Articles delegate-en/3420-3510 of [1-5169] on the server localhost:119
  upper oldest olders older1 this newer1 newers latest
[Top/Up] [oldest] - [Older+chunk] - [Newer+chunk] - [newest + Check]
range 3420 - 3510   digest:
Compilation problems of delegate 9.2.2 on AIX v5.2
  07/25-22:45 . 3420  =?iso-8859-1?Q?Majdak_S=E9bastien_=28DBB=29?= <> [962]
___ Dexia Bank disclaimer :
  07/26-00:18 . 3421 (Yutaka Sato) [50]
___ Hi, - I recommend you to use the latest version of DeleGate (it's 9.2.4-pre4 today). - Your compilation stalles in the checking of the integrity of libraries. The check can be bypassed as the enclos
Gateway for sftp client to FTP server
  07/26-06:37 . 3422  "" <> [31]
___ Hi, Is it possible to have delegate act as a proxy for an sftp client to connect to an existing FTP server? So the opposite of delegated -P21 SERVER=ftp MOUNT="/* sftp://SftpServer/*" I tried delega
Compilation problems of delegate 9.2.2 on AIX v5.2
  07/27-00:00 . 3423  =?iso-8859-1?Q?Majdak_S=E9bastien_=28DBB=29?= <> [82]
___ Hi, - I tried with version 9.2.4-pre4 without any success. - I also tried your patch but the compilation failed later. - with "make CC=g++" and "make CC=gcc" same bad results. - I found this "-TP" f
  07/27-03:24 . 3424 (Yutaka Sato) [24]
___ Hi, What is shown as the result? Hmm... At least the problem in your former message is in the linking phase with libraries rather than the compilation phase, so upgrading the compiler might be irrel
Gateway for sftp client to FTP server
  07/27-09:53 . 3425 (Yutaka Sato) [28]
___ Hi, Unfortunately it is not so great to do the gateway from a SFTP client to the FTP server... Cheers, Yutaka 9 9 Yutaka Sato <> ( ~ ) National Institu
multi-port DeleGate on Windows (Re: delegate crashing)
  07/27-18:18 . 3426  rghetta <> [9]
___ Using -ls solves the problem. Thanks! Riccardo
Filtering HTTP proxy & pictures
  07/27-22:51 . 3427  "Xavier Cheney" <> [577]
___ Hi Yutaka, I answer about a few weeks ago small problem : localhost pictures, throught delegate HTTP proxy, makes a little time to appear in browser ... distant My problem occurs under windows. filt
  07/28-20:23 . 3428 (Yutaka Sato) [52]
___ Hi Xavier, Your log includes so many interesting implications. It might be a problem in the interpretation of "chunked" encoding + with Content-Length + in Keep-Alive + in Pipeline + on Windows Firs
ftps fails to work with client side ssl utilized.... connected but directory hangs
  07/30-11:35 . 3429  Michael Ingardia <> [31]
___ Hello, I am trying to use Delegate version 9.2.3 on windows ( will try on Linux and solaris later this week) as a ftps proxy. When invoking the server as follows:dg9_2_3 -P21,990 SERVER=ftp STLS=fcl
FW: [DeleGate-En:3429] Compilation problems of delegate 9.2.2 on AIX v5.2
  07/31-17:58 . 3430  =?iso-8859-1?Q?Majdak_S=E9bastien_=28DBB=29?= <> [405]
___ Hi Sato, Here is the script (with commands and printscreen), I got trying to make delegate9.2.4-pre4, "make CC=gcc" and "make CC=g++". I found an article on the ibm website that might interests you
ftps fails to work with client side ssl utilized.... connected but directory hangs
  08/01-06:38 . 3431 (Yutaka Sato) [37]
___ Hi, I think the LOGFILE of your DeleGate shows some hints about the problem. If the server is accessible by me, I'll test it. Cheers, Yutaka 9 9 Yutaka Sato <>
delegate socks with authorizer and ssl
  08/01-13:26 . 3432  Martin Papadopoulos <> [38]
___ hello yutaka, so far , i managed to have a socks delegate server with authorization, as described in the manual with -Fauth. on the client side i use a delegate proccess with MYAUTH=someuser:somepw:
STLS=fsv for SOCKS (Re: delegate socks with authorizer and ssl)
  08/02-02:16 . 3433 (Yutaka Sato) [70]
___ Hi Papa, As long as I know, SSL between SOCKS-DeleGate has not been implemented yet because there has no such request, and I have a little hesitation over the specification. SSL can be applied to th
SSL between SOCKS-DeleGate (Re: STLS=fsv for SOCKS)
  08/02-02:52 . 3434 (Yutaka Sato) [53]
___ Hi, I noticed that FTP/PORT command freezes with this SOCKS/SSL because STLS=fsv is not applied to the BIND command of SOCKS. It'll be fixed as the enclosed patch in the next pre-release. Cheers, Yu
ftps fails to work with client side ssl utilized.... connected but directory hangs
  08/02-03:50 . 3435  Michael Ingardia <> [164]
___ The ftp server that I am trying to hit is which is a linux fedora 3 server running vsftpd. It is publically accessible. I am using filezilla as a client to connect to this as a
  08/02-04:27 . 3436  Michael Ingardia <> [109]
___ Ok I tried this remotely, and in order to hit my ftp server you have to have an active connection. PASV fails due to fire wall rules most likely. Here is the log: 08/01 14:14:55.38 [2856] 1+0/9/6: f
  08/02-04:40 . 3437  Michael Ingardia <> [52]
___ One last note: You can also reproduce the problem against this ftp server which you can download and run locally. Mike...
  08/02-04:54 . 3438 (Yutaka Sato) [38]
___ Hi, I think this is the problem. Maybe inheriting the socket handle (connected to the client or server) from DeleGate to the SSL wrapper process (SSLway) fails by some reason, then DeleGate detects
  08/02-08:02 . 3439  Michael Ingardia <> [64]
___ So ... Set up a linux box installed delegate 9.2.3 ... ran it on port 1080 ...with same paramaters as windows ie SERVER=ftp STLS=fcl,fsv Got the same issue... client connects to delegate just fine .
SSL between SOCKS-DeleGate (Re: STLS=fsv for SOCKS)
  08/03-02:13 . 3440  Martin Papadopoulos <> [107]
___ Hello Yutaka, the background of my posting maybe of interest to you. i was looking for a way to do user+password authentication on a generalist, sockmux or socks delegate. for now i used as best pra
  08/03-10:55 . 3441 (Yutaka Sato) [39]
___ Hi, You can use SSL-certificate for MASTER ans SockMux too if you connect between DeleGate with SSLway. You can use AUTHORIZER and MYAUTH for the chaining of DeleGate by MASTER as this for example:
Question about TCP
  08/03-20:01 . 3442  George Tyshchenko <> [18]
___ Hello, Thanks fro developing DeleGate, I just have one question. How can I intercept TCP requests from my machine from certain port? For example a program accesses but delegate forward
password auth. of SockMux (Re: SSL between SOCKS-DeleGate)
  08/04-02:45 . 3443 (Yutaka Sato) [36]
___ Hi, I uploaded 9.2.4-pre11 which introduced password authentication for SockMux. Now you can use AUTHORIZER + MYAUTH with SERVER=sockmux as this: % delegated -P8000 SERVER=sockmux AUTHORIZER="-list{
10 times faster SockMux (Re: DeleGate - sockmux network performance)
  08/04-03:27 . 3444 (Yutaka Sato) [38]
___ Hi, In DeleGate/9.2.4-pre11, I expanded the size of the SockMux packet from 512 bytes to 16K bytes. It improved the performance (throughput) of SockMux about ten times, from 150Kbytes/sec to 1.5Mbyt
password auth. of SockMux (Re: SSL between SOCKS-DeleGate)
  08/06-01:12 . 3445  Martin Papadopoulos <> [82]
___ hello yutaka , works like a charm, also the sockmux is doing really fine :-) domo arigato, Mr. Sato ! Yutaka Sato schrieb:
delegate credhy
  08/06-04:28 . 3446  Martin Papadopoulos <> [32]
___ hello yutaka, the informations on credhy provided by the manual are somewhat slim.. i am particular intersted in the key parameters, eg. how can i use common key params between two delegate processe
  08/06-04:56 . 3447 (Yutaka Sato) [27]
___ Hi, Sorry but what is the "common key"? If you mean the key for encryption, it is generated automatically with "Deffie-Hellman keY agreement" algorithm, thus it is not necessary to be given manually
delegate rejects domains not in the list
  08/06-20:07 . 3448  Martin Papadopoulos <> [41]
___ hello yuataka, i am using delegate as an smtp-gateway with a long reject list ( aprox 147 items currently ). i have each domain in a sepearate REJECT= statement. allthoug not defined some domains ar
  08/07-00:54 . 3449 (Yutaka Sato) [27]
___ Hi, Hmm. For example? I don't think so. Cheers, Yutaka 9 9 Yutaka Sato <> ( ~ ) National Institute of Advanced Industrial Science and Technology _< >_
  08/07-01:46 . 3450  Martin Papadopoulos <> [67]
___ hello yutaka, for example mails from mxpool* i could send you a prepared log file for analysis if you want to. greetz martin papadopoulos Yutaka Sato schrieb:
  08/07-02:34 . 3452 (Yutaka Sato) [27]
___ Hi, Your mail including the whole REJECT list was posted to the open forum forwarded via, so I removed it from the spool. Well, your REJECT list includes a line as this: REJECT
  08/07-03:35 . 3453  Martin Papadopoulos <> [63]
___ hello yutaka, works fine now , keep up the good work ! greetz martin papadopoulos Yutaka Sato schrieb:
Is there any way to control&limit user's Session&Connections when use delegate as socks 5 proxy?
  08/07-05:33 . 3454  liword <> [3]
___ Is there any way to control&limit user's Session&Connections when use delegate as socks 5 proxy?For example limit useA can create only 1 session to connect net at a time.
  08/07-08:01 . 3455 (Yutaka Sato) [28]
___ There is no SOCKS specific control but a generic parameter to limit the max. number of connection from a host at a time as this: MAXIMA=conpch:1 This limitation can be applied only to a specified ho
  08/07-11:01 . 3456 (Yutaka Sato) [115]
___ Hi, Limiting resource usage per user is a feature in the TODO list of DeleGate to be supported from the beginning. Now I feel it might be a time, so I tried to implement it (it will be released in 9
SPAM blocking by DeleGate (Re: delegate rejects domains not in the list)
  08/07-13:36 . 3457 (Yutaka Sato) [143]
___ Hi, By the way, if your intention is to block SPAMs, I don't recommend you to use the REJECT list based on domain name, since it is difficult to identify exaustless spammers by domain spreading over
  08/08-01:31 . 3458  Martin Papadopoulos <> [571]
___ hello yutaka, it would be awesome if you could implement an smtp reject for non mx servers. i mean that if the reverse lookup entry does not contain a valid MX record, or to satisfy scenario of mult
  08/08-12:01 . 3459 (Yutaka Sato) [43]
___ Hi, Doing access control based on the (existence of) MX record seems useful and I'll support it in the next release. But "callback" will be useful to be used together with it. Yes, spammers do not t
  08/08-12:26 . 3460 (Yutaka Sato) [52]
___ Hi, I tested an extenstion like the enclosed patch with a parameter as follows: RELIABLE="_MX.*" It seems working as I expected to reject hosts without a MX record. It will be able to be extended to
  08/10-01:13 . 3461 (Yutaka Sato) [55]
___ Hi, I uploaded 9.2.4-pre14 including SMTP extension as follows which may be useful in your case: <URL:> Cheers, Yutaka 9 9 Yutaka Sato <y.sato@del
  08/10-03:18 . 3462  Martin Papadopoulos <> [222]
___ hello yutaka, its excelent ! best practice to me seems SMTPCONF=reject:nohelo+notmxhelo. greetz from germany ... :-) martin papadopoulos Yutaka Sato schrieb:
  08/11-03:35 . 3463  Martin Papadopoulos <> [230]
___ hello yutaka, unfortunately there is some real bad news ! even companies like *b*y do not follow smtp protocol with ehlo , ehlo-mx and so forth. i don't recommend this setup , not even to your site,
  08/11-05:00 . 3464 (Yutaka Sato) [30]
___ Hi, I'm not so surprised about it because I've seen so many broken HELO on SMTP for twenty years. But at least SMTPCONF=reject:nohelo is known practical because it is the default of DeleGate for six
MLSD vs. LIST when proxying
  08/16-23:26 . 3465  Steffen Kaiser <> [83]
___ Hello, I have a Delegate FTP proxy forwarding requests to a Delegate master. Both DeleGate/9.2.3-pre12 . I connect to the proxy anonymously, then issue: cd //server dir using ncftp I get this result
delegate rewrite
  08/17-02:39 . 3466  Martin Papadopoulos <> [29]
___ hello yutaka, is it possible with delegate as an http proxy , to rewrite the user-agent header ? greetz martin papadopoulos
MLSD vs. LIST when proxying
  08/17-19:32 . 3467 (Yutaka Sato) [45]
___ DeleGate announces that MLST/MLSD is availabe by default replying to the FEAT command from clients. It can be disabled with: FTPCONF=nomlsx Maybe it should be so by default when DeleGate is not acti
delegate rewrite
  08/17-20:41 . 3468 (Yutaka Sato) [19]
___ Hi, Unconditional replacement of User-Agent to "xxx" is done as follows: HTTPCONF="kill-qhead:User-Agent" HTTPCONF="add-qhead:User-Agent:xxx" Cheers, Yutaka 9 9 Yutaka Sato <> htt
MLSD vs. LIST when proxying
  08/18-19:11 . 3469  Steffen Kaiser <> [30]
___ Hello, Works like charme! I also grasp from the suggestion that there is no easy way to tranform LIST <-> MLSD on the fly. Bye, Steffen Kaiser
delegate multiple proxy
  08/23-03:54 . 3470  Martin Papadopoulos <> [30]
___ hello yutaka, is it possible to have multiple proxies e.g. for different domains routed ? delegate -P8080 SERVER=http PROXY=dom1:8080:domain1 PROXY=dom2:8080 ... ? greetz
  08/23-10:28 . 3471 (Yutaka Sato) [16]
___ Hi, Yes. Cheers, Yutaka 9 9 Yutaka Sato <> ( ~ ) National Institute of Advanced Industrial Science and Technology _< >_ 1-1-4 Umezono, Tsukuba, Ibaraki
ftp/sftp service not available
  08/25-17:30 . 3472  "Gsandtner Michael" <> [340]
___ I have problems running the ftp/sftp gateway. ftp client says: "421 Service not available, remote server has closed connection". Detailed log of delegate below. The connection with command line sftp
Pop3proxy -- Timeout with malformed MimeMessages
  08/30-21:04 . 3473  Gateman <> [92]
___ Hi yutaka, we use delegate(V9.1.1)as a pop3proxy and have problems with some malformed mime messages. Delegate strips of some part of the message so that the client doesn't see the end of the messag
delegate article 3443
  08/30-22:13 . 3474  Martin Papadopoulos <> [30]
___ hello yutaka, at least for the scenario authorizing delegate master process , the authorization does not function for the sockmux scenario it does work however . greetinx martin papadopoulos
Pop3proxy -- Timeout with malformed MimeMessages
  08/31-00:37 . 3475 (Yutaka Sato) [126]
___ Hi, Your dump shows it's not 0x20 but 0x00 which is a string terminator of C, and not 0E0D0A but 2E0D0A which is a message terminator of POP (and SMTP, NNTP). The problem is caused because DeleGate
  08/31-01:23 . 3476 (Yutaka Sato) [129]
___ Hi, Sorry, I found that the patch is not enough for POP, and encoding a character into multi-bytes might cause another problem on the buffer boundary. So just ignoring '\0' might be the practical wo
  08/31-12:31 . 3477 (Yutaka Sato) [191]
___ Hi, I released 9.2.4-pre20 with the workaround. It simply ignores '\0' in a messege by default. You can test to relay '\0' as is with an option MIMECONV="zero:utf8" Cheers, Yutaka 9 9 Yutaka Sato <y
MASTER authentication (Re: delegate article 3443)
  09/01-16:40 . 3478 (Yutaka Sato) [254]
___ Hi, It seems that I forgot not to have implemented the feature because I thoght it must be implemented for long time since the begining ;) Indeed, authentication with master DeleGate (AUTHORIZER + M
ftp/sftp gateway not working
  09/04-17:39 . 3480  "Gsandtner Michael" <> [136]
___ Since there is no answer on my question 3472, I try it again. May be the subject was confusing. If I connect via ftp to delegate, ftp client says: "421 Service not available, remote server has close
DeleGate/9.2.4 (BETA) -- SOCKS over SSL, multiplexed SOCKS, fast MITM, HTTP cache
  09/06-07:28 . 3481 (Yutaka Sato) [149]
___ Dear DeleGate users, I inform you of the new release of DeleGate available as follows: DeleGate/9.2.4 -- SOCKS over SSL, multiplexed SOCKS, fast MITM, HTTP cache + SOCKS over SSL SOCKS has come to b
ftp/sftp gateway not working
  09/06-12:06 . 3482 (Yutaka Sato) [87]
___ Hi, What kind of FTP client are you using? It might be issueing something special command which causes the disconnection. You can see the sequence of commands and responses in the LOGFILE as the enc
  09/06-19:37 . 3483  "Gsandtner Michael" <> [344]
___ the It is the command line ftp from krb5-workstation-1.2.2-13 RPM under RedHat 7.2 . Below the -vd log. I cannot see the problem. Regards --Michi 09/06 12:14:11.30 [23612] 0+0: TMPFILE(new_shared) =
  09/06-22:30 . 3484 (Yutaka Sato) [84]
___ Hi, Hmm... your login to the SFTP server seems simply rejected with bad password. It is possible that DeleGate fails to relay a password to the server when the password starts with some white space
  09/07-00:49 . 3485  "Michael Gsandtner" <> [270]
  09/07-01:02 . 3486 (Yutaka Sato) [32]
___ Hmm... your reply is sent in strange format concatenating my message and yours and logs... Then seeing the difference between the logs for SFTP/HTTP and SFTP/FTP (with -dG) will help us to understan
  09/07-01:54 . 3487 (Yutaka Sato) [17]
___ By the way, it is strongly recommended to invoke DeleGate by non-privileged users. If you need privilege for some reason, you should install "subin". <URL:
  09/07-17:14 . 3488  "Gsandtner Michael" <> [1500]
___ and Sorry, hope now it is readable :-) I realize different host key fingerprints in the two dumps. In the http version it is the correct one from the sftp server. Here the failed ftp/sftp: 09/06 17:
  09/07-19:06 . 3489 (Yutaka Sato) [64]
___ Hi, I found the problem. FTP-DeleGate is connecting to "sftp://localhost" regardless of the real SFTP server specified in the MOUNT parameter. The enclosed patch is a workaround to make FTP-DeleGate
  09/09-06:54 . 3490  "Michael Gsandtner" <> [6]
  09/14-19:18 . 3491  "Gsandtner Michael" <> [265]
___ I tried delegate9.2.5-pre2. The connection problem is solved. Thanks. But now the "cd" command seems not to work. After connecting "ls" gives the correct listing of users home. After "cd test" (the
  09/14-21:12 . 3492 (Yutaka Sato) [62]
___ Hi, I could reproduce the problem on Linux. On MacOSX (or on BSD Unixes), it is shown as follows: --SFTPGW << [PWD][] --SFTP << pwd^M DeleGate for sftp/SSH gateway uses the sftp command via a Pty wh
  09/14-21:22 . 3493 (Yutaka Sato) [15]
___ Yes. If you can do it with the sftp command directly invoked on your terminal, it is also available when the sftp command is indirectly invoked on a pty (pseudo terminal) via DeleGate. Cheers, Yutak
  09/15-17:33 . 3494  "Gsandtner Michael" <> [86]
___ The supplied patch works. Thanks for the quick support. Best Regards --Michi
  09/15-18:27 . 3495  "Gsandtner Michael" <> [436]
___ Something must be different. When I call sftp interactively the connection succeeds with public-key authentication. Within delegate, called from exactly the terminal where sftp is successful, there
delegate on multiple ips
  09/16-00:06 . 3496  "Bruce Ryan" <> [32]
___ I have a Windows 2003 server with 5 ip addresses. i would like to set up an HTTP proxy on each ip address. I noticed the command line options to listen on all ports, but how do I configure delegate
ftp/sftp gateway not working
  09/16-04:32 . 3497 (Yutaka Sato) [43]
___ Hi, You invoked your DeleGate under the ownership of "nobody" thus the sftp is also invoked as of nobody. The simplest way to escape the problem is specfying OWNER=root, though I don't recommend it.
delegate on multiple ips
  09/16-23:13 . 3498 (Yutaka Sato) [34]
___ If your "proxy server" means "reverse proxy server" then it can be configured as follows: SERVER=http MOUNT="/* http://server1/* via=" MOUNT="/* http://server2/* via=" Cheers, Yutaka
File download blocking
  09/20-12:21 . 3499  Macka316 <> [33]
___ Hi there, I was wondering if someone could help me with a config required to block ..exe and .mp3 files while using delegate. I have tried several configs using the rewrite mount commands in a confi
  09/22-07:30 . 3500 (Yutaka Sato) [24]
___ Hi, It depends on the usage of your DeleGate. If you are using DeleGate as a HTTP proxy (with SERVER=http without other MOUNTs), it can be as follows basically: MOUNT="*%S.exe = forbidden" MOUNT="*%
  09/22-07:40 . 3501 (Yutaka Sato) [29]
___ Or it can be as this for DeleGate as a FTP proxy or a reverse proxy with other MOUNTS: MOUNT="*%S.exe /dev/null pri=1" MOUNT="*%S.mp3 /dev/null pri=1" Cheers, Yutaka 9 9 Yutaka Sato <y.sato@delegate
  09/22-09:27 . 3502  Macka316 <> [69]
___ Yutaka, many thanks for your response, it worked great! Also many thanks for sharing your excellent software. Macka.
Delegate ftp to sftp
  09/22-15:56 . 3503  "Mikko =?ISO-8859-1?Q?Sipil=E4?=" <> [262]
___ Hello, Delegate seems to be that what I have been looking for. Unfortunately I found the following bug when trying to use Delegate as a gateway from ftp to sftp on Redhat Linux (32bit). 1. Command "
  09/22-16:02 . 3504 (Yutaka Sato) [19]
___ Hi, I hope so. Try 9.2.5-pre4 or later. Cheers, Yutaka 9 9 Yutaka Sato <> ( ~ ) National Institute of Advanced Industrial Science and Technology _< >_
proxy https
  09/22-22:23 . 3505  KINOSHITA Toshio <> [26]
___ はじめまして、木下と申します. delegateを利用して、他のProxyへ転送したいと考えております. 以下のような状況です. [PC] ---> [delegate] ---> [proxy] ---(internet)---> [http/https sites] HTTPの転送は出来
Transparent UDP relaying over SOCKS
  09/25-04:47 . 3506  David Ponzone <> [94]
___ Hello all, I have a weird requirement for transparent UDP relaying over SOCKS5. Let me explain myself. I have an IP-Phone A connected to my MacOSX, which acts as a routeur to Internet. The IP-Phone
delegte credhy
  09/26-04:15 . 3507  Martin Papadopoulos <> [40]
___ hello yutaka, when using credhy for delegate <=> encryption i get the message " ... bad key" how exactly should an encryption with delegate-master and Credhy be invoked ? example: ... FSV="-credhy"
  09/27-23:55 . 3508 (Yutaka Sato) [36]
___ Hi, It has not been implemented for MASTER and SOCKS. I uploaded 9.2.5-pre7 which includes the implementation of it. It's CRYPT=pass:"Key" with which Credhy encoder/decoder is initialized with the K
Transparent UDP relaying over SOCKS
  09/28-00:11 . 3509 (Yutaka Sato) [47]
___ Hi, Intercepting packets over IP is not the role of DeleGate as an application level proxy, as it is not the role of a transparent proxy for HTTP. It should be configured with some appropriate tools
ftp to ftp gateway +(optional TLS)
  09/28-21:33 . 3510  Steve Brown <> [19]
___ Hi all, Is it possible to configure delegate as an ftp proxy, so that a plain ftp client can connect to a remote site, and *if* that remote site supports TLS have delegate start a TLS encrypted sess
Empty-Articles = [3451][3479]
  admin search upper oldest olders older1 this newer1 newers latest
[Top/Up] [oldest] - [Older+chunk] - [Newer+chunk] - [newest + Check]
Generated:03/31 15:20:25 (4 sec) Expires:03/31 21:20:21 @_@V