diff --git a/testing/stunnel/README b/testing/stunnel/README new file mode 100644 index 0000000..803f477 --- /dev/null +++ b/testing/stunnel/README @@ -0,0 +1,14 @@ +configuration for stunnel'ing rsync daemon + +stunnel.pem, daemon.conf and client.conf belongs in /etc/stunnel/ + +start rsync dameon using the configuration from trunk/testing/rsync + +start the ssl server + stunnel /etc/stunnel/daemon.conf +start the ssl client + stunnel /etc/stunnel/client.conf +connect to rsync server over ssl from local box via a different port 837837 + rsync rsync://localhost:837837 + + diff --git a/testing/stunnel/client.conf b/testing/stunnel/client.conf new file mode 100644 index 0000000..28a46ef --- /dev/null +++ b/testing/stunnel/client.conf @@ -0,0 +1,10 @@ +# +client = yes + +debug = 7 +foreground = yes +#output = rsync-stunnel-client.log + +[RSYNC] +accept=localhost:837837 +connect=localhost:2222 diff --git a/testing/stunnel/daemon.conf b/testing/stunnel/daemon.conf new file mode 100644 index 0000000..9d4c070 --- /dev/null +++ b/testing/stunnel/daemon.conf @@ -0,0 +1,15 @@ +#configuration for daemon + +#RNDbytes = 2048 +#RNDfile = rand.bin +#RNDoverwrite = yes + +cert = /etc/stunnel/stunnel.pem + +debug = 7 +foreground = yes +#output = rsync-stunnel-daemon.log + +[RSYNC] +accept=localhost:2222 +connect=localhost:873 diff --git a/testing/stunnel/stunnel.pem b/testing/stunnel/stunnel.pem new file mode 100644 index 0000000..ebc642f --- /dev/null +++ b/testing/stunnel/stunnel.pem @@ -0,0 +1,36 @@ +-----BEGIN RSA PRIVATE KEY----- +MIICXAIBAAKBgQCmD+mhtQH5B97Uh0q7zOzA+aRDgS1hx0p1EuO3ur45pX2YzN50 +qB7daBTBKkkhev+xThF4pQeeMSxAq+iUrHmDwxVr8gh6fvuwWaSN4DeybzAj8MCx +5hiUHfWt3QvjTR+X58r+f16UPsU32ZO/OjPdymSTRsybFkG4HJHoeX2NnQIDAQAB +AoGATJYQKP0C8Og5U4kl5WEIW6OGp39e/7Za142jqiuc6ZcySpNJkUGsIm6LC99F +pQRGAm6/zgVGcyW4hAcEl/THgUf4fd0aAaniSnDxKuZdUQN5dcjLl6Hxc29VpRs+ +Q4aHvjIWNhQxiQTvNvc6uc6acKZQ0QKN0NldjtReCqxXCB0CQQDQkIkh+yodp7nu +7V6CeNLHCs4pkgWZFY3puNyOxjRSwBBTX4L4Tv3Scqb08MD3AfCYmRnD/NQyTEAN +EjIGE7Z7AkEAy9S3IP2Yk+j6RvFBYIFC1ONJCYxuIuhd1aM46vo8hM0scjCdrtJK +LrG3eCZGY3rXSyzF59DKNYc1FPix8zvcxwJAEYqWfg0p1aSttrKwKDkRQTxfao+l +eOKfNPEfW8K/09XjiZ+W3FuIbZLHCALXt+6p1avKxvkUv8Y5/N9y5Z/y0QJADeyZ +GgLY8nm+5yvB+JK7+wkPyzwxpebTyi1dTQgNLFFL0P0rOG8bLDdtviJ3OoKAxJzp +ZB2qQp/a63TVyzTyrwJBAK59jXSCZaODU2oyBAw3uWzk5hAv/or2BU+v2YzrehZ7 +4sNUnVaoZuMFpGFCvUfZN4FtJ8UVezc1b4UAVSIfnHY= +-----END RSA PRIVATE KEY----- +-----BEGIN CERTIFICATE----- +MIIDbDCCAtWgAwIBAgIJAIXKx0p5ys4jMA0GCSqGSIb3DQEBBQUAMIGBMQswCQYD +VQQGEwJVUzELMAkGA1UECBMCTUQxETAPBgNVBAcTCGNvbHVtYmlhMRIwEAYDVQQK +EwlTZWxmIEluYy4xCzAJBgNVBAsTAnN3MRAwDgYDVQQDEwdnaWJib25zMR8wHQYJ +KoZIhvcNAQkBFhByb290QGdpYmJvbnMub3JnMB4XDTA1MTAyODE4MTkwN1oXDTA2 +MTAyODE4MTkwN1owgYExCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJNRDERMA8GA1UE +BxMIY29sdW1iaWExEjAQBgNVBAoTCVNlbGYgSW5jLjELMAkGA1UECxMCc3cxEDAO +BgNVBAMTB2dpYmJvbnMxHzAdBgkqhkiG9w0BCQEWEHJvb3RAZ2liYm9ucy5vcmcw +gZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAKYP6aG1AfkH3tSHSrvM7MD5pEOB +LWHHSnUS47e6vjmlfZjM3nSoHt1oFMEqSSF6/7FOEXilB54xLECr6JSseYPDFWvy +CHp++7BZpI3gN7JvMCPwwLHmGJQd9a3dC+NNH5fnyv5/XpQ+xTfZk786M93KZJNG +zJsWQbgckeh5fY2dAgMBAAGjgekwgeYwHQYDVR0OBBYEFNiKZTCIS8ggRE+fX2v6 +wIT0luJSMIG2BgNVHSMEga4wgauAFNiKZTCIS8ggRE+fX2v6wIT0luJSoYGHpIGE +MIGBMQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUQxETAPBgNVBAcTCGNvbHVtYmlh +MRIwEAYDVQQKEwlTZWxmIEluYy4xCzAJBgNVBAsTAnN3MRAwDgYDVQQDEwdnaWJi +b25zMR8wHQYJKoZIhvcNAQkBFhByb290QGdpYmJvbnMub3JnggkAhcrHSnnKziMw +DAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQUFAAOBgQCat7KISbItYomwbVQOcInx +p6qp0QJR591SMgVZMqjhedGdGcKzcwk01n5/2pi7IMSubMupP2Fz3RjK0ZWMQkTG +HqQ0DXF/EC5+Zi6P27yTBQCJScrKYDaojgdZ/ZR51icWpCiBHZmjnxRGTGXzHGml +O1fZr++ppYMk7VJB40t2Lw== +-----END CERTIFICATE-----