I tried to enter something, maybe it’s telling, I’m not an expert on some debugging problem. Gitlab is an unknown territory with me labeled “there are lions”.
Today the problem was repeated, today it was enough to turn “Enable Minipots” on and off in reForis. There are some mentions of sentinel traffic in the syslog – but I not understand that.
Jun 9 11:50:59 Turris_JB sentinel: INFO [certgen.action_spec_init:89] Valid certificate found
Jun 9 09:50:59 Turris_JB /dhcp_host_domain_ng.py: Kresd is probably not running no socket found.
Jun 9 11:50:59 Turris_JB dnsmasq[11583]: script process exited with status 1
Jun 9 11:50:59 Turris_JB dnsmasq-dhcp[11583]: read /etc/ethers - 0 addresses
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: DHCP update hostname
Souhrn
[Fujitsu,192.168.2.120]
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: Refresh kresd leases
Jun 9 09:51:00 Turris_JB procd: Instance sentinel-fwlogs::instance1 pid 17075 not stopped on SIGTERM, sending SIGKILL instead
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: DHCP update hostname [EpsonXP700,192.168.2.118]
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: Refresh kresd leases
Jun 9 09:51:00 Turris_JB foris-controller[5918]: WARNING:foris_controller_backends.collectd:Socket error occured ‘[Errno 2] No such file or directory’
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: DHCP update hostname [Pixel-4a,192.168.2.115]
Jun 9 09:51:00 Turris_JB /dhcp_host_domain_ng.py: Refresh kresd leases
Jun 9 09:51:00 Turris_JB procd: Instance sentinel-minipot::instance1 pid 18925 not stopped on SIGTERM, sending SIGKILL instead
Jun 9 09:51:01 Turris_JB /dhcp_host_domain_ng.py: DHCP update hostname [Fujitsu,192.168.2.120]
Jun 9 09:51:01 Turris_JB /dhcp_host_domain_ng.py: Refresh kresd leases
Jun 9 09:51:01 Turris_JB /dhcp_host_domain_ng.py: DHCP update hostname [EpsonXP700,192.168.2.118]
Jun 9 09:51:01 Turris_JB sentinel-fwlogs[11966]: ERROR: Packet handling failed: Resource temporarily unavailable
Jun 9 09:51:01 Turris_JB /dhcp_host_domain_ng.py: Refresh kresd leases
Jun 9 11:51:20 Turris_JB sentinel: INFO [certgen.action_spec_init:89] Valid certificate found
Jun 9 09:51:21 Turris_JB foris-controller[5918]:
Souhrn
WARNING:foris_controller_backends.collectd:Socket error occured '[Errno 2] No such file or directory'
Jun 9 09:51:22 Turris_JB procd: Instance sentinel-fwlogs::instance1 pid 11966 not stopped on SIGTERM, sending SIGKILL instead
Jun 9 09:51:23 Turris_JB foris-controller[5918]: WARNING:foris_controller_backends.collectd:Socket error occured '[Errno 2] No such file or directory'
x
x
Jun 9 09:51:56 Turris_JB sentinel-fwlogs[12571]: ERROR: Packet handling failed: Resource temporarily unavailable
x
Jun 9 21:07:24 Turris_JB sentinel-dynfw-client[17840]: ipset v7.3: Error in line 1: Element cannot be deleted from the set: it's not added
Jun 9 21:07:24 Turris_JB sentinel-dynfw-client[17840]: 2022-06-09 23:07:24,343 - WARNING - Error running ipset command: return code 1.
So again - HaaS is out and the necessary HaaS and Honeypots ports are closed. I postponed the diagnostics. I don’t see anything special in syslog
So again - HaaS is out and the necessary HaaS and Honeypots ports are closed. I postponed the diagnostics. I don’t see anything special in syslog. I won’t interfere, I’ll see if it fixes itself.
Jun 22 10:42:01 Turris_JB crond[10931]: (root) CMD (sentinel-certgen certs --hooks-dir /usr/libexec/sentinel/renew_hooks.d)
Jun 22 10:42:01 Turris_JB crond[10928]: (root) CMDEND (/usr/bin/rainbow_button_sync.sh)
Jun 22 12:42:01 Turris_JB dnsmasq-dhcp[11583]: DHCPREQUEST(br-lan) 192.168.2.118 b0:e8:92:xx:xx:xx
Jun 22 12:42:01 Turris_JB dnsmasq-dhcp[11583]: DHCPACK(br-lan) 192.168.2.118 b0:e8:92:yy:xxf:xx EpsonXP700
Jun 22 10:42:03 Turris_JB foris-controller[5918]: WARNING:foris_controller_backends.collectd:Socket error occured '[Errno 2] No such file or directory'
Jun 22 12:42:03 Turris_JB sentinel: INFO [certgen.action_spec_init:89] Valid certificate found
Jun 22 10:42:03 Turris_JB crond[10929]: (root) CMDEND (sentinel-certgen certs --hooks-dir /usr/libexec/sentinel/renew_hooks.d)
xx
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: 2022-06-22T12:32:41 CRITICAL twisted Unhandled Error
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: Traceback (most recent call last):
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File "/usr/lib/python3.7/site-packages/twisted/internet/tcp.py", line 243, in doRead
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File "/usr/lib/python3.7/site-packages/twisted/internet/tcp.py", line 249, in _dataReceived
Souhrn
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/transport.py”, line 703, in dataReceived
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/transport.py”, line 728, in dispatchMessage
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: — —
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/log.py”, line 103, in callWithLogger
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/log.py”, line 86, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/context.py”, line 122, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/context.py”, line 85, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/service.py”, line 45, in packetReceived
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/connection.py”, line 295, in ssh_CHANNEL_EOF
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: builtins.KeyError: 0
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: 2022-06-22T12:32:41 CRITICAL twisted Unhandled Error
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: Traceback (most recent call last):
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/internet/tcp.py”, line 243, in doRead
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/internet/tcp.py”, line 249, in _dataReceived
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/transport.py”, line 703, in dataReceived
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/transport.py”, line 728, in dispatchMessage
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: — —
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/log.py”, line 103, in callWithLogger
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/log.py”, line 86, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/context.py”, line 122, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/python/context.py”, line 85, in callWithContext
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/service.py”, line 45, in packetReceived
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: File “/usr/lib/python3.7/site-packages/twisted/conch/ssh/connection.py”, line 308, in ssh_CHANNEL_CLOSE
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]: builtins.KeyError: 0
Jun 22 10:32:41 Turris_JB haas-proxy-start[8715]:
Minipots failure recurred yesterday 4.7.22.
Restart sentinel-proxy, haas-proxy, sentinel-minipot with no result. It does what it wants, there are no indications of a problem in the log.
Today I thought of looking at the firewall status and in Firewall Status I did not find an active proxy - function indication in reForis, unfortunately it does not check whether the proxy is active, but apparently only the activity of the related application.