[noCensorship] Re: Fed up with LP

  • From: "Madani AL" <madani55sa@xxxxxxxxxxx>
  • To: nocensorship@xxxxxxxxxxxxx
  • Date: Sun, 04 May 2003 19:07:16 +0000





Hi wayne

The following are my findings with regards to SBM and Cyberia In KSA:

1. Cyberia:
running the latest firewalls.xml under LP, I realized that subnet had to be increased to 212.119.64.0/19 as a received the following line from the localProxy Engine (the 'back end'), version: 4.253:
[LP host (212.119.94.*) was not inside firewall KSA-cyberia].


Next, I only got the following proxies in layer 0 of 10080:1(connect):
204.113.91.64:8001
212.119.79.2:80 ( I got this one when I extended the subnet range to 19)
218.145.25.108:8081
24.129.32.175:9631

I merged the following working proxies into hosts.xml. These proxies currently are the only active ones for Cyberia (Ogertel):
212.119.67.14 :8080 PFFFPFPPPPPPPPFPFPFP 1.9/3.2 via:1.0 cache4.jed agent:CacheFlow-Proxy/1.0 connBack:212.138.64.174
212.119.67.15 :80 PFFFPFPPPPPPPPFPFPFP 1.3/2.7 via:1.0 cache4.jed agent:CacheFlow-Proxy/1.0 connBack:212.138.64.174
212.119.67.16 :8080 PFFFPFPPPPPPPPFPFPFP 1.7/3.0 via:1.0 cache4.jed agent:CacheFlow-Proxy/1.0 connBack:212.138.64.171
212.119.67.17 :8080 PFFFPFPPPPPPPPFPFPFP 1.7/3.0 via:1.0 cache4.jed agent:CacheFlow-Proxy/1.0 connBack:212.138.64.174
212.119.67.80 :80 PFFFPFPPPPPPPPFPFPFP 1.8/3.3 via:1.0 cache4.jed agent:CacheFlow-Proxy/1.0 connBack:212.138.64.172


The following proxies should be disabled in hosts.xml at least for now:
212.119.67.18:8080
212.119.67.19:8080
212.119.67.20:8080
212.119.79.2:80
212.119.79.66:8080
212.119.79.67:8080
212.119.82.61:8080

Conclusion: Cyberia is working fine with the original ?config-KSA-cyberia.xml?.
Problem solved.


2. SBM:

I noticed that [master.xml] is not consistent whenever I run the Autoconfig option in LP.
Examples:


Mapping the firewall rules, please wait ...
Warning: filtering detected (probably transparent proxy) on port 25
Warning: filtering detected (probably transparent proxy) on port 110
Warning: filtering detected (probably transparent proxy) on port 8083
port 21 is open
port 22 is open
port 23 is open
port 25 is blocked
port 80 is blocked
port 81 is blocked
port 82 is open
port 85 is blocked
port 110 is blocked
port 119 is blocked
port 443 is blocked
port 563 is open
port 666 is open
port 800 is open
port 880 is open
port 1080 is blocked
port 2009 is open
port 3128 is blocked
port 6588 is blocked
port 6801 is open
port 7000 is open
port 7021 is open
port 7033 is open
port 7070 is open
port 7137 is open
port 7175 is open
port 7475 is open
port 8000 is blocked
port 8001 is open
port 8002 is open
port 8003 is open
port 8004 is open
port 8005 is open
port 8006 is open
port 8007 is open
port 8008 is open
port 8080 is blocked
port 8081 is open
port 8082 is open
port 8083 is blocked
port 8084 is open
port 8085 is open
port 8086 is open
port 8087 is open
port 8088 is blocked
port 8089 is blocked
port 8090 is open
port 8091 is open
port 8141 is open
port 8180 is open
port 8421 is open
port 8616 is blocked
port 8888 is blocked
port 8965 is open
port 9001 is open
port 9081 is open
port 9274 is blocked
port 9589 is open
port 10080 is open
port 12345 is open
port 14000 is open
port 20034 is open
Saving the results in master.xml

Please note that port 8083 is blocked here while it is open in another test:

Mapping the firewall rules, please wait ...
Warning: filtering detected (probably transparent proxy) on port 25
Warning: filtering detected (probably transparent proxy) on port 110
Warning: filtering detected (probably transparent proxy) on port 9589
port 21 is open
port 22 is open
port 23 is open
port 25 is blocked
port 80 is blocked
port 81 is blocked
port 82 is open
port 85 is blocked
port 110 is blocked
port 119 is blocked
port 443 is blocked
port 563 is open
port 666 is open
port 800 is open
port 880 is open
port 1080 is blocked
port 2009 is open
port 3128 is blocked
port 6588 is blocked
port 6801 is open
port 7000 is open
port 7021 is open
port 7033 is open
port 7070 is open
port 7137 is open
port 7175 is open
port 7475 is open
port 8000 is blocked
port 8001 is open
port 8002 is open
port 8003 is open
port 8004 is open
port 8005 is open
port 8006 is open
port 8007 is open
port 8008 is open
port 8080 is blocked
port 8081 is open
port 8082 is open
port 8083 is open
port 8084 is open
port 8085 is open
port 8086 is open
port 8087 is open
port 8088 is blocked
port 8089 is blocked
port 8090 is open
port 8091 is open
port 8141 is open
port 8180 is open
port 8421 is open
port 8616 is open
port 8888 is blocked
port 8965 is open
port 9001 is open
port 9081 is open
port 9274 is open
port 9589 is blocked
port 10080 is open
port 12345 is open
port 14000 is open
port 20034 is open
Saving the results in master.xml

Mapping the firewall rules, please wait ...
Warning: filtering detected (probably transparent proxy) on port 110
Warning: filtering detected (probably transparent proxy) on port 25
Warning: filtering detected (probably transparent proxy) on port 8087
Warning: filtering detected (probably transparent proxy) on port 20034
Warning: filtering detected (probably transparent proxy) on port 800
Warning: filtering detected (probably transparent proxy) on port 21
port 21 is blocked
port 22 is open
port 23 is open
port 25 is blocked
port 80 is blocked
port 81 is blocked
port 82 is open
port 85 is blocked
port 110 is blocked
port 119 is blocked
port 443 is blocked
port 563 is open
port 666 is open
port 800 is blocked
port 880 is open
port 1080 is blocked
port 2009 is open
port 3128 is blocked
port 6588 is blocked
port 6801 is open
port 7000 is open
port 7021 is open
port 7033 is open
port 7070 is open
port 7137 is open
port 7175 is open
port 7475 is open
port 8000 is blocked
port 8001 is open
port 8002 is open
port 8003 is open
port 8004 is open
port 8005 is open
port 8006 is open
port 8007 is open
port 8008 is open
port 8080 is blocked
port 8081 is open
port 8082 is open
port 8083 is open
port 8084 is open
port 8085 is open
port 8086 is open
port 8087 is blocked
port 8088 is blocked
port 8089 is blocked
port 8090 is open
port 8091 is open
port 8141 is open
port 8180 is open
port 8421 is open
port 8616 is open
port 8888 is blocked
port 8965 is open
port 9001 is open
port 9081 is open
port 9274 is open
port 9589 is open
port 10080 is open
port 12345 is open
port 14000 is open
port 20034 is blocked

I have more of these results. Results are not consistent. It looks like the timeout value for port testing need to be increased.
--------------------
Running LP using SBM fire wall


This is localProxy Engine (the 'back end'), version: 4.253
Building configuration KSA-sbm
Please wait, this may take a few minutes
(you may avoid this in future by using the 'last' config)...
I'm assuming this IP address is 212.46.37.*
Waiting for the front end to connect ... connected
Importing globals.xml version 4.12
Importing hosts.xml version 4.1664
Importing commStrats.xml version 4.7
Importing services.xml version 4.23
Importing firewalls.xml version 4.110
Importing config-KSA-sbm.xml version 4.1
No (or incomplete) credentials found in environment
Using firewall: KSA-sbm
DNS addresses from o/s: 212.46.32.35, 212.46.32.45
Name servers (o/s and firewall info): 212.46.32.35, 212.46.32.45, 212.46.32.65, 212.46.32.33
Accessible subnets: 212.46.32.0/19, 212.46.32.0/19
DnsTimeout initialized: 5.5
Sorting hosts (uses DNS, please connect)...
Filled layer 10119.1.*.- (1/10), (max,min) score was (0.4, 0.4)
Filled layer 10080.0.*.- (0/10), (max,min) score was (-1, -1)


Disabling 10080 (non-censoring HTTP proxy - standard).0 - no layer 0 hosts available
Filled layer 10080.1.*.- (3/10), (max,min) score was (0.4, 0.00032)
Filled layer 10080.1.-.* (10/10), (max,min) score was (1, 0.072)
Filled layer 10080.2.*.- (10/10), (max,min) score was (0.4, 0.0076)
Filled layer 10082.0.*.- (1/10), (max,min) score was (0.052, 0.052)
Filled layer 10082.1.*.- (3/10), (max,min) score was (0.4, 0.00032)
Filled layer 10082.1.-.* (10/10), (max,min) score was (0.18, 0.061)
Filled layer 10082.2.*.- (6/10), (max,min) score was (0.4, 0.00023)
Filled layer 10076.0.*.- (10/10), (max,min) score was (0.4, 0.016)
Filled layer 10076.1.*.- (3/10), (max,min) score was (0.4, 0.00032)
Filled layer 10076.1.-.* (10/10), (max,min) score was (0.6, 0.17)
Filled layer 10076.2.*.- (10/10), (max,min) score was (0.4, 0.016)
Checking all layer 0 hosts for connectivity...
Results from isConnectable: 00101011000000
Unable to connect to 66.250.69.1:8572 204.113.91.64:8001 168.9.253.251:3347 216.126.204.21:8303 216.206.18.12:8002 209.2
05.129.2:8851 200.23.144.129:8001 205.205.143.254:8002 206.129.0.18:8281 218.145.25.108:8081
Couldn't connect to 10 proxies
Don't panic, I can probably work ok without them


LocalProxy is offering services on the following ports:
10076:non-censoring HTTPS proxy
10078:HTTP zapped advertisement proxy
10079:proxy autoconfiguration
10080:non-censoring HTTP proxy - standard
10081:localProxy control
10082:anonymous, non-censoring HTTP proxy
10119:Usenet news - ccnews


For web browser proxy service, please configure your web browser http proxy entry to localhost:10080 and the https proxy entry to localhost:10076 now

Only accepting connections from 127.0.0.1, 212.46.37.*
Executed getConfig(), result (truncated): <perldata>
<hash>
...
Making test request: GET http://www.mhho.com/Links/Random.html
----------------------
The following are the only proxies selected in: 10080,1:connect, layer 0
204.113.91.64:8001
218.145.25.108:8081
216.20.10.43:8616
24.129.32.175:9631
Also, non of SBM proxies were selected in layer 0 of the 2:direct, modified

Conclusion: This ISP is ?@#$@%#$... Do not know that Is needed to make LP identify the proxies in the subnet!

3. Open proxies with KSA network:
statProxy v4.156 report from 212.46.37.*(KSA-sbm):
212.100.203.194 :3128 PFFFFFFPFFFFPFFPFPFP 4.3/38.6 via:1.0 cache10.ruh, 1.1 d1proxy (NetCache 4.1R6), 1.0 setup (NetCache NetApp/5.2.1) agent:BlueCoat-Security-Appliance connBack:212.138.47.11
212.100.205.226 :8080 PFFFTRFPFFFFPPFPFPFP 2.8/16.1 via:1.0 cache10.ruh, 1.0 netcache2 (NetCache NetApp/5.2.1R3), 1.0 SERVER2 agent:BlueCoat-Security-Appliance connBack:212.138.47.17
212.100.207.10 :8080 PFFFFFFPFFFFPPFPFPFP 1.7/3.6 via:1.0 cache8.ruh, 1.0 netcache1 (NetCache NetApp/5.3.1R2), 1.0 LINDORAPC agent:BlueCoat-Security-Appliance connBack:212.138.47.11
212.100.207.22 :3128 PFFFFFFPFFFFPPFPFPFP 1.7/3.3 via:1.0 cache10.ruh, 1.0 netcache1 (NetCache NetApp/5.3.1R2), 1.0 USTSRV agent:BlueCoat-Security-Appliance connBack:212.138.47.12
212.102.11.254 :8080 PFFFFFFPFFFFFFFPFFFP 2.1/4.1 via:1.0 cache4.ruh, 1.0 New-Proxy2 (NetCache NetApp/5.3.1R2) agent:NetCache NetApp/5.3.1R2D5 connBack:212.26.70.40
212.102.12.180 :3128 PFFFFFFPFFFFFFFPFFFP 2.4/5.1 via:1.0 New-proxy3 (NetCache NetApp/5.3.1R2D5) agent:NetCache NetApp/5.4R2 connBack:212.138.47.14
212.102.2.122 :8080 PFFFFFFPPFFFFPFPFFFP 3.9/13.8 via:1.0 New-proxy3 (NetCache NetApp/5.3.1R2D5) agent:NetCache NetApp/5.3.1R2D5 connBack:212.26.70.41
212.102.2.229 :80 PFFFFFFPPFFFFPFPFPFP 2.3/4.7 via:1.0 new-proxy1 (NetCache NetApp/5.4R2) agent:NetCache NetApp/5.4R2 connBack:212.26.70.40
212.102.3.66 :80 PFFFFFFPFFFFPPFPFPFP 2.3/5.4 via:1.0 New-proxy3 (NetCache NetApp/5.3.1R2D5) agent:NetCache NetApp/5.3.1R2D5 connBack:212.26.70.41
212.107.101.146 :80 PFFFFFFPFFFFPPFPFPFP 3.9/9.0 via:1.0 cache1.jed, 1.0 SAUDISTEELBDC agent:BlueCoat-Security-Appliance connBack:212.119.67.17
212.107.97.2 :8080 PFFFFFFPFFFFFFFPFPFP 2.4/5.1 via:1.0 cache3.jed agent:BlueCoat-Security-Appliance connBack:212.119.67.17
212.107.99.130 :8080 PFFFPFPPPPPPPPFPFPFP 3.7/13.9 via:1.0 cache4.jed agent:BlueCoat-Security-Appliance connBack:212.119.67.17
212.11.177.235 :8080 PFFFFFPPFPFPFPFPFPFP 1.9/8.9 via:1.0 cache4.ruh, 1.0 cache-01 (NetCache NetApp/5.3R2) agent:BlueCoat-Security-Appliance connBack:212.11.191.16
212.116.194.195 :8080 PFFFPFPPPPPPPPFPFPFP 1.7/3.2 via:1.0 cache7.ruh, 1.0 netcache3 (NetCache NetApp/5.2.1R3) agent:BlueCoat-Security-Appliance connBack:212.138.47.11
212.33.168.229 :80 PFFFPFPPPPPPPPFPFPFP 4.7/7.0 via:1.0 cache10.ruh, 1.0 C3100-0033602110 (NetCache NetApp/5.2.1R1D4), 1.0 TMISERVER agent:BlueCoat-Security-Appliance connBack:212.33.160.3
212.62.100.205 :8080 PFFFFFFPFFFTPPFPFPFP 3.9/14.6 via:1.0 cache1.jed, 1.0 NetCache3100 (NetCache NetApp/5.3.1R2), 1.0 IBM agent:BlueCoat-Security-Appliance connBack:212.138.64.174
212.76.68.49 :8080 PFFFPFPPPPPPPPFPFPFP 3.0/7.9 via:1.0 cache7.ruh agent:BlueCoat-Security-Appliance connBack:212.76.68.204
212.76.70.39 :8080 PFFFFFFPFFFFPPFPFPFP 9.8/30.4 via:1.0 cache1.ruh, 1.0 SERVER agent:BlueCoat-Security-Appliance connBack:212.76.68.203
212.76.75.103 :8080 PFFFPFFPPPPPFFFPFPFP 3.0/4.5 via:1.0 cache1.ruh agent:BlueCoat-Security-Appliance connBack:212.76.68.203
212.76.75.50 :80 PFFFPFFPPPPPPPFPFPFP 2.2/3.7 via:1.0 cache10.ruh agent:BlueCoat-Security-Appliance connBack:212.76.68.203
212.76.76.11 :8080 PFFFPFPPPPPPFPFPFPFP 2.3/4.8 via:1.0 cache9.ruh agent:BlueCoat-Security-Appliance connBack:212.76.68.204
212.76.76.16 :80 PFFFPFPPPPPPPPFPFPFP 2.0/4.2 via:1.0 cache9.ruh agent:BlueCoat-Security-Appliance connBack:212.76.68.203
212.76.76.42 :8080 PFFFFFFPFFFFPPFPFPFP 2.2/3.9 via:1.0 cache1.ruh, 1.0 SERVER agent:BlueCoat-Security-Appliance connBack:212.76.68.203 212.62.99.52 :8080 PFFFFFFPFFFFPPFPFPFP 1.6/5.6 via:1.0 cache4.ruh, 1.0 NetCache3100 (NetCache NetApp/5.3R2D4), 1.0 SALAH agent:BlueCoat-Security-Appliance connBack:212.138.47.14
213.184.160.152 :80 PFFFFFFPFFFFPPFPFPFP 1.8/24.2 via:1.0 cache8.ruh, 1.0 netcache2 (NetCache NetApp/5.2.1R3), 1.0 MISHWAR_MAIL agent:BlueCoat-Security-Appliance connBack:212.138.47.20
213.184.164.63 :80 PFFFFFFPFFFFPPFPFPFP 7.9/12.1 via:1.0 cache1.ruh, 1.0 netcache4 (NetCache NetApp/5.3.1R2) agent:BlueCoat-Security-Appliance connBack:212.138.47.29


Please NOTE: the above open proxies are not fixed/stable. Today are open tomorrow might be closed. The ISPs are switching their proxies very often

Best regards
madani


_________________________________________________________________
The new MSN 8: smart spam protection and 2 months FREE* http://join.msn.com/?page=features/junkmail


===8>============== noCensorship community ===============
List's webpage: //www.freelists.org/webpage/nocensorship
List's archive: //www.freelists.org/archives/nocensorship
To unsubscribe: nocensorship-request@xxxxxxxxxxxxx with 'unsubscribe' in the 
SUBJECT field.
Moderator's email: nocensorship-moderators@xxxxxxxxxxxxx
===8>============== noCensorship community ===============


Other related posts: