Unfortunately no one can be told what fun_plug is - you have to see it for yourself.
You are not logged in.
I am using the lighttpd feature from funplug and have a webserver runing on the DNS 323. When people are accessing the site, it is normal to have both the internet access light and hard disk light on the NAS blinking.
But at times, I notice that only the internet access light blinking furiously. Checking the access logs, I find entries like:
222.186.13.75 bbs.rexian.net.cn - [04/Apr/2010:20:32:13 +0800] "GET http://bbs.rexian.net.cn/templates/defa … DE197923E2 HTTP/1.0" 404 345 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)"
118.161.233.46 - - [04/Apr/2010:20:37:26 +0800] "CONNECT maile.burst.idv.tw:25 HTTP/1.0" 501 357 "-" "-"
114.255.168.213 [My DNS323 IP:Port] - [06/Apr/2010:01:37:13 +0800] "GET /manager/html HTTP/1.1" 404 345 "-" "Mozilla/3.0 (compatible; Indy Library)"
Correct me if I am wrong but I suspect someone has found a loophole to use the internet through the server.
Is there any way to ban or deny access to the web server.
Offline
2mymall wrote:
Correct me if I am wrong but I suspect someone has found a loophole to use the internet through the server.
Read http://en.wikipedia.org/wiki/List_of_HTTP_status_codes to understand what you log means.
Don't run your webserver on a well known port like 80 and this will probably never happen again...
Offline
Hello, Thanks for the link bit it does not help. Codes 345 & 357 are not listed.
Anyway the web server is not running on port 80.
Offline
The codes in your log are 404 and 501
Then its like port 443 or 8080?
Offline
You're right.
Don't seem to have luck changing the ports though. I can see lighttpd config and open it in notepad, but don't have the correct permissions on win 7 to save it.
I can log in as root in shell and change file permissions but no idea how to modify the file in shell.
Even after changing the file permission to 777, I still cannot save changes using notepad.
Any advice??
Offline
First, set the permission to 666 (read & write to everyone, no execution) instead of 777 (read/write/execute).
Then use a native linux editor (like vi or nano) under ssh or telnet access or, if you're not comfortable with that, use Notepadd++ in windows which is aware of linux text file format.
If it is not enougth try to download the configuration file, modify it under windows with Notepad++ and overwrite it.
Offline
Have a look at this as well: http://redmine.lighttpd.net/projects/li … figuration
Offline
Thanks mushanga. That worked.
Chmod it to 666, edited it with textpad and saved it back. Restarted the server and everything is ok.
Now just hope this stops the unauthorized activity I always notice on the server.
Thanks again man.
Last edited by 2mymall (2010-04-07 11:30:46)
Offline