit tcp 0 0 172.31.9.220:59310 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45236 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45224 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45228 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45232 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47762 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45244 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47770 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45272 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47766 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:59286 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45204 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47742 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:37123 107.191.121.105:9007 ESTABLISHED 693/ircddbgatewayd tcp 0 0 172.31.9.220:59294 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45212 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45268 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59306 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45264 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47750 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45260 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59290 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:47758 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45240 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45208 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45220 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:45256 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59298 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:59282 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:59314 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45276 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47746 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45248 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:47754 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:45216 172.217.4.78:443 TIME_WAIT - tcp 0 0 172.31.9.220:59278 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:47774 216.58.192.132:443 TIME_WAIT - tcp 0 0 172.31.9.220:59302 172.217.4.100:443 TIME_WAIT - tcp 0 0 172.31.9.220:45252 172.217.4.78:443 TIME_WAIT - tcp6 0 0 :::22 :::* LISTEN 530/sshd tcp6 0 0 :::2812 :::* LISTEN 547/monit
|
|
could we see your iptables ?
On 12/2/2020 3:59 PM, William KC3CPO
wrote:
|
|
William WY7WL
I just tried port 85 in the conf file along with changing the AWS security. Still no luck
|
|
What about your /etc/iptables.conf file on the actual install ? If you are using a external firewall, you should get rid of the
internal one. Or make it match.
On 12/2/2020 4:53 PM, William KC3CPO
wrote:
|
|
William WY7WL
Chain INPUT (policy ACCEPT) target prot opt source destination
Chain FORWARD (policy ACCEPT) target prot opt source destination
Chain OUTPUT (policy ACCEPT) target prot opt source destination
|
|
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
On 12/2/2020 5:22 PM, William KC3CPO
wrote:
|
|
I am not familiar with aws virtual boxes so, I can't say a whole bunch about what you are showing me. But it is something you need to look at.
On 12/2/2020 5:23 PM, Mike KB8JNM
wrote:
|
|
William WY7WL
Is there a quick way to rebuild lighttpd?
I'm back to revisit this problem (on a different server now). lighttpd status tells failed to start and I've noticed the conf file under /etc/lighttpd/lighttpd.conf is missing. Thanks for any help, Will
|
|
server.modules = (
toggle quoted messageShow quoted text
"mod_indexfile", "mod_access", "mod_alias", "mod_redirect", ) server.document-root = "/var/www/html" server.upload-dirs = ( "/var/cache/lighttpd/uploads" ) server.errorlog = "/var/log/lighttpd/error.log" server.pid-file = "/var/run/lighttpd.pid" server.username = "www-data" server.groupname = "www-data" server.port = 80 # strict parsing and normalization of URL for consistency and security # https://redmine.lighttpd.net/projects/lighttpd/wiki/Server_http-parseoptsDetails # (might need to explicitly set "url-path-2f-decode" = "disable" # if a specific application is encoding URLs inside url-path) server.http-parseopts = ( "header-strict" => "enable",# default "host-strict" => "enable",# default "host-normalize" => "enable",# default "url-normalize-unreserved"=> "enable",# recommended highly "url-normalize-required" => "enable",# recommended "url-ctrls-reject" => "enable",# recommended "url-path-2f-decode" => "enable",# recommended highly (unless breaks app) #"url-path-2f-reject" => "enable", "url-path-dotseg-remove" => "enable",# recommended highly (unless breaks app) #"url-path-dotseg-reject" => "enable", #"url-query-20-plus" => "enable",# consistency in query string ) index-file.names = ( "index.php", "index.html" ) url.access-deny = ( "~", ".inc" ) static-file.exclude-extensions = ( ".php", ".pl", ".fcgi" ) compress.cache-dir = "/var/cache/lighttpd/compress/" compress.filetype = ( "application/javascript", "text/css", "text/html", "text/plain" ) # default listening port for IPv6 falls back to the IPv4 port # include_shell "/usr/share/lighttpd/use-ipv6.pl " + server.port include_shell "/usr/share/lighttpd/create-mime.conf.pl" include "/etc/lighttpd/conf-enabled/*.conf" #server.compat-module-load = "disable" server.modules += ( "mod_compress", "mod_dirlisting", "mod_staticfile", )
On 12/28/20 9:03 AM, William KC3CPO
wrote:
Is there a quick way to rebuild lighttpd?
|
|
William WY7WL
Ah, so the file was there just named.... lighttpd.conf.dpkg-new
Changed name and running now.
|
|
If you modify a config file for a apt package, in this case
lightttpd, then on upgrade, apt will ask if you want to keep your
file or use the config file included in the apt package.
toggle quoted messageShow quoted text
On 12/28/20 9:12 AM, William KC3CPO
wrote:
Ah, so the file was there just named.... lighttpd.conf.dpkg-new
|
|
William WY7WL
Ok Thanks! Any ideas on this one now?? haha
root@ASLDVSwitch:/home/admin# systemctl status webproxy ● webproxy.service - Web Proxy Service Loaded: loaded (/lib/systemd/system/webproxy.service; enabled; vendor preset: enabled) Active: activating (auto-restart) (Result: exit-code) since Mon 2020-12-28 07:38:01 MST; 1s ago Process: 1750 ExecStart=/usr/bin/node /opt/Web_Proxy/proxy.js 88 2222 (code=exited, status=203/EXEC) Process: 1747 ExecStartPre=/bin/sh -c echo "Starting Web Proxy: [`date +%T.%3N`]" >> /var/log/netcheck (code=exited, status=0/SUCCESS) Main PID: 1750 (code=exited, status=203/EXEC)
Dec 28 07:38:01 ASLDVSwitch.local systemd[1]: webproxy.service: Main process exited, code=exited, status=203/EXEC Dec 28 07:38:01 ASLDVSwitch.local systemd[1]: webproxy.service: Unit entered failed state. Dec 28 07:38:01 ASLDVSwitch.local systemd[1]: webproxy.service: Failed with result 'exit-code'.
|
|
cd /opt/Web_Proxy
toggle quoted messageShow quoted text
/usr/bin/node proxy.js 88 2222 What do you get?
On 12/28/20 9:39 AM, William KC3CPO
wrote:
Ok Thanks! Any ideas on this one now?? haha
|
|