Difference between revisions of "Using a UAL SSL port other than the default 5767"

From Scalix Wiki
Jump to: navigation, search
m (Reverted edits by MatildaHarris (Talk) to last version by Ella19)
m (SPAM Removal)
 
Line 1: Line 1:
Sometimes due to [http://www.cavite-housing.com/category/lancaster-estates/ cavite homes] firewall restrictions it is not possible to connect to Scalix on port 5767, even though other ports are <span class="plainlinks">[http://www.andrewflusche.com/services/spotsylvania-reckless-driving-defense/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Spotsylvania reckless driving</span>] available <span class="plainlinks">[http://www.naturemill.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Compost Bin</span>].
+
Sometimes due to firewall restrictions it is not possible to connect to Scalix on port 5767, even though other ports are available.
  
Please <span class="plainlinks">[http://internationalportfolioinc.wordpress.com/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">international portfolio inc</span>] note: Circumvention <span class="plainlinks">[http://tripfoundry.com/ <span style="color:black;font-weight:normal; text-decoration:none!important;background:none!important; text-decoration:none;">Trip Foundry</span>] of firewalls <span class="plainlinks">[http://www.mycaal.com/ <span style="color:black;font-weight:normal; text-decoration:none!important;background:none!important; text-decoration:none;">loan modification</span>] in this way may not be legal<span class="plainlinks">[http://www.espycamera.com/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">spy equipment</span>], or may violate corporate policy.  Please talk to your system <span class="plainlinks">[http://www.countrybrookcondos.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">san ramon ca condos</span>] administrator ahead of time.  Also, <span class="plainlinks">[http://featherranch.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">stud dogs</span>] this is not recommended for <span class="plainlinks">[http://www.cleanfresnocarpets.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">clovis carpet cleaning</span>] normal use, <span class="plainlinks">[http://www.gumball-machine.com/vending-machines.html <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">vending machines</span>] only if there is no alternative, as it will place additional <span class="plainlinks">[http://www.truckaccidentlawyersource.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">truck accident lawyer</span>] load on your Windows <span class="plainlinks">[http://www.internetreputationmanagement.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">online reputation </span>] system <span class="plainlinks">[http://priceofsilver.org/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">silver price</span>].
+
Please note: Circumvention of firewalls in this way may not be legal, or may violate corporate policy.  Please talk to your system administrator ahead of time.  Also, this is not recommended for normal use, only if there is no alternative, as it will place additional load on your Windows system.
  
 
== Configuring the server ==
 
== Configuring the server ==
  
* Normally <span class="plainlinks">[http://pdfcast.org/pdf/brett-merl-customizes-packages-on-behalf-of-its-clients-who-in-turn-market-to-their-customers-or-pro<span style="color:black;font-weight:normal; text-decoration:none!important;background:none!important; text-decoration:none;">Brett Merl</span>] your <span class="plainlinks">[http://www.aheadacheinthepelvis.net/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">A Headache in the Pelvis</span>] stunnel.conf will be <span class="plainlinks">[http://www.congregationbuilder.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">church calendar software</span>] similar to the <span class="plainlinks">[http://www.merchantservicesprotectionplan.info/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Merchant Services Protection Plan</span>] following <span class="plainlinks">[http://www.ghengisfireworks.co.uk/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">fireworks</span>]:
+
* Normally your stunnel.conf will be similar to the following:
[http://www.cavite-housing.com/ lancaster estate cavite]
+
 
 
  CAFile = cacert-bundle.crt
 
  CAFile = cacert-bundle.crt
 
  cert = stunnel.pem
 
  cert = stunnel.pem
 
  client = no
 
  client = no
  options = NO_SSLv2 <span class="plainlinks">[http://www.carouseldayschool.net/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Carousel Day School</span>]
+
  options = NO_SSLv2
 
  [imaps]
 
  [imaps]
 
  accept = 993
 
  accept = 993
 
  connect = imap
 
  connect = imap
  [uals] = <span class="plainlinks">[http://naturaltestosteroneboosters.co/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">natural testosterone boosters</span>]
+
  [uals]
 
  accept = 5767
 
  accept = 5767
 
  connect = 5729
 
  connect = 5729
  
* Pick a <span class="plainlinks">[http://travelitineraries.net/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Travel Itineraries</span>] suitable port on <span class="plainlinks">[http://www.merchantos.com/<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">point of sale software</span>] your server.  I in this example I am going to use <span class="plainlinks">[http://www.abesmarket.com/natural-products/personal-care/hair-care/natural-organic-shampoo.html <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">organic shampoo</span>] 22.
+
* Pick a suitable port on your server.  I in this example I am going to use 22.
  
* Verify the port is indeed unsused <span class="plainlinks">[http://www.linkedin.com/pub/jason-halek/4/723/6b3<span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">jason halek</span>]:
+
* Verify the port is indeed unsused:
 
  lsof -i:22
 
  lsof -i:22
  
Line 39: Line 39:
 
  connect = 5729
 
  connect = 5729
  
* stop and restart stunnel and <span class="plainlinks">[http://www.diamondlinks.net/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">link building service</span>] connect to the server from a different PC, <span class="plainlinks">[http://freshcrop.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">photo recovery</span>], verifying it is listening on the right port.
+
* stop and restart stunnel and connect to the server from a different PC, verifying it is listening on the right port.
  
 
== Configuring the client ==
 
== Configuring the client ==
Line 50: Line 50:
  
 
* In AUTAPF go to New, then fill in the fields as required:  
 
* In AUTAPF go to New, then fill in the fields as required:  
** Local port: 5767 <span class="plainlinks">[http://www.premierrivercruises.com/cruise_lines/tauck_river_cruises <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Luxury river cruises</span>]
+
** Local port: 5767
** Local interface: 127.0.0.1 <span class="plainlinks">[http://www.netlook.com.br/ <span style="color:black;font-weight:normal;text-decoration:none!important; background:none!important; text-decoration:none;">roupas da moda</span>]
+
** Local interface: 127.0.0.1
 
** Remote port: 22 (as defined on the server)
 
** Remote port: 22 (as defined on the server)
 
** Remote host address: The IP address of the Scalix server
 
** Remote host address: The IP address of the Scalix server
Line 67: Line 67:
 
* Extract the archive somewhere (e.g. c:\apps\rinetd)
 
* Extract the archive somewhere (e.g. c:\apps\rinetd)
  
* Create a rinetd.conf file in the same directory, <span class="plainlinks">[http://www.proposable.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">proposal software</span>] containing:
+
* Create a rinetd.conf file in the same directory, containing:
 
  127.0.0.1 5767 <Scalix server IP> <scalix server port as defined above>
 
  127.0.0.1 5767 <Scalix server IP> <scalix server port as defined above>
  
* Create a scalix-redirector.bat [http://www.cavite-housing.com/ house and lot for sale in cavite] file in the same directory, containing <span class="plainlinks">[http://www.bestpills4weightloss.com/ <span style="color:black;font-weight:normal;text-decoration:none!important; background:none!important; text-decoration:none;">weight loss pills</span>]:
+
* Create a scalix-redirector.bat file in the same directory, containing:
 
  @echo off
 
  @echo off
 
  rinetd.exe -c rinetd.conf
 
  rinetd.exe -c rinetd.conf
  
* Edit c:\windows\system32\drivers\etc\hosts and <span class="plainlinks">[http://www.valleypistachio.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">gourmet gift basket</span>] add the Scalix server to the localhost entry
+
* Edit c:\windows\system32\drivers\etc\hosts and add the Scalix server to the localhost entry
  
 
  127.0.0.1    localhost    scalix.domain.com
 
  127.0.0.1    localhost    scalix.domain.com
  
* Run the <span class="plainlinks">[http://www.monash.edu.au/alumni/prominent-alumni/susan-lim.html <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Dr Susan Lim</span>]'s scalix-redirector.bat in a <span class="plainlinks">[http://xTiburon.com/ <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">technology news</span>] terminal window
+
* Run the scalix-redirector.bat in a terminal window
  
* Run Outlook to see if the new <span class="plainlinks">[http://www.facebook.com/bsafans <span style="color:black;font-weight:normal; text-decoration:none!important; background:none!important; text-decoration:none;">Beauty Schools of America Complaints</span>] configuration works correctly.
+
* Run Outlook to see if the new configuration works correctly.

Latest revision as of 16:15, 20 March 2012

Sometimes due to firewall restrictions it is not possible to connect to Scalix on port 5767, even though other ports are available.

Please note: Circumvention of firewalls in this way may not be legal, or may violate corporate policy. Please talk to your system administrator ahead of time. Also, this is not recommended for normal use, only if there is no alternative, as it will place additional load on your Windows system.

Configuring the server

  • Normally your stunnel.conf will be similar to the following:
CAFile = cacert-bundle.crt
cert = stunnel.pem
client = no
options = NO_SSLv2
[imaps]
accept = 993
connect = imap
[uals]
accept = 5767
connect = 5729
  • Pick a suitable port on your server. I in this example I am going to use 22.
  • Verify the port is indeed unsused:
lsof -i:22
  • Change your stunnel.conf as follows:
CAFile = cacert-bundle.crt
cert = stunnel.pem
client = no
options = NO_SSLv2
[imaps]
accept = 993
connect = imap
[uals]
accept = 5767
connect = 5729
[uals-alt]
accept = 22
connect = 5729
  • stop and restart stunnel and connect to the server from a different PC, verifying it is listening on the right port.

Configuring the client

Configuring the client using commercial software

  • Install AUTAPF
  • In AUTAPF go to New, then fill in the fields as required:
    • Local port: 5767
    • Local interface: 127.0.0.1
    • Remote port: 22 (as defined on the server)
    • Remote host address: The IP address of the Scalix server
  • Edit c:\windows\system32\drivers\etc\hosts and add the Scalix server to the localhost entry
127.0.0.1    localhost    scalix.domain.com
  • Run Outlook to see if the new configuration works correctly.

Configuring the client using FOSS software

  • Extract the archive somewhere (e.g. c:\apps\rinetd)
  • Create a rinetd.conf file in the same directory, containing:
127.0.0.1 5767 <Scalix server IP> <scalix server port as defined above>
  • Create a scalix-redirector.bat file in the same directory, containing:
@echo off
rinetd.exe -c rinetd.conf
  • Edit c:\windows\system32\drivers\etc\hosts and add the Scalix server to the localhost entry
127.0.0.1    localhost    scalix.domain.com
  • Run the scalix-redirector.bat in a terminal window
  • Run Outlook to see if the new configuration works correctly.